l The group that hacked the DNC infiltrated Ukrainian artillery units
itMYti.com < New IT WebNews
Category: news    |    Added: 2016-12-23 05:55:09    |    View: 105

The group distributed a trojanized version of an Android app used by Ukrainian artillery personnel

Fancy Bear trojan found in Ukrainian military app
Credit: Gerd Altmann / Pixabay
"; adDivString = "
" + adString + "
"; IDG.GPT.defineGoogleTagSlot(slotName ,[[320,50],[300,250],[300,50]]); } placementDiff = applyInsert($(this), adDivString); if (DEBUG) { console.log("Just placed an ad and the placementDiff is: " + placementDiff); } placementTarget = cumulativeHeight + placementDiff + INTERMODULE_HEIGHT + AD_HEIGHT_BUFFER; } else if (moduleCounter < articleDRRModuleList.length){ var elementId = "drr-mod-"+moduleCounter; var moduleDivString = "
"; modules.push(elementId); placementDiff = applyInsert($(this), moduleDivString); if (DEBUG) { console.log("Just placed a module and the placementDiff is: " + placementDiff); } placementTarget = cumulativeHeight + placementDiff + INTERMODULE_HEIGHT + MODULE_HEIGHT_BUFFER; moduleCounter++; } loopCounter++; } // Avoid placing elements too soon due to non-large figures inflating the cumulative height if ($(this).is("figure") && !$(this).is("figure.large")) { cumulativeHeight += GRAF_HEIGHT; } else { cumulativeHeight += $(this).height() + GRAF_HEIGHT; } } }); // end $("#drr-container").children().each() // clone Related Stories module to come in after eighth para in article body for mobile breakpoint display var $relatedStories = $('.related-promo-wrapper'); if ($relatedStories.length) { var $relatedStoriesClone = $relatedStories.clone(); $relatedStoriesClone.insertAfter( "#drr-container > p:eq(7)"); } // For mobile only, place ad after second paragraph. if (firstMobileAdHtml) { $(firstMobileAdHtml).insertAfter("#drr-container > p:eq(1)"); } var $insiderPromo = $('.insider-promo-wrapper'); if ($insiderPromo.length) { var $insiderPromoClone = $insiderPromo.clone(); $insiderPromoClone.insertAfter( "#drr-container > p:eq(1)"); } IDG.GPT.trackOmniture(); // Add Right rail module content var placeModule = function( data ) { var placementId = $(data).attr("data-placement-id"); $( "#"+placementId ).html( data ); }; for (i=0; i" + adString + "
"; } /** * @param jqo Original jquery object target * @param divString The div to be inserted. * @return Difference in height between original placement target and final target. * Checks first 6 elements for an allowable placement (600 pixel window). * If none, place element in first location that does not follow a reject element. */ function applyInsert(jqo, divString) { if (DEBUG) { console.log("applyInsert at top and jqo index is: " + jqo.index()); } for (var i=0; i<=6; i++) { $thisElement = jqo.nextAll().andSelf().slice(i, i+1); if (DEBUG) { console.log("Checking first six and i is: " + i + " and this element index is " + $thisElement.index() ); } if ($thisElement.index() < 0) { break; } if (allowPlacement($thisElement)) { return addElement(jqo, $thisElement, divString); } } if (DEBUG) { console.log("No nearby allows so just place in first spot that is not after reject."); } var numElements = jqo.nextAll().length; var startIndex = jqo.index(); for (var i=startIndex; i<=numElements; i++) { var $element = $("#drr-container").children().eq(i); // This element is eligible when not null, not in placement index, and previous element is not reject if ($element != null && (placementIndex == null || placementIndex.indexOf(i) == -1) && !isReject($element.prev())) { return addElement(jqo, $element, divString); } } if (DEBUG) { console.log("Not going to place element: return 0."); } return 0; } /** * @param jqo Original jquery object * @param allowElement Element that is good placement for module/ad * @param divString The div to be inserted before the good element * @return placementHeightDiff Diff in height between original placement target and current target. * * If element is not too close to the end the insert the div before allowable element. * Add element index to placementIndex to keep track of which elements already have placements */ function addElement(jqo, allowElement, divString) { var offset = allowElement.index() - jqo.index(); if (DEBUG) { console.log("addElement: jqo index is " + jqo.index() + " allowElement index is " + allowElement.index()); } if (elementNotNearEnd(allowElement, RIGHT_PIXEL_WINDOW)) { allowElement.before(divString); if (DEBUG) { console.log("addElement: Adding " + allowElement.index() + " to placementIndex."); } placementIndex.push(allowElement.index()); if (offset == 0) { return 0; } else { return getHeightDifference(jqo,allowElement); } } else { if (DEBUG) { console.log("addElement: Near the end so do NOT add."); } return 0; } } function getHeightDifference(jqo,allowElement) { var offset = allowElement.index() - jqo.index(), height = 0, children = null; if (offset > 0) { children = $("#drr-container").children().slice(jqo.index(), allowElement.index()); } else { children = $("#drr-container").children().slice(allowElement.index(), jqo.index()); } if (children != null) { children.each(function(i) { if (DEBUG) { console.log("About to add this element's height to heigh diff offset"); console.log($(this)); } height += $(this).height() + GRAF_HEIGHT; }); } if (offset < 0) { height *= -1; } if (DEBUG) { console.log("getHeightDifference: offset was " + offset + " and height diff is : " + height); } return height; } function allowPlacement(jqo) { if (jqo.prev() != null && isReject(jqo.prev())) { return false; } return true; } function isReject(jqo) { if (jqo != null) { if (jqo.is('h2') || jqo.is('h3') || jqo.is('h4') || jqo.is('h5')) { if (DEBUG) { console.log("isReject: found header"); } return true; } } return false; } // Returns true if height of all elements after this one is more than 500; false otherwise function elementNotNearEnd(element, pixelWindow) { if (pixelWindow === null) { pixelWindow = 500; } if (element === null) { return false; } var remainingHeight = 0, children = $("#drr-container").children().slice(element.index()); if (children === null) { return false; } children.each(function(i){ remainingHeight += $(this).height(); }); if ( remainingHeight > pixelWindow) { return true; } else { if (DEBUG) { console.log("Element too close to end. Remaining height is: " + remainingHeight + " and window is " + pixelWindow); } return false; } } } // end function executeDRRMobile() function executeDRRDesktop() { var heroImgHeight = $('figure.hero-img').outerHeight(true); if (heroImgHeight === null) { heroImgHeight = 0; } var galleryItemHeight = $('figure.thm-gallery').outerHeight(true); if (galleryItemHeight === null) { galleryItemHeight = 0; } var atAglanceTop = $('.at-a-glance.top').height(); if (atAglanceTop === null) { atAglanceTop = 0; } var drrContainerHeight = $('div#drr-container').outerHeight(true); var topIMUheight = $('#topimu').height(); if (topIMUheight === 0) { topIMUheight = 600; } var relatedPromoHeight = $('div.related-promo-wrapper').outerHeight(true); if (relatedPromoHeight === null) { relatedPromoHeight = 0; } var videoHowtoHeight = $('div#video-howto-wrapper').outerHeight(true); if (videoHowtoHeight === null) { videoHowtoHeight = 0; } var teadsInreadHeight = $('div.teads-inread').height(); if (teadsInreadHeight === null) { teadsInreadHeight = 0; } var unrulyAdHeight = $('.unruly_in_article_placement').height(); if (unrulyAdHeight === null) { unrulyAdHeight = 0; } //just in case the in article ads are picked up... var collapsibleAdHeight = unrulyAdHeight + teadsInreadHeight; var workingRRheight = ( (heroImgHeight + galleryItemHeight + atAglanceTop + drrContainerHeight) - (topIMUheight + relatedPromoHeight + videoHowtoHeight) ); workingRRheight = workingRRheight - collapsibleAdHeight; var DEBUG = false; if (DEBUG) { console.log('-----working RR height = ' + workingRRheight); } var articleDRRModuleList = ["dealposts","products.latest-reviews"], moduleUrls = [], modules = [], moduleCounter = 0, loopCounter = 0; var adPositions = new Array(0,1,3); // IMU, IMU, module, IMU, module if (false) { var dealpostsIdx = articleDRRModuleList.indexOf("dealposts"); if (dealpostsIdx > -1) { articleDRRModuleList.splice(dealpostsIdx, 1); adPositions = [0, 1, 2]; } } for (var i=0; i 650) { numItems = 1; } if (workingRRheight > 1350) { numItems = 2; } if (workingRRheight > 2300) { numItems = 3; } if (workingRRheight > 2950) { numItems = 4; } if (workingRRheight > 3650) { numItems = 5; } for (var currIndex=0;currIndex
"; adDivString = "
" + adString + "
"; IDG.GPT.defineGoogleTagSlot(slotName ,[[320,50],[300,250],[300,50]]); } //$('#drr-container > p').first().before(adDivString); //$('#drr-top-ad').append(adDivString); $(adDivString).appendTo('#drr-top-ad'); if (DEBUG) { console.log("-----Just placed an AD currIndex = " + currIndex); } } else if (moduleCounter < articleDRRModuleList.length){ var elementId = "drr-mod-"+moduleCounter; var moduleDivString = "
"; modules.push(elementId); //$('#drr-container > p').first().before(moduleDivString); $('#drr-top-ad').append(moduleDivString); if (DEBUG) { console.log("-----Just placed a MODULE and currIndex = " + currIndex); } moduleCounter++; } } //end for loop IDG.GPT.trackOmniture(); // Add Right rail module content var placeModule = function( data ) { var placementId = $(data).attr("data-placement-id"); $( "#"+placementId ).html( data ); }; for (i=0; i" + adString + "
"; } } // end function executeDRRDesktop()

The cyberespionage group blamed for hacking into the U.S. Democratic National Committee (DNC) earlier this year has also infiltrated the Ukrainian military through a trojanized Android application used by its artillery units.

