Connect with us

Technology

Heimdal Security Presents its Latest Report on Brute-Force Cyber Attacks

Published

on

COPENHAGEN, Denmark. , July 25, 2024 /PRNewswire/ — An investigation by Heimdal, a leading cybersecurity company, reveals that the EU is facing a surge in brute force cyber attacks on corporate and institutional networks, primarily originating from Russia.

These attackers exploit Microsoft infrastructure, particularly in Belgium and the Netherlands, to avoid detection.

The investigation into the Russian brute-force campaign has revealed several critical insights:

Attackers are aiming for High-Value Targets (HVTs)Key infrastructure cities like Edinburgh and Dublin have been frequently targetedOver half of the attack IP addresses are linked to Moscow, targeting major cities in the UK, Denmark, Hungary, and LithuaniaThe rest of the investigated attack IPs can be traced back to Amsterdam and BrusselsMajor ISPs like Telefonica LLC and IPX-FZCO were significantly abusedHeimdal’s data shows these attacks date back to May 2024 but may have been happening even longer.

Read the full report here: heimdalsecurity.com/blog/russia-brute-force-attacks-europe/

Prevalent Infiltration and Attack Techniques

The attackers primarily target administrative accounts using various case combinations and language variants.

Over 60% of attack IPs are new, with approximately 65% recently compromised and the rest previously abused, revealing a constantly evolving threat.

The threat actors employ known attack principles such as SMBv1 crawlers, RDP crawlers, and RDP alternative port crawlers, exploiting weak or default credentials through password guessing, spraying, and stuffing.

Additionally, their use of legitimate Microsoft infrastructure broadens the attack surface and complicates detection and response.

Data shows that attackers have actively exploited Microsoft infrastructure from the Netherlands and Belgium to increase their attack range and success odds.

Russia Leveraging State-Owned Networks to Propagate Attack

Major ISPs like Telefonica LLC and IPX-FZCO are significantly abused, with the former accounting for 27.7% of attacks from Russia.

The attackers also leveraged resources from Russian allies, including Indian telecom companies Bharat Sanchar Nigam Limited and Bharti Airtel Limited, both of which have faced recent data breaches.

Scope of Brute-Force Campaign

Russia’s motivation behind these cyberattacks is multifaceted.

The reasons for these actions likely include aims to destabilize and disrupt critical infrastructure in Europe, extract sensitive data, gain financial advantage to fuel ongoing cyber-war efforts, or deploy malware.

The threat actors’ mandates can span multiple types of subversive cyber-warfare ops, including seek-and-destroy, disruption of critical assets, and sabotage.

A Wake Up Call for the European Union

This persistent threat underscores the need for cybersecurity measures within EU countries, including strengthening cloud security, enforcing multi-factor authentication, conducting regular security audits, and educating employees.

Morten Kjaersgaard, Founder of Heimdal, said:

“This data shows that an entity in Russia is waging a hybrid war on Europe, and may have even infiltrated it.

The threat actors are aiming to extract as much data or financial means as possible, leveraging Microsoft infrastructure to do so.

Whoever is responsible, whether it’s the state or another nefarious group, they have no shame in using Russia’s allies to commit these crimes.

The exploitation of Indian infrastructure is a strong example. The data also proves these attackers have strong ties with China.”

Paul Vixie, Co-Founder of SIE Europe, added:

“The data that Heimdal has uncovered is explosively evil, and SIE Europe data clearly shows how well built these Russian Wasp nests are and they show no signs of stopping.

SIE Europe does not ever traffic in Personally Identifiable Information, and this case shows the investigative power of public information once cooperatively assembled.”

Read the full investigation here: Russia-Linked Brute-Force Campaign Targets EU via Microsoft Infrastructure (heimdalsecurity.com).

For further press information:
Maria Madalina Popovici
Media Relations Manager
Email: mpo@heimdalsecurity.com

About Heimdal

Established in Copenhagen in 2014, Heimdal empowers CISOs, security teams, and IT administrators to improve their security operations, reduce alert fatigue, and implement proactive measures through a unified command and control platform.

Heimdal®’s award-winning cybersecurity solutions span the entire IT estate, addressing challenges from endpoint to network levels, including vulnerability management, privileged access, Zero Trust implementation, and ransomware prevention.

About SIE Europe

SIE Europe enables European-based organizations to contribute and share passive DNS data to advance cyber investigations and significantly reduce risk from phishing, ransomware, e-crime and other cyberattacks.

