AIRLINK 74.35 Decreased By ▼ -0.81 (-1.08%)
BOP 5.42 Decreased By ▼ -0.03 (-0.55%)
CNERGY 4.35 Decreased By ▼ -0.04 (-0.91%)
DFML 29.00 Increased By ▲ 1.36 (4.92%)
DGKC 76.29 Increased By ▲ 4.29 (5.96%)
FCCL 20.46 Increased By ▲ 0.17 (0.84%)
FFBL 31.35 Increased By ▲ 0.30 (0.97%)
FFL 10.15 Increased By ▲ 0.18 (1.81%)
GGL 10.53 Increased By ▲ 0.26 (2.53%)
HBL 115.39 Increased By ▲ 0.39 (0.34%)
HUBC 131.31 Decreased By ▼ -0.14 (-0.11%)
HUMNL 6.75 Decreased By ▼ -0.12 (-1.75%)
KEL 4.09 Decreased By ▼ -0.11 (-2.62%)
KOSM 4.67 Decreased By ▼ -0.10 (-2.1%)
MLCF 38.86 Increased By ▲ 1.78 (4.8%)
OGDC 134.25 Decreased By ▼ -1.20 (-0.89%)
PAEL 24.40 Increased By ▲ 1.00 (4.27%)
PIAA 27.65 Increased By ▲ 0.34 (1.24%)
PIBTL 6.73 Increased By ▲ 0.13 (1.97%)
PPL 113.30 Increased By ▲ 0.14 (0.12%)
PRL 28.60 Decreased By ▼ -0.15 (-0.52%)
PTC 15.20 Decreased By ▼ -0.30 (-1.94%)
SEARL 57.06 Decreased By ▼ -0.27 (-0.47%)
SNGP 65.99 Decreased By ▼ -1.00 (-1.49%)
SSGC 11.02 Decreased By ▼ -0.15 (-1.34%)
TELE 9.10 Decreased By ▼ -0.04 (-0.44%)
TPLP 11.92 Decreased By ▼ -0.13 (-1.08%)
TRG 70.45 Increased By ▲ 0.06 (0.09%)
UNITY 23.75 Increased By ▲ 0.10 (0.42%)
WTL 1.33 Decreased By ▼ -0.01 (-0.75%)
BR100 7,465 Increased By 10.3 (0.14%)
BR30 24,298 Increased By 48.1 (0.2%)
KSE100 71,609 Increased By 175.9 (0.25%)
KSE30 23,625 Increased By 58.5 (0.25%)
World

NSA, FBI expose Russian intelligence hacking tool: report

  • The NSA and FBI said that Russia's Main Intelligence Directorate, known as the GRU, was using a hacking tool code named "Drovorub" to break into Linux-based computers.
  • Linux systems are used pervasively throughout National Security Systems, the Department of Defense, and the Defense Industrial Base - as well as the larger cybersecurity community writ large.
Published August 14, 2020

The US National Security Agency and Federal Bureau of Investigation have exposed a sophisticated Russian hacking tool, they said on Thursday in a rare public report offering new insight on Russia's arsenal of digital weapons.

The NSA and FBI said that Russia's Main Intelligence Directorate, known as the GRU, was using a hacking tool code named "Drovorub" to break into Linux-based computers. Linux is an operating system commonly used across computer server infrastructure.

"Linux systems are used pervasively throughout National Security Systems, the Department of Defense, and the Defense Industrial Base - as well as the larger cybersecurity community writ large," Keppel Wood, chief operations officer in the NSA's Cybersecurity Directorate, told Reuters. "The malware has the potential to have a widespread impact if network defenders don't take action against it."

The public call-out is unique, said a former Western intelligence official, because of the direct attribution offered by the US agencies. The NSA and FBI connected Drovorub to a specific Russian intelligence team - the 85th Main Special Service Center (GTsSS), military unit 26165.

The GTsSS, the agencies said, is associated with the same hackers who broke into the Democratic National Committee in 2016.

"Drovorub is a 'Swiss Army knife' of capabilities that allows the attacker to perform many different functions, such as stealing files and remote-controlling the victim's computer," said Steve Grobman, chief technology officer for cybersecurity company McAfee.

Thursday's highly technical, 45-page NSA/FBI report is the latest in a series of public call-outs by the U.S government aimed at Russian hacking operations ahead of the 2020 US presidential election. The agencies did not say what types of organizations had been compromised by Drovorub.

"NSA is sharing this information to counter the capabilities of the GRU GTsSS, which continues to threaten the United States and its allies," said the NSA's Wood.

The FBI did not immediately respond to a request for comment.

Comments

Comments are closed.