FireEye is reporting on several new Molerats attacks which are targeting at least on major US financial institution and several European government organizations.  FireEye has linked these attacks to what it calls the “Gaza Hackers Team.”  Spearphising bait used in the attacks uses items of interest to theMiddle East region, such as this biography of the new Egyptian President  Abdel Fattah el-Sisi:
  5   FireEye reports that the Molerats are expanding their target list beyond Israeli and Palestinian targets. Targets now include:

  • Palestinian and Israeli surveillance targets
  • Government departments in Israel, Turkey, Slovenia, Macedonia, New Zealand, Latvia, the U.S., and the UK
  • The Office of the Quartet Representative
  • The British Broadcasting Corporation (BBC)
  • A major U.S. financial institution
  • Multiple European government organizations

While the Molerats currently use a variety of well-known technical exploits, the increasing sophistication of their attacks suggests that their skills are improving. FireEye offers this cautionary note:

These

[new] tactics, among several others mentioned previously, seem to indicate that Molerats are not only aware of security researchers’ efforts in trying to track them but are also attempting to avoid using any obvious, repeating patterns that could be used to more easily track endpoints infected with their malware.

Email is an ideal medium for attackers to deceive users into compromising systems.  Every user with an email account is an inside man who is a potential unwitting accomplice to attackers.  Letting users decide which emails are trustworthy is dangerous. Using SP Guard, IT can determine a list of trusted senders and provide this information to staff in a simple and highly effective manner. You can contact us at  408-727-6342,ext 3 or use our online form.