Slashdot Mirror


US Military Publicly Dumps Russian Government Malware Online (vice.com)

An anonymous reader quotes a report from Motherboard: This week, U.S. Cyber Command (CYBERCOM), a part of the military tasked with hacking and cybersecurity focused missions, started publicly releasing unclassified samples of adversaries' malware it has discovered. CYBERCOM says the move is to improve information sharing among the cybersecurity community, but in some ways it could be seen as a signal to those who hack U.S. systems: we may release your tools to the wider world. On Friday, CYBERCOM uploaded multiple files to VirusTotal, a Google-owned search engine and repository for malware. Once uploaded, VirusTotal users can download the malware, see which anti-virus or cybersecurity products likely detect it, and see links to other pieces of malicious code.

One of the two samples CYBERCOM distributed on Friday is marked as coming from APT28, a Russian government-linked hacking group, by several different cybersecurity firms, according to VirusTotal. Those include Kaspersky Lab, Symantec, and Crowdstrike, among others. APT28 is also known as Sofacy and Fancy Bear. The malware itself does not appear to still be active.

1 of 74 comments (clear)

  1. We need to keep perspective here by Anonymous Coward · · Score: -1, Offtopic

    Extreme fire emergency in California is taking lives and destroying homes... we need to keep these people in our prayers. We need Washington to prioritize emergency response and aid and keep in mind that all these things we discuss on /. are just fluff compared to the disaster that our brothers and sisters in CA are in the middle of. Add to this the tragic massacre at the bar last week and these people need our thoughts and prayers more than ever. We need the government to not spend so much time screwing around with the military and more time taking care of citizens in a time of great tragedies striking our greatest state.