Sony Pictures Malware May Be Linked to Other Damaging Attacks: Experts

Advertisement
By Reuters | Updated: 5 December 2014 10:34 IST
Cyber-security researchers have uncovered what they say is technical evidence linking the massive breach at Sony's Hollywood studio with attacks in South Korea and the Middle East.

Moscow-based security software maker Kaspersky Lab said on Thursday it uncovered evidence that all three campaigns might have been launched by the same group, or facilitated by a single organization skilled in working with destructive malware.

In 2012, cyber attackers damaged tens of thousands of computers at Saudi Arabia's national oil company and Qatar's RasGas with a virus known as Shamoon, one of the most destructive campaigns to date. Some U.S. officials blamed Iran.

Advertisement

Last year, more than 30,000 PCs at South Korean banks and broadcasting companies were hit by a similar attack that cyber-security researchers widely believe was launched from North Korea.

Kaspersky researcher Kurt Baumgartner told Reuters there are "unusually striking similarities" related to the malicious software and techniques in the two campaigns and the Nov. 24 Sony attack in which a malware dubbed "Destover" was used.

He described the similarities in depth in a technical blog published on Thursday on Kaspersky's website.

Advertisement

"It could be a single actor or it could be that there are trainers or individuals who float across groups," Baumgartner said in an interview.

He said the evidence suggests hackers from North Korea are behind the attack on Sony, although it is unclear whether they work directly for the government.

Advertisement

Not all cyber-security researchers agree with Kaspersky's interpretation of the technical evidence.

California-based Symantec Corp said in a blog posting on Thursday it also sees similarities between the attacks against Sony and the Shamoon campaign, but attributed it to a copycat.

Advertisement

"There is no evidence to suggest that the same group is behind both attacks," Symantec said on its blog.

The diverging views highlight the difficulties that law enforcement faces in determining the identity of the hackers responsible for the Sony breach.

Hackers often conduct attacks by digitally hopping through multiple computer severs around the globe to mask their real Internet address, or use "false flag" techniques to make it look as though the attack is the work of another nation or group.

© Thomson Reuters 2014

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo V70 Lite 5G Silently Launched in Select Markets With These Features
  1. Samsung Galaxy A27 Leaked in New Mint Colour Option Ahead of Anticipated Launch
  2. Vivo X Fold 6 Confirmed to Launch in China Soon With OriginOS 6 Fold Skin, New AI Features
  3. ChatGPT Gets Lockdown Mode to Protect Users From Prompt Injection Attacks, Reduce Data Theft Risks
  4. Vivo V70 Lite 5G Launched With 50-Megapixel Sony Camera, Dimensity 7400 Turbo SoC: Price, Specifications
  5. Ginny Wedss Sunny 2 OTT Release: When and Where to Watch Avinash Tiwary and Medha Shankr’s Rom-Com
  6. How to Watch WWDC 2026 Live on YouTube, Apple TV, and More: iOS 27, New Siri Expected
  7. SETI Scientists Searched Interstellar Comet 3I/ATLAS for Alien Signals
  8. 29 OTT Release Date: When and Where to Watch Vidhu and Preethi Asrani’s Romantic Drama Online
  9. Jimmi: Paisa Aur Paap Season 1 Now Available For Streaming Online: What You Need To Know
  10. Patriot Now Streaming on Zee5: Cast, Plot, Trailer, Release Date and More
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.