SIE Europe is cofounded by Internet luminaries Dr. Paul Vixie, Chairman, Co-Founder and CEO of Farsight Security, Inc., Christoph Fischer, Founder and CEO of BFK edv-consulting GmbH and Peter Kruse, Cofounder , CSIS Security Group A/S. 

This information was brought to you by Cision http://news.cision.com

The following files are available for download:

https://mb.cision.com/Main/22623/4018330/2925877.pdf

Heimdal Links Russia-Based Threat Actors to Brute Force Attacks on the EU

https://mb.cision.com/Public/22623/4018330/87d4180148270100_org.jpg

Image – Heimdal ties Russia-based actors to brute force attacks on the EU

https://mb.cision.com/Public/22623/4018330/8df29c971c3a7080_org.jpg

Map – the primary origin of the attack

 

 

View original content:https://www.prnewswire.co.uk/news-releases/heimdal-security-presents-its-latest-report-on-brute-force-cyber-attacks-302206435.html

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

The pioneered intelligent airborne detection technology by State Grid Zaozhuang Power Supply Company

Published

on

By

ZAOZHUANG, China, Sept. 29, 2024 /PRNewswire/ — The traditional manual detection is likely to be made towards the phase A in the lower layer; while the intelligent airborne detection is actually made towards the phase A in the upper layer. This represents the comparison result for the discharge hidden danger of the No. 23 tower insulator of the 10 kV cement plant line in the 110 kV Tendong Substation outgoing line by different detection methods, yet the accurate judgment brought by the innovative application of unmanned aerial vehicle airborne ultrasonic partial discharge detection technology.

By the end of August 12, the application of the self-developed UAV airborne ultrasonic partial discharge detection technology by State Grid Zaozhuang Power Supply Company has reached a year, during which, a total of 450 unmanned aerial vehicles were detected, 63 hidden hazards of partial discharge were identified, leading to a reduction of 37 equipment failures, the reduction of the power distribution network fault outage rate by 68%, and improving the power supply reliability rate to 99.982%.

According to Zhang Jianhua, Director of the Operation and Maintenance Department of Zaozhuang Power Supply Company, this technology is initiated in China, rewriting the tradition and passivity of power distribution network partial discharge fault investigation by hearing voice manually over a long time, and leaping into the era of intelligent imaging diagnosis. As the capillaries of the large power grid connecting thousands of households, the current average height of the distribution network tower is 15 to 18 meters, and both the insulators and cable heads on the top of these towers are important detection parts, the improvement in traditional manual detection methods is badly needed. To this end, they, by boldly integrating UAV with local imaging inspection technology, used the advantages of UAV multi-angle close-range inspection to carry out partial discharge inspection, innovated and broadened the technical dimension of aerial patrol, took the lead in enabling accurate collection of voiceprint local release data, and completed demonstration of putting the technology into practical application.

Innovation is not as simple as one plus one, the technology research took a year. Since June 2022, by means of hardware structure transformation and multi-algorithm fusion optimization, they have successively overcome a range of problems such as the inability of traditionally partial discharge inspection to lock the discharge part, the partial discharge detection of UAV propeller noise interference, and the geographical conditions of inspection, and enabled the high-quality and efficient partial discharge imaging detection of the power distribution network. In July 2023, the technology was put into trial use, and later in December of the same year, it was inspected and accepted by the State Grid Shandong Electric Power Company.

During the trial use, the Zao Zhuang Power Supply Company, by giving full play to its advantages as being directly managed and operated by State Grid Corporation of China, coordinated 162 power distribution network lines, and allocated 35 UAVs for the seven power supply centers affiliated to it in a unified manner, and trained 26 drone pilots. Beyond that, it repeatedly carried out technical verification and optimization in the trial use, reducing the time to inspect the base tower 1 from 25 minutes to 15 minutes, indicating an efficiency improvement by 1.8 times compared to the traditional manual inspection, making the accuracy reach 100%.

Instead of revolving around the tower, staring at the equipment for a long time, and being anxious but unable to do anything, Li Yanlin, the specialist staff from Operation and Maintenance Department of Zaozhuang Power Supply Company expressed the pleasure that thanks to the intelligent airborne detection technology, the partial discharge failures found in the power distribution network could be eliminated as soon as they are identified, leading to the great transformation of the operation and maintenance of distribution network from “eliminating present problems” to “preventing them before they are present”, and the formation of a sound situation of intelligent operation and maintenance.

