Security Management
Published on Security Management (http://www.securitymanagement.com)
Researcher Says Russian Government Involved in Georgia Cyber Attacks
By John Wagley
Created 08/22/2008 - 09:40



    
Wrap-Up?: 
No
Weight: 
0
Lead Headline?: 
No
Date: 
08/22/2008
By Line: 
By John Wagley
Teaser: 

A researcher asserts that the Russian government was involved in cyber attacks against Georgia.

There was an unprecedented level of coordination between the Russian military campaign and the cyber attacks against Georgia, said Don Jackson, director of threat intelligence at SecureWorks in Atlanta in an interview with Security Management.

Just hours before bombs started falling on certain towns earlier this month, local Web sites were hit with denial of service (DOS) attacks, in which site servers shut down after receiving a flood of requests. Many targeted sites had “high military value,” he says, including those run by law enforcement and by media outlets.

There is also “significant evidence” that numerous Georgian government servers were hacked on the first day of the conflict over the territory of South Ossetia, he says, adding that some intrusions copied data off government servers.  Most previous Internet campaigns against other nations have involved DOS attacks against sites with symbolic, rather than military, value, he says.

Jackson says he has spoken with and received computing logs from Georgian government network administrators, among other sources.  Some logs show that Web assaults were launched from the command and control servers of Russian state-owned Internet networks, he says.  He also points to a mob tie. Numerous gangs throughout the former Soviet Union control hundreds of thousands of bots, or programs that dwell in computers throughout the globe and can be used for attacks and fraud. Many of the bots used against Georgia resemble those used by the gangs, says Jackson.

The Russian government has denied any responsibility. Recently, The Shadow Server Foundation, which tracks global Internet crime, wrote that there was no clear tie to the Russian government and that many of the attacks appear to be a Russian “grassroots effort.” The organization has also posted a list of attacked Web domains [1].

Jackson said the U.S. is less vulnerable to such attacks because of the widespread use of content distribution technology that permits sites to be hosted in multiple locations simultaneously.


Related Resources: 

Comments


Security Management is the award-winning publication of ASIS International, the preeminent international
organization for security professionals, with more than 37,000 members worldwide.

ASIS International, Inc. Worldwide Headquarters, 1625 Prince Street, Alexandria, Virginia 22314-2818 U.S.A.
703-519-6200 | fax 703-519-6299 | www.asisonline.org

ASIS

© 2012 Security Management
This site is protected by copyright and trade mark laws under U.S. and International law.
No part of this work may be reproduced without the written permission of Security Management.

Powered by: Phase2 Technology

Source URL: http://www.securitymanagement.com/news/researcher-says-russian-government-involved-georgia-cyber-attacks-004509

Links:
[1] http://www.shadowserver.org/wiki/pmwiki.php?n=Calendar.20080811