The group, which is known in the security industry under different names, including Fancy Bear, Pawn Storm, and APT28, has been operating for almost a decade. It is believed to be the sole user and likely developer of a Trojan program called Sofacy or X-Agent that has variants for Windows, Android, and iOS.

Fancy Bear has been responsible for many cyberespionage operations around the world over the years, and its selection of targets has frequently reflected Russia's geopolitical interests. Researchers from security firm CrowdStrike believe the group is likely tied to the Russian Military Intelligence Service (GRU).

The company found an Android application package earlier this year that had been trojanized with the Android version of X-Agent. It is a maliciously modified version of an app developed by Yaroslav Sherstuk, an officer in Ukraine's 55th Artillery Brigade, to help artillery forces more quickly process targeting data for the Soviet-made D-30 howitzer.

Sherstuk previously estimated in media interviews that up to 9,000 Ukrainian artillery personnel have used his application and that it helped reduce the D-30 targeting time from minutes to under 15 seconds, according to CrowdStrike. 

Sherstuk's app has never been distributed through Google Play, meaning its users likely installed it manually after obtaining it from various sources. And with users in the habit of installing apps from alternative sources, Fancy Bear probably didn't have much trouble distributing a trojanized version of the app.

"Successful deployment of the FANCY BEAR malware within this application may have facilitated reconnaissance against Ukrainian troops," the CrowdStrike researchers said Thursday in a blog post. "The ability of this malware to retrieve communications and gross locational data from an infected device makes it an attractive way to identify the general location of Ukrainian artillery forces and engage them."

To comment on this article and other PCWorld content, visit our Facebook page or our Twitter feed.
Related:
Shop Tech Products at Amazon
Notice to our Readers
We're now using social media to take your comments and feedback. Learn more about this here.
source: Pcworld

Category: news    |    48 minutes ago    |    View: 11

Last week, XDA-Developers discovered lines of code within Android Q’s first beta that referenced the budget handsets’ names: Pixel 3a and Pixel 3a XL. Now, 9to5Google, which cites a source familiar with the phones, says it has confirmed that these&hellip;

Category: news    |    2 hours ago    |    View: 47

Microsoft has some exciting news to share from GDC 2019 that will improve gaming performance. In DirectX 12, Microsoft is introducing Variable Rate Shading. The new API allows for more effective use of GPU resources so that high detail areas&hellip;

Category: news    |    3 hours ago    |    View: 3

The $500 million Aurora supercomputer will be powered by Intel’s future Xeon Scalable processor— Intel Xᵉ—alongside Optane DC memory, the X compute architecture, and Intel's ONE API suite of developer tools. Cray will be providing its Shasta system architecture, which&hellip;

Category: news    |    4 hours ago    |    View: 18

Nvidia used the Game Developer Conference to reveal that April’s GeForce driver update will add basic ray tracing support to cards ranging from the 6GB GTX 1060 and above. This includes the recent GTX 1660 and 1660 Ti, as well&hellip;

Category: review    |    4 hours ago    |    View: 0

Following our coverage into Nvidia's laptop RTX GPUs, today we're reviewing the top-end RTX 2080 Max-Q. As an "RTX 2080" Turing part, this GPU comes with 2944 CUDA cores, 368 Tensor cores and 46 ray tracing cores. But that's where the similarities between the RTX 2080 Max-Q and the desktop RTX 2080 end.

Category: news    |    5 hours ago    |    View: 35

The first reports that Google might be another company looking to develop a 'Netflix for video games' arrived last February. We later heard that it was developing some sort of hardware linked to its streaming service, and October saw the&hellip;

Category: news    |    15 hours ago    |    View: 96

With that in mind, it will probably come as no surprise to learn that game engine maker Unity is following in competitor Unreal's footsteps today by baking support for Nvidia's RTX technology into its popular engine.

Category: news    |    16 hours ago    |    View: 0

The short test fight made Moses the first woman to fly to space on a commercial craft. It also made her the 571st human to travel to space and earned her qualification for her commercial astronaut wings from the FAA.

