Hackers of Apple, Facebook Seen as Independent Group Seeking Money: Symantec

Advertisement
By Reuters | Updated: 9 July 2015 17:33 IST
A hacking group best known for breaking into top-tier technology companies Apple Inc, Facebook Inc and Twitter Inc more than two years ago is now believed to be one of a handful of highly skilled independent gangs pursuing corporate secrets for profit.

According to new research from the largest U.S. security software vendor, Symantec Corp, the group appears to be among the few that display significant talent without backing from a national government. The group stays below the radar with a small number of carefully targeted attacks.

"They are very focused, wanting everything valuable from the top companies of the world," said Vikram Thakur, a Symantec senior manager. "The only way they could use it, in our opinion, is through some financial market or by selling it."

Thakur said Symantec and other security companies such as FireEye Inc were tracking less than a half dozen such groups, including one called FIN4.

Advertisement

FIN4 has less technical skill but uses knowledge of the investment banking world and strong social engineering, or trickery, to harvest email credentials and discover material financial information. The U.S. Securities and Exchange Commission is investigating some FIN4 breaches at large, publicly traded companies.

Advertisement

Symantec said its group, which it calls Morpho, dropped out of sight for months after press accounts of the Silicon Valley breaches in early 2103 shone a light on their techniques, which included use of a previously unknown "zero-day" flaw in Oracle's Java platform.

Morpho also used a "watering hole" approach, infecting websites that were likely to attract employees of its targets as visitors. In the best-known case, a website frequented by iPhone developers was infected.

Advertisement

Some had suspected China or another country in the Silicon Valley attacks. Some of the companies breached, including Apple, said they found no evidence of data being stolen.

In a paper being released Wednesday, Symantec said Morpho came back from its absence to breach a small number of additional technology companies. It has also gone after the pharmaceutical industry and airlines, typically hitting multiple competitors in a sector and infecting a very few machines, usually in the research departments.

Advertisement

Morpho has breached about 49 organizations that Symantec knows about since 2012, with the number penetrated each year rising to 14 by 2015. The United States, Europe and Canada have the most victims.

Thakur said his team thinks the group might have about 10 members around the world, with some fluent in English and one or more perhaps having worked at an intelligence agency. They could be offering themselves for hire or could be breaking into companies on speculation and trying to sell the information or trade shares based on it.

Among the team's greatest strengths is its operational security, as it uses multiple proxies to disguise its location, employs heavy encryption where it stores digital loot, and strikes within a day or two of entry before wiping its tracks.

A break in Symantec's research came when a regular backup was made of a targeted machine during a 12-hour window when some of Morpho's custom-made navigation tools were still in use. Symantec then looked for where the same tools had been employed.

Thakur said law enforcement agencies in the United States and Europe had been apprised of Symantec's findings. An FBI spokesman did not respond to a request for comment, nor did Twitter and Facebook. An Apple spokesman declined to discuss the research.

© Thomson Reuters 2015

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Moto Book 60 Pro With Up to Intel Core Ultra 7 CPU Launched in India
  2. Samsung Galaxy Tab S11, Galaxy Tab S11 Ultra Price in India Announced
  3. Amazon Great Indian Festival 2025: Smartphone Deals Teased Ahead of Sale
  4. IFA 2025: Motorola Edge 60 Neo Unveiled Alongside Moto G06, Moto G06 Power
  5. Amazon Great Indian Festival Sale 2025: Deals on Laptops, Tablets Teased
  6. Lenovo Unveils Second-Gen Legion Go Handheld With Big Upgrades, Bigger Price
  7. Nothing Ear 3 Teaser Drops Ahead of Imminent Launch
  8. Lava Bold N1 5G Launches in India Under Rs. 7,500 With These Features
  9. Samsung Galaxy S24 5G With Snapdragon 8 Gen 3 Chip to Launch in India Soon
  10. Nubia Air Unveiled at IFA 2025 With a Slim 5.9mm Profile and a Big Battery
  1. NASA and NOAA Set to Launch Solar Probes for Space Weather Forecasting
  2. Qualcomm Partners BMW to Bring New Automated Driving System to BMW iX3 SUV
  3. James Webb Spots Bizarre Planet-Forming Disk Full of Carbon Dioxide
  4. IFA 2025: Lenovo Legion Pro 7 (2025) With Nvidia RTX 5080 GPU Unveiled Alongside ThinkBook VertiFlex Concept
  5. Google Reportedly Lists New Outdoor and Indoor Nest Cam Models Alongside Nest Doorbell in Google Home App
  6. Samsung Galaxy Tab S11, Galaxy Tab S11 Ultra Price in India Announced; Pre-Orders Open Ahead of Sale
  7. Nubia Air Launched at IFA 2025 With Sleek 5.9mm Profile and 5,000mAh Battery: Price, Specifications
  8. Facebook Is Trying to Bring Back Pokes Playing on the 2010s Nostalgia
  9. NFT Trading Rose to New High in August Even as Sales Dipped: Report
  10. Nothing Ear 3 Teaser Drops Ahead of Imminent Launch
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.