Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง

ื™ืจืึทื ื™ืึทืŸ ืคึผืจืึธ-ืจืขื’ื™ืจื•ื ื’ ื›ืึทืงืขืจื– ื–ืขื ืขืŸ ืื™ืŸ ื’ืจื•ื™ืก ืงืึธื ืคืœื™ืงื˜. ืื™ื‘ืขืจ ื“ืขื ืคืจื™ืœื™ื ื’, ืื•ืžื‘ืึทืงืึทื ื˜ ืžืขื ื˜ืฉืŸ ืืจื•ื™ืก "ื’ืขื”ื™ื™ื ืœื™ืงืก" ืื•ื™ืฃ ื˜ืขืœืขื’ืจืึทื - ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ APT ื’ืจื•ืคึผืขืก ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ื™ ื™ืจืึทื ื™ืึทืŸ ืจืขื’ื™ืจื•ื ื’ - ืึธื™ืœืจื™ื’ ะธ MuddyWater โ€” ื–ื™ื™ืขืจืข ื’ืขืฆื™ื™ื’, ืงืจื‘ื ื•ืช, ืคืืจื‘ื™ื ื“ื•ื ื’ืขืŸ. ืึธื‘ืขืจ ื ื™ื˜ ื•ื•ืขื’ืŸ ืึทืœืขืžืขืŸ. ืื™ืŸ ืืคืจื™ืœ, ื’ืจื•ืคืข-IB ืกืคึผืขืฉืึทืœืึทืกืฅ ื“ื™ืกืงืึทื•ื•ืขืจื“ ืึท ืจื™ื ืขืŸ ืคื•ืŸ ืžื™ื™ืœื™ื ื’ ืึทื“ืจืขืกืขืก ืคื•ืŸ ื“ื™ ื˜ืขืจืงื™ืฉ ืงืึธืจืคึผืึธืจืึทืฆื™ืข ASELSAN A.ลž, ื•ื•ืึธืก ื˜ืจืื’ื˜ ื˜ืึทืงื˜ื™ืฉ ืžื™ืœื™ื˜ืขืจื™ืฉ ืจืึทื“ื™ืึธืก ืื•ืŸ ืขืœืขืงื˜ืจืึธื ื™ืฉ ืคืึทืจื˜ื™ื™ื“ื™ืงื•ื ื’ ืกื™ืกื˜ืขืžืขืŸ ืคึฟืึทืจ ื“ื™ ื˜ืขืจืงื™ืฉ ืึทืจืžื“ ืคืึธืจืกืขืก. ืึทื ืึทืกื˜ืึทืกื™ืึท ื˜ื™ื›ืึธื ืึธื•ื•ืึท, Group-IB Advanced Threat Research Team Leader, ืื•ืŸ ื ื™ืงื™ื˜ืึท ืจืึธืกื˜ืึธื•ื•ืฆืขื•ื•, ื™ื™ื ื’ืขืจ ืึทื ืึทืœื™ืกื˜ ืื™ืŸ Group-IB, ื“ื™ืกืงืจื™ื™ื‘ื“ ื“ื™ ืœื•ื™ืฃ ืคื•ืŸ ื“ื™ ื‘ืึทืคืึทืœืŸ ืื•ื™ืฃ ASELSAN A.ลž ืื•ืŸ ื’ืขืคึฟื•ื ืขืŸ ืึท ืžืขื’ืœืขืš ื‘ืึทื˜ื™ื™ืœื™ืงื˜ืขืจ MuddyWater.

ื™ืœื•ืžืึทื ื™ื™ืฉืึทืŸ ื“ื•ืจืš ื˜ืขืœืขื’ืจืึทื

ื“ื™ ืจื™ื ืขืŸ ืคื•ืŸ ื™ืจืึทื ื™ืึทืŸ ืึทืคึผื˜ ื’ืจื•ืคึผืขืก ืื ื’ืขื”ื•ื™ื‘ืŸ ืžื™ื˜ ื“ื™ ืคืึทืงื˜ ืึทื– ืึท ื–ื™ื›ืขืจ ืœืึทื‘ ื“ืึธื•ืงื˜ืขื’ืึทืŸ ื’ืขืžืื›ื˜ ืฆื™ื‘ื•ืจ ื“ื™ ืžืงื•ืจ ืงืึธื•ื“ื– ืคื•ืŸ ื–ืขืงืก APT34 ืžื›ืฉื™ืจื™ื (aka OilRig ืื•ืŸ HelixKitten), ืื ื˜ืคืœืขืงื˜ ื“ื™ IP ืึทื“ืจืขืกืขืก ืื•ืŸ ื“ืึธื•ืžื™ื™ื ื– ื™ื ื•ื•ืึทืœื•ื•ื“ ืื™ืŸ ื“ื™ ืึทืคึผืขืจื™ื™ืฉืึทื ื–, ื•ื•ื™ ื’ืขื–ื•ื ื˜ ื•ื•ื™ ื“ืึทื˜ืŸ ืื•ื™ืฃ 66 ื•ื•ื™ืงื˜ื™ืžืก ืคื•ืŸ ื›ืึทืงืขืจื–, ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ Etihad Airways ืื•ืŸ Emirates National Oil. ืœืึทื‘ ื“ืึธืึธืึธื›ื˜ืขื’ืึทืŸ ืื•ื™ืš ืœื™ืงื˜ ื“ืึทื˜ืŸ ื•ื•ืขื’ืŸ ื“ื™ ื’ืจื•ืคึผืข 'ืก ืคืึทืจื’ืึทื ื’ืขื ื”ื™ื™ื˜ ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืื•ืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ืขืžืคึผืœื•ื™ื™ื– ืคื•ืŸ ื“ื™ ื™ืจืึทื ื™ืึทืŸ ืžื™ื ื™ืกื˜ืขืจื™ื•ื ืคื•ืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื•ืŸ ื ืึทืฉืึทื ืึทืœ ืกืขืงื•ืจื™ื˜ื™ ื•ื•ืึธืก ื–ืขื ืขืŸ ืึทืœืขื“ื–ืฉืึทื“ืœื™ ืคืืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ื™ ื’ืจื•ืคึผืข ืก ืึทืคึผืขืจื™ื™ืฉืึทื ื–. OilRig ืื™ื– ืึทืŸ ื™ืจืึทืŸ-ืœื™ื ื’ืงื˜ APT ื’ืจื•ืคึผืข ื•ื•ืึธืก ื”ืื˜ ืขืงืกื™ืกื˜ื™ืจื˜ ื–ื™ื ื˜ ืึทืจื•ื 2014 ืื•ืŸ ื˜ืึทืจื’ืึทืฅ ืจืขื’ื™ืจื•ื ื’, ืคื™ื ืึทื ืฆื™ืขืœ ืื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืึธืจื’ืึทื ืึทื–ื™ื™ืฉืึทื ื–, ื•ื•ื™ ื’ืขื–ื•ื ื˜ ื•ื•ื™ ืขื ืขืจื’ื™ืข ืื•ืŸ ื˜ืขืœืึทืงืึทืžื™ื•ื ืึทืงื™ื™ืฉืึทื ื– ืงืึธืžืคึผืึทื ื™ืขืก ืื™ืŸ ื“ื™ ืžื™ื˜ืœ ืžื–ืจื— ืื•ืŸ ื˜ืฉื™ื™ื ืึท.

