I-backdoor yeqembu le-Cyber ​​yakwa-Turla ikuvumela ukuthi ubambe ukulawula amaseva e-Microsoft Exchange

I-ESET ihlaziye uhlelo olungayilungele ikhompuyutha lwe-LightNeuron, olusetshenziswa amalungu eqembu le-cybercriminal elaziwayo i-Turla.

I-backdoor yeqembu le-Cyber ​​yakwa-Turla ikuvumela ukuthi ubambe ukulawula amaseva e-Microsoft Exchange

Iqembu labaduni uTurla lazuza udumo ngo-2008 ngemuva kokugebenga inethiwekhi ye-US Central Command. Umgomo wezigebengu ze-inthanethi uwukweba idatha eyimfihlo ebalulekile yamasu.

Eminyakeni yakamuva, amakhulu abasebenzisi emazweni angaphezu kuka-45 ahlupheke ngenxa yezenzo zabahlaseli bakwa-Turla, ikakhulukazi izikhungo zikahulumeni nezamanxusa, amasosha, ezemfundo, izinhlangano zocwaningo, njll.

Kodwa ake sibuyele kuhlelo olungayilungele ikhompuyutha lwe-LightNeuron. Le backdoor ikuvumela ukuthi ukwazi ukusungula cishe ukulawula okuphelele kumaseva e-imeyili e-Microsoft Exchange. Ngemva kokufinyelela kumenzeli wezokuthutha we-Microsoft Exchange, abahlaseli bangakwazi ukufunda futhi bavimbe imilayezo, bashintshe okunamathiselwe futhi bahlele umbhalo, futhi babhale futhi bathumele imilayezo egameni labasebenzi benhlangano.


I-backdoor yeqembu le-Cyber ​​yakwa-Turla ikuvumela ukuthi ubambe ukulawula amaseva e-Microsoft Exchange

Umsebenzi onobungozi ufihlwe kumadokhumenti e-PDF aklanywe ngokukhethekile nemifanekiso ye-JPG; ukuxhumana ne-backdoor kwenziwa ngokuthumela izicelo nemiyalo ngalawa mafayela.

Ochwepheshe be-ESET baphawula ukuthi ukuhlanza uhlelo kuhlelo olungayilungele ikhompyutha lwe-LightNeuron kuwumsebenzi onzima kakhulu. Iqiniso liwukuthi ukususa amafayela anonya akulethi imiphumela futhi kungaholela ekuphazamisekeni kweMicrosoft Exchange.

Kunesizathu sokukholelwa ukuthi le backdoor isetshenziselwa izinhlelo ze-Linux. 



Source: 3dnews.ru

Engeza amazwana