View original content:https://www.prnewswire.com/apac/news-releases/the-pioneered-intelligent-airborne-detection-technology-by-state-grid-zaozhuang-power-supply-company-302261739.html

SOURCE State Grid Zaozhuang Power Supply Company

Continue Reading

Technology

KT Corporation and Microsoft Take ‘Giant Step’ to Accelerate AI Innovation in Korea

Published

on

By

Five-year, multi-billion-dollar strategic partnership to drive AI transformation for more than 650 thousand businesses and 17 million consumers across Korea 

Korea-customized AI model collaboration, including OpenAI’s GPT-4o through Azure OpenAI Service, to enable emerging AI use cases for different industry verticals   

KT and Microsoft collaborate on Korean sovereign cloud solution development and market launch to drive cloud and AI innovation for the public sector and regulated industries 

KT will launch a new AX-specialized service company delivering Microsoft-powered AI transformation service to enterprise customers  

KT and Microsoft to further partner for AI ecosystem development and joint R&D, through initiatives including an AX co-innovation center and a Microsoft Research collaboration  

SEOUL, South Korea and REDMOND, Wash., Sept. 29, 2024 /PRNewswire/ — KT Corporation and Microsoft today unveiled a five-year multibillion-dollar partnership, which includes an investment from KT in the areas of Artificial Intelligence (AI), cloud technologies, and IT business, and a resource commitment from Microsoft in the areas of infrastructure and people. Through this partnership, the companies will propel KT’s AI and ICT (AICT) transformation, and accelerate the advancement of AI services and innovation in Korea. 

Following the agreement in June, KT and Microsoft have engaged in ongoing discussions to strengthen ties and outline key areas of collaboration and support. This strategic partnership is expected to drive progress in five pivotal areas: Development of customized AI solutions for Korea, delivering Korean sovereign cloud solutions, the establishment of an AI transformation (AX)-specialized service company, AI R&D capabilities advancement across Korea and KT’s AICT transformation. 

Developing Customized AI Solutions for Korea
KT and Microsoft will engage in engineering collaboration to develop a customized version of GPT-4o and explore developing a customized version of Microsoft’s Phi family of small language models, with KT’s extensive set of high-quality data around Korean culture and industries. These models will be used for both KT’s internal and consumer-facing applications such as customer service chatbots, and also for building industry-specific AI solutions for B2B customers across industry verticals to best serve the needs of Korean consumers and businesses. KT will leverage Microsoft Copilot Studio and Azure AI Studio to develop custom AI agents aimed at differentiating customer experiences. KT plans to expand the development and utilization of KT-custom AI agents not only for consumer use cases in education, healthcare, and in-vehicle infotainment, but also for business applications. Importantly, Microsoft and KT will collaborate closely on further evolving KT’s Responsible AI framework to help ensure the delivery of safe AI services for the Korea market. 

“We are delighted with the partnership between KT and Microsoft, which presents a valuable opportunity to enhance our digital competitiveness,” said Shinhan Bank, a leading financial group in Korea. “By utilizing the KT GPT model, specialized in Korean language and financial services, we aim to deliver innovative AI-driven services to the domestic financial consumers.” 

Delivering Korean sovereign cloud solutions
KT and Microsoft are partnering to develop and launch Secure Public Cloud services, which is KT’s sovereign cloud solution built on Microsoft Cloud for Sovereignty for Korean-regulated industries. KT will drive its Secure Public Cloud business with support from Microsoft, enabling public sector and regulated industry customers to use new platform capabilities for securing data and workloads, providing access to the latest cloud and AI features available on Azure and helping them comply with local privacy and regulatory requirements. 

Accelerating AI transformation through AX-Specialized service company 
KT will establish a new AX-specialized service company to help businesses in Korea transform with the latest AI innovation. The forthcoming KT’s AX-specialized service company will provide advanced Microsoft Cloud and AI expertise and solutions to the Korean market, with plans to expand to broader markets, including ASEAN. Microsoft will support this initiative over the next three years with professional consulting resources to build core practices and capabilities for the new entity. 

Advancing AI R&D capabilities across Korea
Microsoft will support KT in establishing a co-innovation center aimed at accelerating Microsoft technology-driven AI transformation in the Korean market. This center will help businesses build, develop and prototype new AI solutions with Microsoft technology and KT’s AI specialists. Furthermore, KT will invest in fostering new AI startups and developing a partner ecosystem to support nationwide AI transformation. Microsoft will support this initiative by providing Azure credits and technical expertise. For the future of technology collaboration, KT and Microsoft Research (MSR)’s research leaders and business visionaries will explore high-impact research initiatives in network modernization, AI for healthcare, and industry AI adoption and further collaborate with leading academic institutions partnering with KT. 