ื ืื›ื“ืขื ื•ื•ืืก OilRig ืื™ื– ืื ื˜ืคืœืขืงื˜ ื’ืขื•ื•ืืจืŸ, ื”ืื‘ืŸ ื“ื™ ืœื™ืงืก ื’ืขืฆื•ื™ื’ืŸ - ืื™ื ืคืืจืžืืฆื™ืข ืื™ื‘ืขืจ ื“ื™ ืืงื˜ื™ื•ื•ื™ื˜ืขื˜ืŸ ืคื•ืŸ ืืŸ ืื ื“ืขืจ ืคืจื-ืกื˜ืขื™ื˜ ื’ืจื•ืคืข ืคื•ืŸ โ€‹โ€‹ืื™ืจืืŸ, MuddyWater, ื”ืื˜ ื–ื™ืš ื‘ืื•ื•ื™ื–ืŸ ืื•ื™ืฃ ื“ืขืจ ืคื™ื ืฆื˜ืขืจื ืขื˜ ืื•ืŸ ืื•ื™ืฃ ื˜ืขืœืขื’ืจืื. ืึธื‘ืขืจ, ื ื™ื˜ ืขื ืœืขืš ื“ืขืจ ืขืจืฉื˜ืขืจ ืจื™ื ืขืŸ, ื“ืึธืก ืžืึธืœ ืขืก ืื™ื– ื’ืขื•ื•ืขืŸ ื ื™ื˜ ื“ื™ ืžืงื•ืจ ืงืึธื•ื“ื– ื•ื•ืึธืก ื–ืขื ืขืŸ ืืจื•ื™ืก, ืึธื‘ืขืจ ื“ืึทืžืคึผืก, ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ ืกืงืจืขืขื ืฉืึธืฅ ืคื•ืŸ ืžืงื•ืจ ืงืึธื•ื“ื–, ืงืึธื ื˜ืจืึธืœ ืกืขืจื•ื•ืขืจืก, ื•ื•ื™ ื’ืขื–ื•ื ื˜ ื•ื•ื™ ื“ื™ IP ืึทื“ืจืขืกืขืก ืคื•ืŸ ืคืึทืจื’ืึทื ื’ืขื ื”ื™ื™ื˜ ื•ื•ื™ืงื˜ื™ืžืก ืคื•ืŸ ื›ืึทืงืขืจื–. ื“ืึธืก ืžืึธืœ, ื’ืจื™ืŸ ืœืขืึทืงืขืจืก ื›ืึทืงืขืจื– ื’ืขื ื•ืžืขืŸ ืคึฟืึทืจืึทื ื˜ื•ื•ืึธืจื˜ืœืขื›ืงื™ื™ื˜ ืคึฟืึทืจ ื“ื™ ืจื™ื ืขืŸ ื•ื•ืขื’ืŸ MuddyWater. ื–ื™ื™ ืคืึทืจืžืึธื’ืŸ ืขื˜ืœืขื›ืข ื˜ืขืœืขื’ืจืึทื ื˜ืฉืึทื ืึทืœื– ืื•ืŸ ื“ืึทืจืงื ืขื˜ ื–ื™ื™ื˜ืœืขืš ื•ื•ื• ื–ื™ื™ ืžืขืœื“ืŸ ืื•ืŸ ืคืึทืจืงื•ื™ืคืŸ ื“ืึทื˜ืŸ ืฉื™ื™ึทื›ื•ืช ืฆื• MuddyWater ืึทืคึผืขืจื™ื™ืฉืึทื ื–.

ืกื™ื™ื‘ืขืจ ืกืคึผื™ื™ืขืจื– ืคื•ืŸ ื“ื™ ืžื™ื˜ืœ ืžื–ืจื—

MuddyWater ืื™ื– ืึท ื’ืจื•ืคึผืข ื•ื•ืึธืก ืื™ื– ืึทืงื˜ื™ื•ื• ื–ื™ื ื˜ 2017 ืื™ืŸ ื“ื™ ืžื™ื˜ืœ ืžื–ืจื—. ืœืžืฉืœ, ื•ื•ื™ ืขืงืกืคืขืจื˜ืŸ ืคื•ืŸ Group-IB ื‘ืึทืžืขืจืงืŸ, ืคื•ืŸ ืคืขื‘ืจื•ืืจ-ืืคืจื™ืœ 2019, ื›ืึทืงืขืจื– ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ืึท ืกืขืจื™ืข ืคื•ืŸ โ€‹โ€‹ืคื™ืฉื™ื ื’ ืžื™ื™ืœื™ื ื’ื– ืึทื™ืžืขื“ ืฆื• ืจืขื’ื™ืจื•ื ื’, ื‘ื™ืœื“ื•ื ื’ืงืจื™ื™ื– ืึธืจื’ืึทื ืึทื–ื™ื™ืฉืึทื ื–, ืคื™ื ืึทื ืฆื™ืขืœ, ื˜ืขืœืึทืงืึทืžื™ื•ื ืึทืงื™ื™ืฉืึทื ื– ืื•ืŸ ืคืึทืจื˜ื™ื™ื“ื™ืงื•ื ื’ ืงืึธืžืคึผืึทื ื™ืขืก ืื™ืŸ ื˜ืขืจืงื™ื™, ื™ืจืึทืŸ, ืึทืคื’ื”ืึทื ื™ืกื˜ืึทืŸ, ื™ืจืึทืง ืื•ืŸ ืึทื–ืขืจื‘ื™ื™ื“ื–ืฉืึทืŸ.

ื“ื™ ื’ืจื•ืคึผืข ืžื™ื˜ื’ืœื™ื“ืขืจ ื ื•ืฆืŸ ืึท ื‘ืึทืงื“ืึธืจ ืคื•ืŸ ื–ื™ื™ืขืจ ืื™ื™ื’ืขื ืข ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ PowerShell, ื•ื•ืึธืก ืื™ื– ื’ืขืจื•ืคึฟืŸ POWERSTATS. ืขืจ ืงืขืŸ:

  • ืงืœื™ื™ึทื‘ืŸ ื“ืึทื˜ืŸ ื•ื•ืขื’ืŸ ื”ื™ื’ืข ืื•ืŸ ืคืขืœื“ ืึทืงืึทื•ื ืฅ, ื‘ื ื™ืžืฆื ื˜ืขืงืข ืกืขืจื•ื•ืขืจืก, ื™ื ืขืจืœืขืš ืื•ืŸ ืคื•ื ื“ืจื•ื™ืกื ื“ื™ืง IP ืึทื“ืจืขืกืขืก, ื ืึธืžืขืŸ ืื•ืŸ ืึทืก ืึทืจืงืึทื˜ืขืงื˜ืฉืขืจ;
  • ื“ื•ืจื›ืคื™ืจืŸ ื•ื•ื™ื™ึทื˜ ืงืึธื“ ื“ื•ืจื›ืคื™ืจื•ื ื’;
  • ื•ืคึผืœืึธืึทื“ ืื•ืŸ ืืจืืคืงืืคื™ืข ื˜ืขืงืขืก ื“ื•ืจืš C&C;
  • ื“ืขื˜ืขืงื˜ ื“ืขื ื‘ื™ื™ึทื–ื™ื™ึทืŸ ืคื•ืŸ ื“ื™ื‘ืึทื’ื™ื ื’ ืžื’ื™ืœื” ื’ืขื ื™ืฆื˜ ืื™ืŸ ื“ื™ ืึทื ืึทืœื™ืกื™ืก ืคื•ืŸ ื‘ื™ื™ื–ืข ื˜ืขืงืขืก;
  • ืคืึทืจืžืึทื›ืŸ ื“ื™ ืกื™ืกื˜ืขื ืื•ื™ื‘ ืžื’ื™ืœื” ืคึฟืึทืจ ืึทื ืึทืœื™ื™ื–ื™ื ื’ ื‘ื™ื™ื–ืข ื˜ืขืงืขืก ื–ืขื ืขืŸ ื’ืขืคึฟื•ื ืขืŸ;
  • ื•ื™ืกืžืขืงืŸ ื˜ืขืงืขืก ืคื•ืŸ ื”ื™ื’ืข ื“ืจื™ื™ื•ื•ื–;
  • ื ืขืžืขืŸ ืกืงืจืขืขื ืฉืึธืฅ;
  • ื“ื™ืกื™ื™ื‘ืึทืœ ื–ื™ื›ืขืจื”ื™ื™ื˜ ืžื™ื˜ืœืขืŸ ืื™ืŸ Microsoft Office ืคึผืจืึธื“ื•ืงื˜ืŸ.

ืื™ืŸ ืขื˜ืœืขื›ืข ืคื•ื ื˜, ื“ื™ ืึทื˜ืึทืงืขืจื– ื’ืขืžืื›ื˜ ืึท ื’ืจื™ื™ึทื– ืื•ืŸ ืจื™ืกืขืจื˜ืฉืขืจื– ืคื•ืŸ ReaQta ื’ืขืจืื˜ืŸ ืฆื• ื‘ืึทืงื•ืžืขืŸ ื“ื™ ืœืขืฆื˜ IP ืึทื“ืจืขืก, ื•ื•ืึธืก ืื™ื– ื’ืขื•ื•ืขืŸ ืœื™ื’ืŸ ืื™ืŸ ื˜ืขื”ืจืึทืŸ. ืฆื•ืœื™ื‘ ื“ื™ ืฆื™ืœืŸ ื•ื•ืึธืก ื“ื™ ื’ืจื•ืคึผืข ื”ืึธื˜ ืึทื˜ืึทืงื™ืจื˜, ื•ื•ื™ ืื•ื™ืš ืื™ืจืข ืฆื™ืœืŸ ื•ื•ืึธืก ืฉื™ื™ืš ืฆื• ืกื™ื™ื‘ืขืจ ืฉืคึผื™ืึธื ืึทื–ืฉ, ื”ืึธื‘ืŸ ืขืงืกืคึผืขืจื˜ืŸ ืคึฟืึธืจื’ืขืฉืœืึธื’ืŸ, ืึทื– ื“ื™ ื’ืจื•ืคึผืข ืจืขืคึผืจืึทื–ืขื ืฅ ื“ื™ ืื™ื ื˜ืขืจืขืกืŸ ืคึฟื•ืŸ ื“ืขืจ ืื™ืจืื ืขืจ ืจืขื’ื™ืจื•ื ื’.

ื‘ืึทืคืึทืœืŸ ื™ื ื“ื™ืงืึทื˜ืึธืจืกC&C:

  • ื’ืœืึทื“ื™ื™ืึทื˜ืึธืจ[.]ื˜ืง
  • 94.23.148[.]194
  • 192.95.21[.]28
  • 46.105.84[.]146
  • 185.162.235[.]182

ื˜ืขืงืขืก:

  • 09aabd2613d339d90ddbd4b7c09195a9
  • cfa845995b851aacdf40b8e6a5b87ba7
  • a61b268e9bc9b7e6c9125cdbfb1c422a
  • f12bab5541a7d8ef4bbca81f6fc835a3
  • a066f5b93f4ac85e9adfe5ff3b10bc28
  • 8a004e93d7ee3b26d94156768bc0839d
  • 0638adf8fb4095d60fbef190a759aa9e
  • eed599981c097944fa143e7d7f7e17b1
  • 21aebece73549b3c4355a6060df410e9
  • 5c6148619abb10bb3789dcfb32f759a6

ื˜ืขืจืงื™ื™ ืื•ื ื˜ืขืจ ื‘ืึทืคืึทืœืŸ

ืื•ื™ืฃ ืืคืจื™ืœ 10, 2019, Group-IB ืกืคึผืขืฉืึทืœืึทืกืฅ ื“ื™ืกืงืึทื•ื•ืขืจื“ ืึท ืจื™ื ืขืŸ ืคื•ืŸ ืžื™ื™ืœื™ื ื’ ืึทื“ืจืขืกืขืก ืคื•ืŸ ื“ื™ ื˜ืขืจืงื™ืฉ ืคื™ืจืžืข ASELSAN A.ลž, ื“ื™ ื’ืจืขืกื˜ืข ืคื™ืจืžืข ืื™ืŸ ื“ื™ ืคืขืœื“ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง ืื™ืŸ ื˜ืขืจืงื™ื™. ืื™ืจืข ืคึผืจืึธื“ื•ืงื˜ืŸ ืึทืจื™ื™ึทื ื ืขืžืขืŸ ืจืึทื“ืึทืจ ืื•ืŸ ืขืœืขืงื˜ืจืึธื ื™ืง, ืขืœืขืงื˜ืจืึธ-ืึธืคึผื˜ื™ืง, ืึทื•ื•ื™ืึธื ื™ืงืก, ืึทื ืžืึทื ื“ ืกื™ืกื˜ืขืžืขืŸ, ืœืึทื ื“, ื ื™ื™ื•ื•ืึทืœ, ื•ื•ืขืคึผืึทื ื– ืื•ืŸ ืœื•ืคื˜ ืคืึทืจื˜ื™ื™ื“ื™ืงื•ื ื’ ืกื™ืกื˜ืขืžืขืŸ.

