In an attempt to take on IT skills, a group of hackers creates a fictional company

Share This Post

His website at Bastion Secure looks authentic. However, upon investigation, FIN7 used real information publicly available from existing legitimate cybersecurity companies (phone number, office location, text taken from his actual website) to verify legitimacy. It turned out that I was creating a veil. Bastion’s website won “Best Managed Security Service” at the 2016 SC Magazine Awards, and the fake company’s consulting arm claims he was acquired by Six Degrees in 2016 neither is true.

A financially motivated Russian hacking group, FIN7, has set up a fake company to unwittingly trick IT specialists into helping it further expand into ransomware, security researchers have discovered. According to researchers in Recorded Future’s Gemini Advisory Unit, FIN7 — known for hacking into point-of-sale registers and stealing more than $1 billion from him from millions of credit cards — is now disguised as Bastion Secure are active public sector cybersecurity services.

Highlights

  • At the time of this writing, both Chrome and Safari block access to “fraudulent” websites. As with the website, the jobs advertised by Bastion Secure also look fairly legit. This fictional company is looking for programmers, system administrators, and reverse engineers. The job description is similar to that found in cybersecurity firms. However, according to Recorded Future, under the guise of his Bastion Secure, FIN7 is trying to build a “staff” that can perform the tasks necessary to carry out various cybercriminal operations.

  • Recorded Future’s analysis of his websites for fake companies revealed that most of them were copied from his website for Convergent Network Solutions, a reputable cybersecurity company. rice field. According to the researchers, the website is hosted by Beget, a Russian domain registrar often used by cybercriminals, and part of the fake company’s website submenu contains the Russian “page is not found” error. The site was Russian-speaking.

“The fact that Bastion Secure personnel were particularly interested in file systems and backups indicates that FIN7 was more interested in conducting ransomware attacks than [POS] infections.” One of Recorded Future’s researchers, who was offered her position as an IT researcher at Bastion Secure, analyzed the tools provided by the company and found that the tools helped her Carbanak and Tirion (Lizar) post-exploit him. I discovered that it is part of the toolkit of Both toolkits, previously attributed to FIN7, can be used to hack POS systems and deliver ransomware.

Bastion Secure may be looking specifically for system administrators, as those with such skills can do it,” said the researchers. The interview process also set off alarm bells for the researchers. While Stages 1 and 2 showed no indication that Bastion Secure was covering up cybercriminal activity, Stage 3 puts potential employees on “real” assignments that reveal them. became. “It quickly became clear that the company was involved in criminal activity,” the researchers said.

Read More:

Partnership Between Mitsubishi Electric and Nozomi Networks Strengthens Operational Technology Security Business

Mitsubishi Electric and Nozomi Networks Partnership Mitsubishi Electric and Nozomi...

Solidion Technology Inc. Completes $3.85 Million Private Placement Transaction

**Summary:** 1. Solidion TechnologyInc. has announced a private placement deal...

Analyzing the Effects of the EU’s AI Act on Tech Companies in the UK

Breaking Down the Impact of the EU’s AI Act...

Tech in Agriculture: Roundtable Discusses Innovations on the Ranch

Summary of Tech on the Ranch Roundtable Discussion: ...

Are SMEs Prioritizing Tech Investments Over Security Measures?

SMEs Dive Into Tech Investments, But Are...

Spotify Introduces Music Videos for Premium Members in Chosen Markets

3 Summaries of Spotify Unveils Music Videos for Premium...

Shearwater to Monitor Production at Equinor’s Two Oil Platforms

Shearwater GeoServices secures 4D monitoring projects from Equinor for...

Regaining Europe’s Competitive Edge in Innovation: Addressing the Innovation Lag

Europe’s Innovation Lag: How Can We Regain Our Competitive...

Related Posts

Government Warns of AI-Generated Content: Learn More about the Issue

Government issued an advisory on AI-generated content. All AI-generated content...

Africa Faces Internet Crisis: Extensive Outage Expected to Last for Months, Hardest-Hit Nations Identified

Africa’s Internet Crisis: Massive Outage Could Last Months, These...

FTC Investigates Reddit for AI Content Licensing Practices

FTC is investigating Reddit's plans...

Journalists Criticize AI Hype in Media

Summary Journalists are contributing to the hype and...