Accelerating KT’s AICT Transformation with organization-wide upskilling
KT will migrate and modernize existing IT workloads including mission-critical applications, to Microsoft Azure while developing a new data platform and AI services powered by Microsoft Fabric and Azure OpenAI Service. This collaboration will enhance KT’s overall IT infrastructure, making it more agile, resilient, and secure, driving innovation and elevating the customer experience through intelligent automation. KT also intends to deploy Microsoft 365 Copilot and GitHub Copilot, for all KT employees and developers to supercharge productivity of the entire business. Microsoft will assist KT in equipping more than 19,000 employees with cloud and AI skills and enabling more than 5,800 AX specialists to lead a successful transformation through KT group-wide skilling and co-engineering support. 

“The partnership with Microsoft presents a pivotal opportunity, not only for technological collaboration but also for expanding Korea’s AI foundation and driving transformative innovation across industries and daily life,” said KT CEO Young-Shub Kim. “Leveraging this strategic partnership, we aim to rapidly evolve into an AICT company with unparalleled competitiveness in domestic and global markets.”  

“Our strategic partnership brings together KT’s industry expertise with the power of our entire tech stack, from Azure AI to Microsoft 365 Copilot,” said Satya Nadella, Chairman and CEO of Microsoft. “Together, we will help accelerate the AI transformation of Korean organizations across the private and public sector and build new AI-powered experiences for millions of consumers.”

About KT Corporation
KT Corporation is a leading company in Korea’s telecommunications and ICT industries. By building an AX innovation platform based on differentiated AI, Big Data and Cloud competitiveness, and offering it with outstanding network infrastructure, KT is driving evolution into an AICT (AI and ICT) company.

About Microsoft 
Microsoft (Nasdaq “MSFT” @microsoft) creates platforms and tools powered by AI to deliver innovative solutions that meet the evolving needs of our customers. The technology company is committed to making AI available broadly and doing so responsibly, with a mission to empower every person and every organization on the planet to achieve more. 

For more information, press only:
Microsoft Media Relations, WE Communications for Microsoft, (425) 638-7777, rapidresponse@we-worldwide.com

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/kt-corporation-and-microsoft-take-giant-step-to-accelerate-ai-innovation-in-korea-302261688.html

SOURCE Microsoft Asia

Continue Reading

Technology

Siemon Validates Interoperability of AI-Ready Fiber Cabling with NVIDIA™ InfiniBand™ Hardware at IBTA Plugfest

Published

on

By

Siemon is pleased to announce that its AI Ready fiber optic cabling solutions passed all system interoperability tests with NVIDIA InfiniBand hardware.

WATERTOWN, Conn., Sept. 28, 2024 /PRNewswire-PRWeb/ — The Siemon Company, a global leader in network infrastructure solutions, successfully participated in the 41st InfiniBand Trade Association (IBTA) Plugfest for InfiniBand and RoCE, held at The University of New Hampshire – Interoperability Lab from April 15th to May 3rd. This year’s Plugfest marked a significant milestone with the IBTA introducing new system interoperability testing that included optical transceivers and fiber cabling from various manufacturers for the first time. This rigorous testing program establishes compliance to industry specifications and real-world interoperability, ensuring a robust ecosystem of InfiniBand and RoCE products.

“These test results provide assurance to our customers that Siemon’s AI Ready fiber cabling performs flawlessly within NVIDIA AI network designs, supporting both switch-to-switch and switch-to-server applications”

Siemon is pleased to announce that its AI Ready fiber optic cabling solutions passed all system interoperability tests with NVIDIA InfiniBand hardware.

“These test results provide assurance to our customers that Siemon’s AI Ready fiber cabling performs flawlessly within NVIDIA AI network designs, supporting both switch-to-switch and switch-to-server applications,” stated Gary Bernstein, Siemon’s Sr. Director of Global Data Center Sales.

The System testing was done with NDR 400G and NDR 200G traffic using NVIDIA switches, ConnectX-7 adapter cards, multimode and singlemode transceivers, and Siemon’s multimode and singlemode MTP fiber cabling solutions, including trunks, jumpers, and patch panels.

The IBTA will publish their InfiniBand Integrator’s list soon, listing specific hardware and Siemon components used in various configurations.

For inquiries regarding this testing or Siemon’s AI-Ready solutions, please contact your local Siemon representative.

For more information on Siemon Generative AI Solutions, please visit www.siemon.com/ai.

Media Contact

Brian Baum, Siemon, 1 8609454200, brian_baum@siemon.com 

View original content:https://www.prweb.com/releases/siemon-validates-interoperability-of-ai-ready-fiber-cabling-with-nvidia-infiniband-hardware-at-ibta-plugfest-302260679.html

SOURCE Siemon

Continue Reading

Trending