ืื™ืŸ ืœืขืจื ืขืŸ ืื™ื™ื ืขืจ ืคื•ืŸ ื“ื™ ื ื™ื™ึทืข ืกืึทืžืคึผืึทืœื– ืคื•ืŸ ื“ื™ POWERSTATS ืžืึทืœื•ื•ืึทืจืข, Group-IB ืขืงืกืคึผืขืจืฅ ื‘ืืฉืœืืกืŸ ืึทื– ื“ื™ MuddyWater ื’ืจื•ืคึผืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹ืึทื˜ืึทืงืขืจืก ื’ืขื ื™ืฆื˜ ื•ื•ื™ ืึท ืœืขืงืขื›ืœ ื“ืึธืงื•ืžืขื ื˜ ืึท ื“ืขืจืœื•ื™ื‘ืขื ื™ืฉ ื”ืขืกืงืขื ืฆื•ื•ื™ืฉืŸ Koรง Savunma, ืึท ืคื™ืจืžืข ื•ื•ืึธืก ืคึผืจืึธื“ื•ืฆื™ืจืŸ ืกืึทืœื•ืฉืึทื ื– ืื™ืŸ ื“ื™ ืคืขืœื“ ืคื•ืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื•ืŸ ืคืึทืจื˜ื™ื™ื“ื™ืงื•ื ื’ ื˜ืขืงื ืึทืœืึทื“ื–ืฉื™ื–, ืื•ืŸ Tubitak Bilgem. , ืึทืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื–ื™ื›ืขืจื”ื™ื™ื˜ ืคืึธืจืฉื•ื ื’ ืฆืขื ื˜ืขืจ ืื•ืŸ ืึทื•ื•ืึทื ืกื™ืจื˜ืข ื˜ืขืงื ืึทืœืึทื“ื–ืฉื™ื–. ื“ืขืจ ืงืึธื ื˜ืึทืงื˜ ืžืขื ื˜ืฉ ืคึฟืึทืจ Koรง Savunma ืื™ื– ื’ืขื•ื•ืขืŸ Tahir Taner TฤฑmฤฑลŸ, ื•ื•ืึธืก ื”ืึธื˜ ื’ืขื”ืืœื˜ืŸ ื“ื™ ืฉื˜ืขืœืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹ืคึผืจืึธื’ืจืึทื ืžืึทื ืึทื’ืขืจ ืื™ืŸ Koรง Bilgi ve Savunma Teknolojileri A.ลž. ืคื•ืŸ ืกืขืคื˜ืขืžื‘ืขืจ 2013 ืฆื• ื“ืขืฆืขืžื‘ืขืจ 2018. ืฉืคึผืขื˜ืขืจ ื”ืึธื˜ ืขืจ ืึธื ื’ืขื”ื•ื™ื‘ืŸ ืึทืจื‘ืขื˜ืŸ ืื™ืŸ ASELSAN A.ลž.

ืžื•ืกื˜ืขืจ ื“ืขืงืึธื™ ื“ืึธืงื•ืžืขื ื˜Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ื ืึธืš ื“ืขืจ ื‘ืึทื ื™ืฆืขืจ ืึทืงื˜ืึทื•ื•ื™ื™ืฅ ื‘ื™ื™ื–ืข ืžืึทืงืจืึธืก, ื“ื™ POWERSTATS ื‘ืึทืงื“ืึธืจ ืื™ื– ื“ืึทื•ื ืœืึธื•ื“ื™ื“ ืฆื• ื“ื™ ืงืึธืจื‘ืŸ ืก ืงืึธืžืคึผื™ื•ื˜ืขืจ.

ื“ืึทื ืง ืฆื• ื“ื™ ืžืขื˜ืึทื“ืึทื˜ืึท ืคื•ืŸ ื“ืขื ื“ืขืงืึธื• ื“ืึธืงื•ืžืขื ื˜ (MD5: 0638adf8fb4095d60fbef190a759aa9e) ืจื™ืกืขืจื˜ืฉืขืจื– ื–ืขื ืขืŸ ื‘ื™ื›ื•ืœืช ืฆื• ื’ืขืคึฟื™ื ืขืŸ ื“ืจื™ื™ ื ืึธืš ืกืึทืžืคึผืึทืœื– ืžื™ื˜ ื™ื™ื“ืขื ื™ืงืึทืœ ื•ื•ืึทืœื•ืขืก, ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ ื“ื™ ืฉืึทืคื•ื ื’ ื“ืึทื˜ืข ืื•ืŸ ืฆื™ื™ื˜, ื ืืžืขืŸ ืื•ืŸ ืึท ืจืฉื™ืžื” ืคื•ืŸ ืžืึทืงืจืึธืก ืงืึทื ื˜ื™ื™ื ื“:

  • ListOfHackedEmails.doc (eed599981c097944fa143e7d7f7e17b1)
  • asd.doc (21aebece73549b3c4355a6060df410e9)
  • F35-Specifications.doc (5c6148619abb10bb3789dcfb32f759a6)

ืกืงืจืขืขื ืฉืึธื˜ ืคื•ืŸ ื™ื™ื“ืขื ื™ืงืึทืœ ืžืขื˜ืึทื“ืึทื˜ืึท ืคื•ืŸ ืคืึทืจืฉื™ื“ืŸ ื“ืขืงืึธื• ื“ืึธืงื•ืžืขื ื˜ืŸ Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง

ืื™ื™ื ืขืจ ืคื•ืŸ ื“ื™ ื“ื™ืกืงืึทื•ื•ืขืจื“ ื“ืึธืงื•ืžืขื ื˜ืŸ ืžื™ื˜ ื“ืขื ื ืึธืžืขืŸ ListOfHackedEmails.doc ื›ึผื•ืœืœ ืึท ืจืฉื™ืžื” ืคื•ืŸ 34 ื‘ืœื™ืฆืคึผืึธืกื˜ ืึทื“ืจืขืกืขืก ื•ื•ืึธืก ื’ืขื”ืขืจืŸ ืฆื• ื“ื™ ืคืขืœื“ @aselsan.com.tr.

ื’ืจื•ืคืข-ื™ื‘ ืกืคึผืขืฉืึทืœืึทืกืฅ ืึธืคึผื’ืขืฉื˜ืขืœื˜ E- ื‘ืจื™ื•ื• ืึทื“ืจืขืกืขืก ืื™ืŸ ืขืคื ื˜ืœืขืš ื‘ื ื™ืžืฆื ืœื™ืงืก ืื•ืŸ ื’ืขืคึฟื•ื ืขืŸ ืึทื– 28 ืคื•ืŸ ื–ื™ื™ ื–ืขื ืขืŸ ืงืึทืžืคึผืจืึทืžื™ื™ื–ื“ ืื™ืŸ ืคืจื™ืขืจ ื“ื™ืกืงืึทื•ื•ืขืจื“ ืœื™ืงืก. ืงืึธื ื˜ืจืึธืœื™ืจื•ื ื’ ื“ื™ ืžื™ืฉืŸ ืคื•ืŸ ื‘ื ื™ืžืฆื ืœื™ืงืก ื’ืขื•ื•ื™ื–ืŸ ื•ื•ืขื’ืŸ 400 ื™ื™ื ืฆื™ืง ืœืึธื’ื™ื ืก ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ืขื ืคืขืœื“ ืื•ืŸ ืคึผืึทืกื•ื•ืขืจื“ื– ืคึฟืึทืจ ื–ื™ื™. ืขืก ืื™ื– ืžืขื’ืœืขืš ืึทื– ืึทื˜ืึทืงืขืจื– ื’ืขื•ื•ื™ื™ื ื˜ ื“ื™ ืขืคื ื˜ืœืขืš ื‘ื ื™ืžืฆื ื“ืึทื˜ืŸ ืฆื• ื‘ืึทืคืึทืœืŸ ASELSAN A.ลž.

