Read The Times Australia

Daily Bulletin

What are ShinyHunters, the hackers that attacked Google? Should we all be worried?

  • Written by: Jennifer Medbury, Lecturer in Intelligence and Security, Edith Cowan University

Cyber crime group ShinyHunters has received global attention after Google urged 2.5 billion users to tighten their security following a data breach via Salesforce, a customer management platform.

Unlike data breaches where hackers directly break into databases holding valuable information, ShinyHunters – and several other groups – have recently targeted major companies through voice-based social engineering (also known as “vishing”, short for voice phishing).

Social engineering is when a person is tricked or manipulated into providing information or performing actions that they wouldn’t normally do.

In this case, to get access to protected systems, a criminal would pose as a member of the target company’s IT helpdesk and convince an employee to share passwords and/or multi-factor authentication codes. Although vishing is not a new tactic, the use of deepfakes and generative artificial intelligence to clone voices is making this type of social engineering harder to detect.

Just this year, companies such as Qantas, Pandora, Adidas, Chanel, Tiffany & Co. and Cisco have all been targeted using similar tactics, with millions of users affected.

Who, or what, are ShinyHunters?

ShinyHunters first emerged in 2020 and claims to have successfully attacked 91 victims so far. The group is primarily after money, but has also been willing to cause reputational damage to their victims. In 2021, ShinyHunters announced they were selling data stolen from 73 million AT&T customers.

ShinyHunters advertising that they are selling AT&T data. Bleeping Computer

ShinyHunters has previously targeted companies through vulnerabilities within cloud applications and website databases. By targeting customer management providers such as Salesforce, cyber criminals can gain access to rich data sets from multiple clients in one attack.

The use of social engineering techniques is considered a relatively new tactic for ShinyHunters. This change in approach has been attributed to their links with other similar groups.

In mid-August, ShinyHunters posted on Telegram they have been working with known threat actors Scattered Spider and Lapsus$ to target companies such as Salesforce and Allianz Life. The channel was taken down by Telegram within days of being launched. The group publicly released Allianz Life’s Salesforce data, which included 2.8 million data records relating to individual customers and corporate partners.

Scattered Lapsus$ Hunters, the newly rebranded group, recently advertised they had started providing ransomware as a service. This means they will launch ransomware attacks on behalf of other groups willing to pay them.

They claim their service is better than what’s being offered by other cyber crime groups such as LockBit and Dragonforce. Rather than negotiating directly with victims, the group often publishes public extortion messages.

Screenshot of public extortion message addressing Salesforce CEO Marc Benioff. FalconFeeds.io

Who are all these cyber criminals? There’s likely a significant overlap of membership between ShinyHunters, Scattered Spider and Lapsus$. All these groups are international, with members operating on the dark web from various parts of the world.

Adding to the confusion, each group is known by multiple names. For example, Scattered Spider has been known as UNC3944, Scatter Swine, Oktapus, Octo Tempest, Storm-0875 and Muddled Libra.

How can we protect ourselves from vishing?

As everyday users and customers of large tech companies, there’s little we can do in the face of organised cyber crime groups. Keeping yourself personally safe from scams means staying constantly vigilant.

Social engineering tactics can be highly effective because they prey on human emotions and the desire to trust and to be helpful.

But companies can also be proactive about reducing the risk of being targeted by vishing tactics.

Organisations can build awareness of these tactics and build scenario-based training into employee education programs. They can also use additional verification methods, such as on-camera checks where an employee shows a corporate badge or government-issued ID, or by asking questions that cannot easily be answered with information found online.

Finally, organisations can strengthen security by using authenticator apps that require phishing-resistant multi-factor authentication such as number matching or geo-verification. Number matching requires a person to enter numbers from the identity platform into the authenticator app to approve the authentication request. Geo-verification uses a person’s physical location as an additional authentication factor.