Category: news    |    17 hours ago    |    View: 1

Given that they boast user numbers in the tens of millions and yearly revenues far beyond that, it's tough to deny the influence of websites like Facebook and Twitter.

Category: news    |    18 hours ago    |    View: 4

Logitech sells some of the most popular gaming peripherals out there, as we've outlined multiple times in the past. Unfortunately, that can come with a few drawbacks from time to time.




Download Latest PC Softwares

Category:     |    Added: 58 minutes ago    |    View: 0
Wondershare Dr.Fone Toolkit for iOS / Android Download - downloadwise.com

Wondershare Dr.Fone Toolkit for iOS / Android Download. It is full offline installer standalone setup of Wondershare Dr.Fone v9.9.5.38.

Wondershare Dr.Fone iOS is an efficient application that has been developed for recovering the lost data from your iPhone, iPad and iPod touch devices. Retrieving the lost data is very simple and with just few mouse clicks you can perform the tasks easily. You can also download Wondershare Dr.Fone for Android.

Category:     |    Added: 58 minutes ago    |    View: 0
Windows 10 Enterprise LTSC 2019 x64 Multi Language 2019 Download - downloadwise.com

Windows 10 Enterprise LTSC 2019 x64 Multi Language 2019 Download Latest OEM RTM version. Full Bootable ISO Image of Windows 10 Enterprise.

Windows Operating System, the most widely used OS all over the globe was intiated in the mid-80s . With it’s user friendly nature and ease of use, users accepted it and it becomes the most widely used operating system all over the world. Windows XP and Windows 7 are termed as the most famous operating systems but now developers have come up with Windows 10 and they have put so much effort in it so that the users can get the ultimate experience. Windows 10 has come up in many versions and the one we are reviewing here is Windows 10 Enterprise LTSC 2019 x64 Multi Language 2019. You can also opt for Windows 10 Enterprise 2019 LTSC.

Category:     |    Added: 58 minutes ago    |    View: 0
Adobe Bridge CC 2019 Free Download - downloadwise.com

Adobe Bridge CC 2019 Free Download Latest Version for Windows. It is full offline installer standalone setup of Adobe Bridge CC 2019 v9.0.2.

Adobe Bridge CC 2019 is an imposing application which can be used for managing as well as working with multimedia files. You can easily keep track of all the videos, songs as well as photos which are stored onto your PC. You can also download Adobe Bridge CC 2017Adobe Bridge CC 2019 Free Download-GetintoPC.com  Adobe Bridge CC 2019 has been equipped with full scale cataloging as well as media management program that looks good and is very easy to operate for the novices. It has got a multiple viewing mode which will help you identify the hidden files and to sort them in various different ways. You can add labels as well as assign a rating to all the items recognized by Adobe Bridge. With this application you

Category:     |    Added: 2 hours ago    |    View: 0
Wondershare Video Converter Ultimate Free Download - downloadwise.com

Wondershare Video Converter Ultimate Free Download. Full offline installer standalone setup of Wondershare Video Converter v10.4.3.198.

Wondershare Video Converter Ultimate is a comrepehensive application which can be used for converting your audio and video files into various different file formats which include 3GP, MOV, DAT and DVD etc. With this application you can easily extract the audio stream and can save it to the MP3 type and prepare it from iPhone and iPad etc. You can also download Wondershare Video Converter Ultimate 10.2.0.154 Portable.

Category:     |    Added: 2 hours ago    |    View: 0
IObit Driver Booster Pro Final 2019 Download - downloadwise.com

IObit Driver Booster Pro Final Download Latest Version. Full offline installer standalone setup of IObit Driver Booster Pro Final 6.3.0.276.

IObit Driver Booster Pro Final is an application which can be used for updating all the drivers as well as game components present in your computer. This impressive tool has got an automatic scan mode which will let you update all the drivers as well as game components so that you can experience the stability in the performance of your system and also very smooth gaming experience. You can also download AVG Driver Updater.

Category:     |    Added: 2 hours ago    |    View: 0
Wondershare Dr.Fone Toolkit for iOS / Android Download - downloadwise.com

Wondershare Dr.Fone Toolkit for iOS / Android Download. It is full offline installer standalone setup of Wondershare Dr.Fone v9.9.5.38.

Wondershare Dr.Fone iOS is an efficient application that has been developed for recovering the lost data from your iPhone, iPad and iPod touch devices. Retrieving the lost data is very simple and with just few mouse clicks you can perform the tasks easily. You can also download Wondershare Dr.Fone for Android.

Category:     |    Added: 3 hours ago    |    View: 0
Bluebeam Revo eXtreme 2018 Free Download - downloadwise.com

Bluebeam Revo eXtreme 2018 Free Download Latest Version. It is full offline installer standalone setup of Bluebeam Revo eXtreme 2018 v4.0.