ืกืงืจืขืขื ืฉืึธื˜ ืคื•ืŸ ื“ืขื ื“ืึธืงื•ืžืขื ื˜ ListOfHackedEmails.doc Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง

ืกืงืจืขืขื ืฉืึธื˜ ืคื•ืŸ ืึท ืจืฉื™ืžื” ืคื•ืŸ ืžืขืจ ื•ื•ื™ 450 ื“ื™ื˜ืขืงื˜ืึทื“ ืœืึธื’ื™ืŸ-ืคึผืึทืจืึธืœ ืคึผืขืจื– ืื™ืŸ ืฆื™ื‘ื•ืจ ืœื™ืงืก Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ืฆื•ื•ื™ืฉืŸ ื“ื™ ืึทื ื˜ื“ืขืงื˜ ืžื•ืกื˜ืขืจืŸ ืื™ื– ืื•ื™ืš ื’ืขื•ื•ืขืŸ ืึท ื“ืึธืงื•ืžืขื ื˜ ืžื™ื˜ ื“ืขื ื˜ื™ื˜ืœ F35-Specifications.doc, ืจื™ืคืขืจื™ื ื’ ืฆื• ื“ื™ F-35 ืคื™ื™ื˜ืขืจ ื“ื–ืฉืขื˜. ื“ืขืจ ืœืขืงืขื›ืœ ื“ืึธืงื•ืžืขื ื˜ ืื™ื– ืึท ืกืคึผืขืกื™ืคื™ืงืึทื˜ื™ืึธืŸ ืคึฟืึทืจ ื“ื™ F-35 ืžืึทืœื˜ื™-ืจืึธืœืข ืคื™ื™ื˜ืขืจ-ื‘ืึธืžื‘ืขืจ, ื•ื•ืึธืก ื™ื ื“ื™ืงื™ื™ืฅ ื“ื™ ืงืขืจืึทืงื˜ืขืจื™ืกื˜ื™ืงืก ืื•ืŸ ืคึผืจื™ื™ึทื– ืคื•ืŸ ื“ื™ ืขืจืงืจืึทืคื˜. ื“ื™ ื˜ืขืžืข ืคื•ืŸ โ€‹โ€‹ื“ืขื ื“ืขืงืึธื™ ื“ืึธืงื•ืžืขื ื˜ ืื™ื– ื’ืœื™ื™ึทืš ืฉื™ื™ืš ืฆื• ื“ื™ ื™ื•.

ืึทืœืข ื“ื™ ื“ืึทื˜ืŸ ื‘ืืงื•ืžืขืŸ ื™ื ื“ื™ืงื™ื™ืฅ ืึทื– ื“ื™ ื”ื•ื™ืคึผื˜ ื˜ืึทืจื’ืึทืฅ ืคื•ืŸ MuddyWater ืกื™ื™ื‘ืขืจ ืื ืคืืœืŸ ื–ืขื ืขืŸ ืึธืจื’ืึทื ืึทื–ื™ื™ืฉืึทื ื– ืœืึธื•ืงื™ื™ื˜ืึทื“ ืื™ืŸ ื˜ืขืจืงื™ื™.

ื•ื•ืขืจ ื–ืขื ืขืŸ Gladiyator_CRK ืื•ืŸ Nima Nikjoo?

ืคืจื™ืขืจ, ืžืขืจืฅ 2019, ื‘ื™ื™ื–ืข ื“ืึธืงื•ืžืขื ื˜ืŸ ื–ืขื ืขืŸ ื“ื™ืกืงืึทื•ื•ืขืจื“ ื‘ืืฉืืคืŸ ื“ื•ืจืš ืื™ื™ืŸ Windows ื‘ืึทื ื™ืฆืขืจ ืื•ื ื˜ืขืจ ื“ื™ ื ื™ืงืงื ืึทืžืข Gladiyator_CRK. ื“ื™ ื“ืืงื•ืžืขื ื˜ืŸ ืื•ื™ืš ืคื•ื ืื ื“ืขืจื’ืขื˜ื™ื™ืœื˜ ื“ื™ POWERSTATS ื‘ืึทืงื“ืึธืจ ืื•ืŸ ืคืืจื‘ื•ื ื“ืŸ ืฆื• ืึท C&C ืกืขืจื•ื•ืขืจ ืžื™ื˜ ืึท ืขื ืœืขืš ื ืึธืžืขืŸ ื’ืœืึทื“ื™ื™ืึทื˜ืึธืจ[.]ื˜ืง.

ื“ืึธืก ืงืขืŸ ื–ื™ื™ืŸ ื’ืขื˜ืืŸ ื ืึธืš ื“ืขืจ ื‘ืึทื ื™ืฆืขืจ ื ื™ืžืึท ื ื™ืงื“ื–ืฉืึธ ืคึผืึธืกื˜ืขื“ ืื•ื™ืฃ ื˜ื•ื•ื™ื˜ื˜ืขืจ ืื•ื™ืฃ 14 ืžืขืจืฅ 2019, ื˜ืจื™ื™ื ื’ ืฆื• ื“ืขืงืึธื“ืข ืึทื‘ืคื•ืกืงื™ื™ื˜ื™ื“ ืงืึธื“ ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ MuddyWater. ืื™ืŸ ื“ื™ ื‘ืึทืžืขืจืงื•ื ื’ืขืŸ ืฆื• ื“ืขื ื˜ื•ื•ืขืขื˜, ื“ืขืจ ืคืึธืจืฉืขืจ ื”ืื˜ ื’ืขื–ืื’ื˜ ืึทื– ืขืจ ืงืขืŸ ื ื™ืฉื˜ ื˜ื™ื™ืœืŸ ื™ื ื“ื™ืงืึทื˜ืึธืจืก ืคื•ืŸ ืงืึธืžืคึผืจืึธืžื™ืก ืคึฟืึทืจ ื“ืขื ืžืึทืœื•ื•ืึทืจืข, ื•ื•ื™ื™ึทืœ ื“ื™ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื™ื– ืงืึทื ืคืึทื“ืขื ืฉืึทืœ. ืฆื•ื ื‘ืึทื“ื•ื™ืขืจืŸ, ื“ื™ ืคึผืึธืกื˜ืŸ ืื™ื– ืฉื•ื™ืŸ ืื•ื™ืกื’ืขืžืขืงื˜, ืึธื‘ืขืจ ื˜ืจืึทืกืขืก ืคื•ืŸ ืขืก ื‘ืœื™ื™ื‘ืŸ ืึธื ืœื™ื™ืŸ:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
Nima Nikjoo ืื™ื– ื“ื™ ื‘ืึทื–ื™ืฆืขืจ ืคื•ืŸ ื“ื™ Gladiyator_CRK ืคึผืจืึธืคื™ืœ ืื•ื™ืฃ ื“ื™ ื™ืจืึทื ื™ืึทืŸ ื•ื•ื™ื“ืขื ื”ืึธืกื˜ื™ื ื’ ื–ื™ื™ื˜ืœืขืš dideo.ir ืื•ืŸ videoi.ir. ืื•ื™ืฃ ื“ืขื ืคึผืœืึทืฅ, ืขืจ ื“ืขืžืึทื ืกื˜ืจื™ื™ืฅ ืคึผืึธืง ืขืงืกืคึผืœื•ื™ืฅ ืฆื• ื“ื™ืกื™ื™ื‘ืึทืœ ืึทื ื˜ื™ื•ื•ื™ืจื•ืก ืžื›ืฉื™ืจื™ื ืคื•ืŸ ืคืึทืจืฉื™ื“ืŸ ื•ื•ืขื ื“ืึธืจืก ืื•ืŸ ื‘ื™ื™ืคึผืึทืก ื–ืึทืžื“ื‘ืึธืงืกืขืก. ื ื™ืžืึท ื ื™ืงื“ื–ืฉืึธืึธ ืฉืจื™ื™ื‘ื˜ ื•ื•ืขื’ืŸ ื–ื™ืš ืึทื– ืขืจ ืื™ื– ืึท ื ืขืฅ ื–ื™ื›ืขืจื”ื™ื™ื˜ ืžื•ืžื›ืข, ื•ื•ื™ ืื•ื™ืš ืึท ืคืึทืจืงืขืจื˜ ื™ื ื–ืฉืขื ื™ืจ ืื•ืŸ ืžืึทืœื•ื•ืึทืจืข ืึทื ืึทืœื™ืกื˜ ื•ื•ืึธืก ืึทืจื‘ืขื˜ ืคึฟืึทืจ MTN Irancell, ืึทืŸ ื™ืจืึทื ื™ืึทืŸ ื˜ืขืœืึทืงืึทืžื™ื•ื ืึทืงื™ื™ืฉืึทื ื– ืคื™ืจืžืข.

