Security Professionals Detect Biggest Cyber-espionage Operation

in Security

Security experts at computer security firm McAfee have reportedly uncovered a massive cyber-espionage operation carried out over a period of five years. The operation called 'Operation Shady RAT' resulted in security breach at 72 government bodies, international organizations and corporations.  According to Reuters, the victims include governments of Canada, India, South Korea, Taiwan, United States (U.S) and Vietnam and international bodies such as Association of Southeast Asian Nations (ASEAN), International Olympic Committee (IOC) and United Nations (U.N). Dmitri Alperovitch, Vice President Threat Research at McAfee Corporation, reportedly made the revelations in a 14 page report.

Attackers also targeted several companies across various industries, which the computer security company has chosen, not to disclose. Alperovitch reportedly wrote that even the company was surprised by the diversity of the targeted companies. U.S based companies were most affected by 'Operation Shady Rat'. The breaches started around 2006 and still continue. The intrusion reportedly lasted for several months. The computer security firm was able to trace the details of the attacks through logs stored on a command and control server, first identified in 2009.  IT professionals across various industries must constantly improve their skills through e-learning and online degree programs to deal with varied threats. 

Such attacks result in disclose of confidential proprietary information related to technologies and business operation. Intellectual Property plays a critical role in the success of an organization. Intellectual Property provides strategic advantage to organizations over their competitors.

Access to such confidential data may result in strategic losses and severely impact the profitability of the business.

The computer security firm has not ruled out the possibility of involvement of a nation state in the biggest cyber-intrusion saga. At the beginning of the year, Google claimed that it has suffered cyber-attacks from a nation state. Earlier in the year, McAfee had released a report on attacks on Global Energy companies, wherein attackers targeted major oil, energy and petrochemical companies. Terming the operation as 'Night Dragon Attacks', the company said that attackers attempted to steal project-financing and proprietary information through a combination of various attacks, which include active directory compromises, remote administration tools (RAT), spear phishing and Windows exploits. Organizations must create cyber security awareness among the staff through training programs, workshops and encouraging them to benefit from online university degree programs.

Organizations must conduct in-depth and regular evaluation to remediate security flaws and strengthen the IT infrastructure. Professionals qualified in computer science degree may help in improving the security practices in the organization.

Author Box
Peter Martin has 130 articles online and 1 fans
Contact Press
 
EC-Council
Website: http://www.eccuni.us
Email:  iclass@eccouncil.org
Tel:  505-341-3228
 
EC-Council University is based in Albuquerque, New Mexico and offers Master of Security Science (MSS) degree to students from various backgrounds such as graduates, IT Professionals, and military students amongst several others. The MSS is offered as a 100% online degree program and allows EC-Council University to reach students from not only the United States, but from all around the world.
 
EC-Council is a member-based organization that certifies individuals in cybersecurity and e-commerce skills. It is the owner and developer of 16 security certifications, including Certified Ethical Hacker (CEH), Computer Hacking Forensics Investigator (CHFI) and EC-Council Certified Security Analyst (ECSA)/License Penetration Tester (LPT). Its certificate programs are offered in over 60 countries around the world.
 
EC-Council has trained over 80,000 individuals and certified more than 30,000 members, through more than 450 training partners globally. These certifications are recognized worldwide and have received endorsements from various government agencies including the U.S. federal government via the Montgomery GI Bill, Department of Defense via DoD 8570.01-M, National Security Agency (NSA) and the Committee on National Security Systems (CNSS). EC-Council also operates the global series of Hacker Halted security conferences.
 
Add New Comment

Security Professionals Detect Biggest Cyber-espionage Operation

Log in or Create Account to post a comment.
     
*
*
Security Code: Captcha Image Change Image
This article was published on 2011/08/03