The Sabik (2025)U.S. Department of Justice plays the long game.
That much was made clear Monday as the DOJ announced charges against six Russian military officers accused of launching a string of damaging cyberattacks dating back to 2015. The men, all members of the Russian Main Intelligence Directorate (GRU), are allegedly behind the notoriously destructive NotPetya and Olympic Destroyer malware (among others).
NotPetya, disguised as ransomware, is a type of malware that appeared to intentionally damage victims' computer systems. Unlike typical ransomware, which encrypts users' files and demands payment to unlock them, NotPetya seemed designed to destroy what it touched. The Olympic Destroyer malware, for its part, targeted the 2018 Winter Olympics, and security experts at the time described its goal as one of "embarrassment."
Like the famed WannaCry ransomware, NotPetya employed a leaked NSA exploit known as EternalBlue to power its spread.
Monday's press release and corresponding unsealed indictment lay out the vast scale of the operation which began around November of 2015.
These GRU hackers and their co-conspirators engaged in computer intrusions and attacks intended to support Russian government efforts to undermine, retaliate against, or otherwise destabilize: (1) Ukraine; (2) Georgia; (3) elections in France; (4) efforts to hold Russia accountable for its use of a weapons-grade nerve agent, Novichok, on foreign soil; and (5) the 2018 PyeongChang Winter Olympic Games after Russian athletes were banned from participating under their nation's flag, as a consequence of Russian government-sponsored doping effort.
The DOJ alleges that, in addition to the above-listed victims, the NotPetya malware disrupted hospital systems in the U.S. One such victim, cited in the press release, is Western Pennsylvania's Heritage Valley health care system. The malware reportedly "caused the unavailability of patient lists, patient history, physical examination files, and laboratory records" as well as prevented access to "mission-critical computer systems (such as those relating to cardiology, nuclear medicine, radiology, and surgery) for approximately one week[.]"
This tangible impact on real people's health was on top of the close to $1 billion in financial damages allegedly suffered by the Heritage Valley Health System, a FedEx Corporation subsidiary, and an unnamed "large U.S. pharmaceutical manufacturer."
A third strain of malware, KillDisk, was allegedly designed by one of the indicted Russian hackers. It would, in addition to destroying computer files, draw an image of the mask from the show Mr. Roboton victims' computer screens.
"[Pavel Valeryevich Frolov] designed the malware to draw the image in real time on the infected computer's screen," reads the unsealed indictment.
In addition to leaving a pop culture calling card, KillDisk was intended to "delete computer event logs and other files and reboot the infected computers," explains the indictment. "Once rebooted, the infected computers were inoperable."
The six men, ranging in age from 27 to 35, are charged with "conspiracy to conduct computer fraud and abuse, conspiracy to commit wire fraud, wire fraud, damaging protected computers, and aggravated identity theft."
Notably, tech giants played a role in getting to the bottom of the attacks. The press release specifically thanks Google, Cisco, Facebook, and Twitter for "the assistance they provided in this investigation."
While if convicted the six men would face potentially decades in prison, they are not currently in custody. As of Monday, they were all listed on the FBI's most wanted cybercriminals list.
Topics Cybersecurity
Google stops selling Pixel 3 and Pixel 3 XLI am having a great time at Fyre Festival and I don't get why everyone is upsetI am having a great time at Fyre Festival and I don't get why everyone is upsetI am having a great time at Fyre Festival and I don't get why everyone is upsetFyre Festival subreddit accurately reflects the dumpster fire that is the real eventHQ Trivia is actually back for real, just when we need it mostNow you can listen to Sufjan Stevens’ cathartic cover of 'Hotline Bling' anytime you wantGet your Disney theme park fix with these virtual roller coaster ridesMoto G Power, with massive battery for only $249, is available for preorder10 iconic movie sweaters, ranked by how cozy they actually look17 glorious GIFs to help you celebrate #EdBallsDay in styleFyre Festival subreddit accurately reflects the dumpster fire that is the real eventSony's PlayStation 5 has developers excited about the future of gamingTurn off your iPhone Screen Time notifications for your own goodHeineken shows Pepsi the right way to make a politically charged adExclusive: I thought being a mom would be easier. I miss my old life.Instagram's 'On This Day' notifications are jarring during coronavirus'Tiger King' Season 2? Producers say more of Netflix docuseries could be on way10 TV characters who redefined masculinityFyre Festival subreddit accurately reflects the dumpster fire that is the real event Jon Polito of 'Seinfeld,' 'Homicide' and 'The Crow' dies at 65 One year after Aylan Kurdi's death, his father says little has changed Leslie Jones is back on Twitter and her comeback tweet rules Pet wearables are here to help you spy on your four ABC just dropped some new shows on its revamped app 'Bridget Jones's Baby' delivers a delightfully unexpected throwback Michael Kors smartwatches are exactly what Android Wear needs 8 odd social networks that cover life's strange niches This humongous flaming barge was used to commemorate the Great Fire of London Mets player gets pumped at plate with 'Friends' theme These music video vignettes made by Radiohead fans are just incredible British Airways blames IT issue for global delays Use the porn site Brazzers? Your details could've been leaked online Don't bin them: You can mail back your used Nespresso coffee pods 8 absurdly expensive iPhone cases you definitely should not buy Australia is taking on revenge porn, but young people are still at risk British store has an A+ response to road sign spelling error Celebrate Werner Herzog's birthday with these 5 absurd parodies Emoji you should never use during online dating India's Reliance Jio draws big queues for SIM cards but leaves many disappointed