ืกืงืจืขืขื ืฉืึธื˜ ืคื•ืŸ ื’ืขืจืื˜ืขื•ื•ืขื˜ ื•ื•ื™ื“ื™ืืก ืื™ืŸ Google ื–ื•ื›ืŸ ืจืขื–ื•ืœื˜ืึทื˜ืŸ:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ืฉืคึผืขื˜ืขืจ, ืื•ื™ืฃ 19 ืžืขืจืฅ 2019, ื‘ืึทื ื™ืฆืขืจ ื ื™ืžืึท ื ื™ืงื“ื–ืฉืึธ ืื•ื™ืฃ ื“ื™ ื’ืขื–ืขืœืฉืึทืคื˜ืœืขืš ื ืขืฅ ื˜ื•ื•ื™ื˜ื˜ืขืจ ื˜ืฉื™ื™ื ื“ื–ืฉื“ ื–ื™ื™ืŸ ื ื™ืงืงื ืึทืžืข ืฆื• ืžืึทืœื•ื•ืึทืจืข ืคื™ื™ื˜ืขืจ, ืื•ืŸ ืื•ื™ืš ืื•ื™ืกื’ืขืžืขืงื˜ ืคึฟืึทืจื‘ื•ื ื“ืขื ืข ืึทืจื˜ื™ืงืœืขืŸ ืื•ืŸ ื‘ืึทืžืขืจืงื•ื ื’ืขืŸ. ื“ืขืจ ืคึผืจืึธืคื™ืœ ืคื•ืŸ Gladiyator_CRK ืื•ื™ืฃ ื“ื™ ื•ื•ื™ื“ืขื ื”ืึธืกื˜ื™ื ื’ dideo.ir ืื™ื– ืื•ื™ืš ืื•ื™ืกื’ืขืžืขืงื˜, ื•ื•ื™ ืื™ื– ื’ืขื•ื•ืขืŸ ื“ืขืจ ืคืึทืœ ืื•ื™ืฃ ื™ืึธื•ื˜ื•ื‘ืข, ืื•ืŸ ื“ืขืจ ืคึผืจืึธืคื™ืœ ื–ื™ืš ืื™ื– ืจื™ื ื™ื™ืžื“ N Tabrizi. ืึธื‘ืขืจ, ื›ึผืžืขื˜ ืึท ื—ื•ื“ืฉ ืฉืคึผืขื˜ืขืจ (ืืคืจื™ืœ 16, 2019), ื“ื™ ื˜ื•ื•ื™ื˜ื˜ืขืจ ื—ืฉื‘ื•ืŸ ืื ื’ืขื”ื•ื™ื‘ืŸ ื ื™ืฆืŸ ื“ื™ ื ืึธืžืขืŸ Nima Nikjoo ื•ื•ื™ื“ืขืจ.

ื‘ืขืฉืึทืก ื“ืขื ืœืขืจื ืขืŸ, ื’ืจื•ืคืข-ื™ื‘ ืกืคึผืขืฉืึทืœืึทืกืฅ ื“ื™ืกืงืึทื•ื•ืขืจื“ ืึทื– ื ื™ืžืึท ื ื™ืงื“ื–ืฉืึธ ืื™ื– ืฉื•ื™ืŸ ื“ืขืจืžืื ื˜ ืื™ืŸ ืงืฉืจ ืžื™ื˜ ืกื™ื™ื‘ืขืจ ืงืจื™ืžื™ื ืึทืœ ืึทืงื˜ื™ื•ื•ื™ื˜ืขื˜ืŸ. ืื™ืŸ ืื•ื™ื’ื•ืกื˜ 2014, ื”ืึธื˜ ื“ืขืจ ืื™ืจืึทืŸ ื›ืึทื‘ืึทืจืขืกื˜ืึทืŸ ื‘ืœืึธื’ ืคึฟืึทืจืขืคึฟื ื˜ืœืขื›ื˜ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ืžืขื ื˜ืฉืŸ ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ืขืจ ืกื™ื™ื‘ืขืจ ืงืจื™ืžื™ื ืึทืœ ื’ืจื•ืคึผืข ืื™ืจืึทื ืขืจ ื ืึทืกืจ ืื™ื ืกื˜ื™ื˜ื•ื˜. ืื™ื™ืŸ FireEye ื•ื™ืกืคืึธืจืฉื•ื ื’ ื”ืื˜ ื’ืขื–ืื’ื˜ ืึทื– Nasr ืื™ื ืกื˜ื™ื˜ื•ื˜ ืื™ื– ื’ืขื•ื•ืขืŸ ืึท ืงืึธื ื˜ืจืึทืงื˜ืึธืจ ืคึฟืึทืจ APT33 ืื•ืŸ ืื™ื– ืื•ื™ืš ื™ื ื•ื•ืึทืœื•ื•ื“ ืื™ืŸ DDoS ืื ืคืืœืŸ ืื•ื™ืฃ ื™ื•.

ืึทื–ื•ื™ ืื™ืŸ ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ื‘ืœืึธื’, ื ื™ืžืึท ื ื™ืงื“ื–ืฉื•-ื ื™ืงื“ื–ืฉืึธ ืื™ื– ื’ืขื•ื•ืขืŸ ื“ืขืจืžืื ื˜, ื•ื•ืึธืก ืื™ื– ื’ืขื•ื•ืขืŸ ื“ืขื•ื•ืขืœืึธืคึผื™ื ื’ ืžืึทืœื•ื•ืึทืจืข ืฆื• ืฉืคึผื™ืึธืŸ ืื•ื™ืฃ ื™ืจืึทื ื™ืึทื ืก, ืื•ืŸ ื–ื™ื™ืŸ ื‘ืœื™ืฆืคึผืึธืกื˜ ืึทื“ืจืขืก: gladiyator_cracker@yahoo[.]com.