Authors: Jennifer Medbury, Lecturer in Intelligence and Security, Edith Cowan University

Read more https://theconversation.com/what-are-shinyhunters-the-hackers-that-attacked-google-should-we-all-be-worried-264271

Business News

The Rise of Digital Marketplaces in the Australian Trade Sector

For decades, the Australian trade and construction sector operated almost entirely on word-of-mouth recommendations and local community networks. Small business owners typically relied on local newspa...

Daily Bulletin - avatar Daily Bulletin

How Immigration Lawyers Can Help

Introduction Visa decisions can shape employment, family life, study plans, travel, and future residence. A small omission can lead to delay, added expense, or refusal. Immigration lawyers assess l...

Daily Bulletin - avatar Daily Bulletin

How Industrial Drying Equipment Supports Efficient Processing

Many industrial processes require moisture to be removed from compressed air, products or process materials before they move to the next stage. Excess moisture can affect equipment performance, produc...

Daily Bulletin - avatar Daily Bulletin

Practical Ways a Whiteboard Can Improve Workplace Communication

Effective communication helps teams stay organised, share ideas and keep track of important information. While digital tools are now common in many workplaces, a whiteboard continues to provide a simp...

Daily Bulletin - avatar Daily Bulletin

Designing Eco-Friendly Custom Water Bottles for Your Next Event

The Evolution of Sustainable Event Merchandise Event planning has undergone a massive transformation over the last decade. Gone are the days when organizers could hand out cheap, single use plastic...

Daily Bulletin - avatar Daily Bulletin

Why Choosing a Professional Florist Melbourne Makes Flower Delivery Impactful

Flowers have a great power to speak when humans cannot express their feelings with right words. Flowers are the best gifts when you are celebrating a birthday or welcoming a newborn child into your fa...

Daily Bulletin - avatar Daily Bulletin

The Business Case for Choosing Australian Fabricators Over Imported Alternatives

For a long time, you might have defaulted to overseas suppliers when sourcing fabricated metal components for a project. The unit price was lower on paper, and the maths seemed straightforward. That...

Daily Bulletin - avatar Daily Bulletin

Australian organisations are relying on business continuity plans built for a far more predictable world

Tariff escalations, supply chain fragility, geopolitical events, and the ongoing threat of cyber disruption have reshaped the risk environment facing Australian organisations. The problem is that ma...

Daily Bulletin - avatar Daily Bulletin

How to Rent a Car for Uber in Melbourne: What Every New Driver Needs to Know

Starting out as an Uber driver in Melbourne is not as complicated as it sounds but getting the vehicle right is where most new drivers get stuck. Uber has strict requirements around vehicle age, condi...

Daily Bulletin - avatar Daily Bulletin

The Daily Magazine

South African Consular Services Expand to Six Australian Cities

South Africans living in Adelaide, Brisbane and Canberra will now be able to access passport, identi...

How Long Does a Solar Home Battery Last? LFP Cycles and Warranty Explained

A battery does not usually reach its advertised cycle count and suddenly stop working. Capacity ch...

How to Hire a Nanny: A Complete Guide for Families

Finding the right childcare professional can make everyday family life easier and give parents gre...

The Blue-Collar Shortage Employers Can't Solve With More Applicants

Australia's hiring market has cooled considerably since the post-pandemic frenzy of 2021 and 2022. F...

The Playground as Classroom: How Line Markings Are Reinforcing What Students Learn Inside

For a long time, the playground was treated as a break from learning rather than part of it. A place...

How Technology Is Changing the Way Gardens Are Maintained

Garden maintenance has always been a hands on ritual. Mowing on a schedule, watering by instinct, an...

One Blocked Drain Can Become a Whole House Plumbing Problem: How It Happens

A blocked hand basin feels local. So does a slow shower. Homeowners naturally focus on the fixture...

AI in Marketing: From Experiment to Everyday Tool

For the past couple of years, artificial intelligence in marketing has mostly lived in the "let's se...

What Businesses Can Do to Make Sustainability More Practical Day to Day

Sustainability can sound like a huge corporate project, something tied to annual reports, long-term ...