NotesWhat is notes.io?

Notes brand slogan

Notes - notes.io

Ransomware Group's Extortion website Offline after Cyberattack Leads to Shutdown of Major Fuel Pipeline
The DarkSide statement also said "the hosting support service doesn't provide any information except 'at the request of law enforcement authorities.' In addition, a couple of hours after the seizure, funds from the payment server (belonging to us and our clients) were withdrawn to an unknown account," according to Intel 471.

Mandiant Threat Intelligence, the cybersecurity firm that has been working with Colonial Pipeline to get its operations back up and running, said the statement could be an "exit scam" by DarkSide.

"The post cited law enforcement pressure and pressure from the United States for this decision," said Kimberly Goody, Mandiant's senior manager for financial crime analysis. "We have not independently validated these claims and there is some speculation by other actors that this could be an exit scam."

Two cybersecurity experts also cautioned that if the site was seized by US authorities, it would likely have a notice of seizure on the site with law enforcement logos.

But Dave Kennedy, a former National Security Agency hacker who now serves as president and CEO of the information security firm TrustedSec, said that depends on where the group's servers resided.

"If it was in a country we have a relationship with, the US government would work in conjunction with the other foreign government to get the servers taken offline," he said. gservers "If the countries where the servers reside are in more of a hostile country, for example Russia, this is where you would see offensive cyber operations occur where hacking the systems and shutting them down would be an available option."

Kennedy said he believes the site being offline so suddenly bears the hallmarks of a deliberate takedown. "With the sharp focus on Ransomware groups now by the Biden administration and law enforcement, ransomware groups are shaking in their boots," he said. He noted, however, that DarkSide is still not completely shut down because the individuals behind it are still at large.

President Joe Biden said Thursday that the US was going to pursue measures to disrupt the ability of the criminals behind the attack to operate.

"We're also going to pursue a measure to disrupt their ability to operate. And our Justice Department has launched a new task force dedicated to prosecuting ransomware hackers to the full extent of the law," he said.

Colonial Pipeline paid ransom to DarkSide, two sources familiar with the matter told CNN on Thursday. The sources did not say how much the company paid, but DarkSide had demanded nearly $5 million, two other sources familiar with the incident said.

DarkSide is "ransomware-as-a-service" operation, meaning that the developers of the ransomware receive a share of the proceeds from other cybercriminal actors, known as "affiliates," who deploy it.

Officials and cybersecurity experts believe DarkSide operates out of Russia or Eastern Europe, based on the way it targets victims.

On Thursday, Biden said he does not believe the Russian government was behind a ransomware attack, but he said Moscow still bears a responsibility to stop such attacks when they originate within its borders.

"We do not believe -- emphasize we do not believe -- the Russian government was involved in this attack," Biden said. "But we do have strong reason to believe that the criminals who did the attack are living in Russia. That's where it came from."

He said the US has been in direct communications with Moscow about the imperative for responsible countries to take decisive action against these ransomware networks.

Darkside is "relatively new" in terms of ransomware groups, according to Allan Liska, senior security architect, Recorded Future, who said the group has been around since August of 2020, but "they're fairly aggressive" and have "grown very quickly."

"You pay a fee to join their service. And then the main threat actor gets a cut of every successful ransomware payment that you make," Liska said.

The group previously posted a notice on the dark web that their motivation was "only to make money" and claiming it did not carry out the attack on behalf of a foreign government, according to a cyber counterintelligence firm.

Read More: https://gservers.org/
     
 
what is notes.io
 

Notes.io is a web-based application for taking notes. You can take your notes and share with others people. If you like taking long notes, notes.io is designed for you. To date, over 8,000,000,000 notes created and continuing...

With notes.io;

  • * You can take a note from anywhere and any device with internet connection.
  • * You can share the notes in social platforms (YouTube, Facebook, Twitter, instagram etc.).
  • * You can quickly share your contents without website, blog and e-mail.
  • * You don't need to create any Account to share a note. As you wish you can use quick, easy and best shortened notes with sms, websites, e-mail, or messaging services (WhatsApp, iMessage, Telegram, Signal).
  • * Notes.io has fabulous infrastructure design for a short link and allows you to share the note as an easy and understandable link.

Fast: Notes.io is built for speed and performance. You can take a notes quickly and browse your archive.

Easy: Notes.io doesn’t require installation. Just write and share note!

Short: Notes.io’s url just 8 character. You’ll get shorten link of your note when you want to share. (Ex: notes.io/q )

Free: Notes.io works for 12 years and has been free since the day it was started.


You immediately create your first note and start sharing with the ones you wish. If you want to contact us, you can use the following communication channels;


Email: [email protected]

Twitter: http://twitter.com/notesio

Instagram: http://instagram.com/notes.io

Facebook: http://facebook.com/notesio



Regards;
Notes.io Team

     
 
Shortened Note Link
 
 
Looding Image
 
     
 
Long File
 
 

For written notes was greater than 18KB Unable to shorten.

To be smaller than 18KB, please organize your notes, or sign in.