ืกืงืจืขืขื ืฉืึธื˜ ืคื•ืŸ ื“ืึทื˜ืŸ ืึทื˜ืจื™ื‘ื™ืึทื˜ืึทื“ ืฆื• ืกื™ื™ื‘ืขืจ ืงืจื™ืžืึทื ืึทืœื– ืคื•ืŸ ื“ื™ ื™ืจืึทื ื™ืึทืŸ ื ืึทืกืจ ืื™ื ืกื˜ื™ื˜ื•ื˜:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ืื™ื‘ืขืจื–ืขืฆื•ื ื’ ืคื•ืŸ ื“ื™ ื›ื™ื™ืœื™ื™ื˜ื™ื“ ื˜ืขืงืกื˜ ืื™ืŸ ืจื•ืกื™ืฉ: Nima Nikio - ืกืคึผื™ื•ื•ืึทืจืข ื“ืขื•ื•ืขืœืึธืคึผืขืจ - ื‘ืœื™ืฆืคึผืึธืกื˜:.

ื•ื•ื™ ืื™ืจ ืงืขื ืขืŸ ื–ืขืŸ ืคึฟื•ืŸ ื“ืขื ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข, ื“ื™ E- ื‘ืจื™ื•ื• ืึทื“ืจืขืก ืื™ื– ืคืืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ื™ ืึทื“ืจืขืก ื’ืขื ื™ืฆื˜ ืื™ืŸ ื“ื™ ืื ืคืืœืŸ ืื•ืŸ ื“ื™ ื ื™ืฆืขืจืก Gladiyator_CRK ืื•ืŸ Nima Nikjoo.

ืื™ืŸ ื“ืขืจืฆื•, ื“ืขืจ ืึทืจื˜ื™ืงืœ ืคื•ืŸ 15 ื™ื•ื ื™ 2017 ืกื˜ื™ื™ื˜ื™ื“ ืึทื– Nikjoo ืื™ื– ื’ืขื•ื•ืขืŸ ืขืคึผืขืก ืึธืคึผื’ืขืœืึธื–ืŸ ืื™ืŸ ืคึผืึธืกื˜ื™ื ื’ ืจืขืคืขืจืขื ืฆืŸ ืฆื• Kavosh Security Center ืื•ื™ืฃ ื–ื™ื™ืŸ ื ืขืžืขื  ื–ื™ื› ื•ื•ื™ื“ืขืจ. ืขืกืŸ ืžื™ื™ื ื•ื ื’ืื– ื“ืขืจ ืงืื•ื•ืืฉ ื–ื™ื›ืขืจื”ื™ื™ื˜ ืฆืขื ื˜ืขืจ ื•ื•ืขืจื˜ ื’ืขืฉื˜ื™ืฆื˜ ื“ื•ืจืš ื“ื™ ืื™ืจืื ืขืจ ืกื˜ืขื™ื˜ ืฆื• ืคื™ื ืื ืฆื™ืจืŸ ืคืจื-ืจืขื’ื™ืจื•ื ื’ ื”ืืงืขืจืก.

ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ ืคื™ืจืžืข ื•ื•ื• Nima Nikjoo ื’ืขืืจื‘ืขื˜:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ื“ื™ ืœื™ื ืงืขื“ื™ืŸ ืคึผืจืึธืคื™ืœ ืคื•ืŸ ื˜ื•ื•ื™ื˜ื˜ืขืจ ื‘ืึทื ื™ืฆืขืจ Nima Nikjoo ืœื™ืกื˜ืขื“ ื–ื™ื™ืŸ ืขืจืฉื˜ืขืจ ืึธืจื˜ ืคื•ืŸ ื‘ืึทืฉืขืคื˜ื™ืงื•ื ื’ ื•ื•ื™ Kavosh Security Center, ื•ื•ื• ืขืจ ื’ืขืืจื‘ืขื˜ ืคื•ืŸ 2006 ืฆื• 2014. ื‘ืขืฉืึทืก ื–ื™ื™ืŸ ืึทืจื‘ืขื˜, ืขืจ ื’ืขืœืขืจื ื˜ ืคืึทืจืฉื™ื“ืŸ ืžืึทืœื•ื•ืึทืจืข, ืื•ืŸ ืื•ื™ืš ื”ืึทื ื“ืœืขืŸ ืžื™ื˜ ืคืึทืจืงืขืจื˜ ืื•ืŸ ืึทื‘ืคืึทืกืงื™ื™ืฉืึทืŸ-ืคึฟืึทืจื‘ื•ื ื“ืขื ืข ืึทืจื‘ืขื˜.

ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ ืคื™ืจืžืข Nima Nikjoo ื’ืขืืจื‘ืขื˜ ืคึฟืึทืจ ืื•ื™ืฃ ืœื™ื ืงืขื“ื™ืŸ:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง

ืžื•ื“ื“ื™ื•ื•ืึทื˜ืขืจ ืื•ืŸ ื”ื•ื™ืš ื–ื™ืš-ืฉืึทืฆืŸ

ืขืก ืื™ื– ื˜ืฉื™ืงืึทื•ื•ืข ืึทื– ื“ื™ MuddyWater ื’ืจื•ืคึผืข ืงืขืจืคืึทืœื™ ืžืึธื ื™ื˜ืึธืจืก ืึทืœืข ืจื™ืคึผืึธืจืฅ ืื•ืŸ ืึทืจื˜ื™ืงืœืขืŸ ืคื•ืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื–ื™ื›ืขืจื”ื™ื™ื˜ ืขืงืกืคึผืขืจืฅ ืืจื•ื™ืก ื•ื•ืขื’ืŸ ื–ื™ื™, ืื•ืŸ ืืคื™ืœื• ื“ื™ืœื™ื‘ืจืึทื˜ืœื™ ืœื™ื ืงืก ืคืึทืœืฉ ืคืœืึทื’ืก ืื™ืŸ ืขืจืฉื˜ืขืจ ืฆื• ื•ื•ืึทืจืคืŸ ืจื™ืกืขืจื˜ืฉืขืจื– ืึทื•ื•ืขืง ื“ื™ ืจื™ื™ืขืš. ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, ื–ื™ื™ืขืจ ืขืจืฉื˜ืขืจ ืื ืคืืœืŸ ืคืึทืจืคื™ืจืŸ ืขืงืกืคึผืขืจืฅ ื“ื•ืจืš ื“ื™ื˜ืขืงื˜ื™ื ื’ ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ื“ื ืก ืžืขืกื™ื ื“ื–ืฉืขืจ, ื•ื•ืึธืก ืื™ื– ืึธืคื˜ ืคืืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ื™ FIN7 ื’ืจื•ืคึผืข. ืื™ืŸ ืื ื“ืขืจืข ืื˜ืืงืขืก ื”ืื‘ืŸ ื–ื™ื™ ืืจื™ื™ื ื’ืขืœื™ื™ื’ื˜ ื›ื™ื ืขื–ืขืจ ืกื˜ืจื™ื ื’ืก ืื™ืŸ ื“ื™ ืงืื•ื“.

