What is the actual situation of 'being hacked' who hacks lawyers and parties to proceedings in order to proceed with proceedings in an advantageous manner?



Google's Threat Analysis Group (TAG) will launch a hack-for-hire service in India, Russia and the United Arab Emirates on June 30, 2022. I released a report that it is. Reuters also has a special feature on hired hackers in India, and these articles highlight the threat of hired hackers who are hired for money to hack and advance proceedings in their favor.

Countering hack-for-hire groups

https://blog.google/threat-analysis-group/countering-hack-for-hire-groups/

How mercenary hackers sway litigation battles
https://www.reuters.com/investigates/special-report/usa-hackers-litigation/

Google: Hack-for-Hire Groups Present a Potent Threat
https://www.darkreading.com/threat-intelligence/google-hack-for-hire-groups-present-a-potent-threat

The threat of hackers backed by governments such as North Korea andRussia has been frequently reported for some time , but in recent years, the damage caused by 'hired hackers' whose business is hacking has expanded rapidly. I am.

It turns out that the biggest hack in history was done by an Indian company, hackers brag about their work on SNS-GIGAZINE



Many of the hired hacker's customers are private detectives, law firms, companies that want to kick off competitors, and other organizations that don't have the ability to hack on their own. While government-informed hackers deploy APT attacks that target and secretly hack, these hired hackers often openly advertise hacking services and any organization whose clients are malicious. And target people.

In a report, Google's TAG team said, 'We have been tracking Indian hackers since 2012, and many of these hackers have worked for Indian offensive security providers called Appin and Belltrox. In its series of activities, hackers frequently conduct fishing campaigns targeting government, medical and telecommunications sectors such as Saudi Arabia, the United Arab Emirates and Bahrain. ' I reported.

Below is an example of a page created by an Indian hired hacker for a phishing scam. Attacks by hired hackers ranged from targeting specific government organizations to Amazon Web Services (AWS) accounts and Gmail accounts.



Reuters also reports on the threat of hired hackers in India. It is reported that 35 cases involving hired hackers in India have been confirmed since 2013, including 35 Western companies, more than 30 human rights groups and media groups, and many other Western companies. It was said that executives were the target of hacking.

In addition, among the more than 80,000 emails sent by hackers to a total of 13,000 targets between 2013 and 2020, more than 1,000 lawyers belonging to 108 law firms were targeted. Was included.

The following is a part of the list of emails sent by Indian hackers to steal information from Western lawyers, from left to right, including the date of sending, the target email address, the spoofed sender, and the subject. Hackers were diverse in their tactics, pretending to be news media and social media, getting interested in topics about their legal colleagues, and even sending emails to the porn site YouPorn.



TAG said of the remarkable expansion of hired hackers: 'The breadth of targets in hired hacker operations is in contrast to government-sponsored hackers, whose missions and targets are often well defined. For example, a recent campaign by an Indian hacker has confirmed that it targeted IT companies in Cyprus, educational institutions in Nigeria, fintech companies in the Balkan Peninsula, and shopping companies in Israel. ' He pointed out that hired hackers are hacking extensively regardless of region or organization.

in Security, Posted by log1l_ks