ืื™ืŸ ื“ืขืจืฆื•, ื“ื™ ื’ืจื•ืคึผืข ืœื™ื‘ ืฆื• ืœืึธื–ืŸ ืึทืจื˜ื™ืงืœืขืŸ ืคึฟืึทืจ ืจื™ืกืขืจื˜ืฉืขืจื–. ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, ื–ื™ื™ ื”ืึธื‘ืŸ ื ื™ืฉื˜ ื•ื•ื™ ืึทื– ืงืึทืกืคึผืขืจืกืงื™ ืœืึทื‘ ื’ืขืฉื˜ืขืœื˜ MuddyWater ืื™ืŸ 3 ืึธืจื˜ ืื™ืŸ ื–ื™ื™ืŸ ืกืึทืงืึธื ืข ืจืึทื ื’ ืคึฟืึทืจ ื“ื™ ื™ืึธืจ. ืื™ืŸ ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ืžืึธืžืขื ื˜, ืขืžืขืฆืขืจ - ืžืึทืฉืžืึธืขืก ื“ื™ MuddyWater ื’ืจื•ืคึผืข - ื•ืคึผืœืึธืึทื“ืขื“ ืึท ืคึผืึธืง ืคื•ืŸ ืึท ืขืงืกืคึผืœื•ื™ื˜ ืฆื• ื™ืึธื•ื˜ื•ื‘ืข ื•ื•ืึธืก ื“ื™ืกื™ื™ื‘ืึทืœ ื“ื™ LK ืึทื ื˜ื™ื•ื•ื™ืจื•ืก. ื–ื™ื™ ืื•ื™ืš ืœืึธื–ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’ ืื•ื ื˜ืขืจ ื“ืขื ืึทืจื˜ื™ืงืœ.

ืกืงืจืขืขื ืฉืึธืฅ ืคื•ืŸ ื“ื™ ื•ื•ื™ื“ืขื ืื•ื™ืฃ ื“ื™ืกื™ื™ื‘ืึทืœื™ื ื’ ืงืึทืกืคึผืขืจืกืงื™ ืœืึทื‘ ืึทื ื˜ื™ื•ื•ื™ืจื•ืก ืื•ืŸ ื“ื™ ืงืึธืžืขื ื˜ืึทืจ ืื•ื ื˜ืŸ:

Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
Muddy Waters: ื•ื•ื™ ื›ืึทืงืขืจื– ืคื•ืŸ MuddyWater ืึทื˜ืึทืงื™ืจื˜ ืึท ื˜ืขืจืงื™ืฉ ืคืึทื‘ืจื™ืงืึทื ื˜ ืคื•ืŸ ืžื™ืœื™ื˜ืขืจื™ืฉ ืขืœืขืงื˜ืจืึธื ื™ืง
ืขืก ืื™ื– ื ืึธืš ืฉื•ื•ืขืจ ืฆื• ืžืึทื›ืŸ ืึทืŸ ืึทื ืึทืžื‘ื™ื’ื™ื•ืึทืก ืžืกืงื ื ื•ื•ืขื’ืŸ ื“ื™ ื™ื ื•ื•ืึทืœื•ื•ืžืึทื ื˜ ืคื•ืŸ "Nima Nikjoo". ื’ืจื•ืคืข-ื™ื‘ ืขืงืกืคึผืขืจืฅ ื‘ืึทื˜ืจืึทื›ื˜ืŸ ืฆื•ื•ื™ื™ ื•ื•ืขืจืกื™ืขืก. Nima Nikjoo, ื˜ืึทืงืข, ืงืขืŸ ื–ื™ื™ืŸ ืึท ื”ืขืงืขืจ ืคื•ืŸ ื“ื™ MuddyWater ื’ืจื•ืคึผืข, ื•ื•ืึธืก ืื™ื– ื’ืขืงื•ืžืขืŸ ืฆื• ืœื™ื›ื˜ ืจืขื›ื˜ ืฆื• ื–ื™ื™ืŸ ื ืขื’ืœืึทื“ื–ืฉืึทื ืก ืื•ืŸ ื’ืขื•ื•ืืงืกืŸ ื˜ืขื˜ื™ืงื™ื™ื˜ ืื•ื™ืฃ ื“ืขืจ ื ืขืฅ. ื“ื™ ืฆื•ื•ื™ื™ื˜ืข ืืคืฆื™ืข ืื™ื–, ืื– ืขืจ ืื™ื– ื‘ื›ื•ื•ื ื” "ืื•ื™ืกื’ืขืฉื˜ืขืœื˜ ื’ืขื•ื•ืืจืŸ" ื“ื•ืจืš ืื ื“ืขืจืข ืžื™ื˜ื’ืœื™ื“ืขืจ ืคื•ืŸ ื“ืขืจ ื’ืจื•ืคืข, ื›ื“ื™ ืื•ื•ืขืงืฆื•ืคื™ืจืŸ ื—ืฉื“ ืคื•ืŸ ื–ื™ืš ืืœื™ื™ืŸ. ืื™ืŸ ืงื™ื™ืŸ ืคืึทืœ, Group-IB ื”ืืœื˜ ื–ื™ื™ืŸ ืคืึธืจืฉื•ื ื’ ืื•ืŸ ื•ื•ืขื˜ ื‘ืืฉื˜ื™ืžื˜ ื‘ืึทืจื™ื›ื˜ ื–ื™ื™ึทืŸ ืจืขื–ื•ืœื˜ืึทื˜ืŸ.

ื•ื•ืึธืก ืฉื™ื™ืš ืื™ืจืื ืขืจ ืึทืคึผื˜, ื ืึธืš ืึท ืกืขืจื™ืข ืคื•ืŸ โ€‹โ€‹ืœื™ืงืก ืื•ืŸ ืœื™ืงืก, ื–ื™ื™ ื•ื•ืขืœืŸ ืžื™ืกื˜ืึธืžืข ื‘ืึทืงื•ืžืขืŸ ืึท ืขืจื ืกื˜ "ื“ืขื‘ืจื™ืคื™ื ื’" - ื›ืึทืงืขืจื– ื•ื•ืขื˜ ื–ื™ื™ืŸ ื’ืขืฆื•ื•ื•ื ื’ืขืŸ ืฆื• ืขืžืขืก ื˜ื•ื™ืฉืŸ ื–ื™ื™ืขืจ ืžื›ืฉื™ืจื™ื, ืจื™ื™ื ื™ืงืŸ ื–ื™ื™ืขืจ ืฉืคึผื•ืจ ืื•ืŸ ื’ืขืคึฟื™ื ืขืŸ ืžืขื’ืœืขืš "ืžืึธืœืขืก" ืื™ืŸ ื–ื™ื™ืขืจ ืจื™ื™ืขืŸ. ืขืงืกืคืขืจื˜ืŸ ื”ืื‘ืŸ ื ื™ืฉื˜ ืื•ื™ืกื’ืขืฉืœืืกืŸ ืื– ื–ื™ื™ ื•ื•ืขืœืŸ ืืคื™ืœื• ื ืขืžืขืŸ ื ืฆื™ื™ื˜-ืื•ื™ืก, ืื‘ืขืจ ื ืืš ื ืงื•ืจืฆืข ื‘ืจืขื›ืŸ, ื–ืขื ืขืŸ ื“ื™ ืื™ืจืื ืขืจ ืืคื˜ ืื˜ืืงืขืก ื•ื•ื™ื“ืขืจ ืคืืจื‘ืœื™ื‘ืŸ.

ืžืงื•ืจ: www.habr.com

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’