Security

Cyber-crime

'Peacetime in cyberspace is a chaotic environment' says senior US advisor

The internet is now the first battleground of any new war – before the shooting starts


Black Hat Asia Cyber war has become an emerged aspect of broader armed conflicts, commencing before the first shot is fired, cybersecurity expert Kenneth Geers told the audience at the Black Hat Asia conference on Friday.

"Peacetime in cyberspace is a chaotic environment," said Geers, who has served as a visiting professor at Kiev National Taras Shevchenko University, represented the US government at NATO, and held senior roles at the National Security Agency. "A lot of hacking has to be done in peacetime."

Geers said the Russia-Ukraine war demonstrates how electronic and kinetic conflicts interact. Ahead of the Ukraine invasion, Russia severed network cables, commandeered satellites, whitewashed Wikipedia, and targeted military ops via mobile phone geolocations.

Geers highlighted that Russia's DDoS attack on the Ukraine began 10 days before its soldiers invaded on February 24. A day before the official war began, Russian cybersecurity operations began to execute wiper attacks, targeting Ukrainian systems and deleting its data.

That same day, February 23, the "psyops" began. These psychological operations included misinformation in the form text messages sent to Ukrainian soldiers that they should surrender, messages to citizens about non-functioning ATMs creating bank panic, and even deepfakes of Ukrainian president Volodymyr Zelensky surrendering.

According to Geers, successfully maintaining connectivity has been a critical element of Ukraine's response to the Russian invasion because it has allowed information to keep flowing.

"You can hack my computer, but I'm going to grab my friend's device, or cell phone," Geers said, adding that connectivity meant President Zelensky was able to communicate with allies and appeal for assistance, despite constant bombing and surrounding physical combat.

He noted that the war has been collaboratively fought across the world as both lone hackers and collectives like Anonymous conduct operations against Russia. The collaborative effort has amounted to considerable interference, he said.

"Simple information operations have outshined complex attempts," said Geers, who reiterated that Ukraine's cyberspace strength in this war lies in community and working with researchers and allies who are unrelated and may be complete strangers.

"You want to take advantage of the power of web to succeed," he said.

As a mid-war assessment, Greer offered that information operations and communications are the key to survive conflict amid DDoS attacks, computer espionage, and other raids against vulnerabilities.

While under attack, those in the war environment will find alternative routes to communicate. After all, Geers said, "that's what the web is all about." ®

Send us news
2 Comments

Change Healthcare’s ransomware attack costs edge toward $1B so far

First glimpse at attack financials reveals huge pain

Roku makes 2FA mandatory for all after nearly 600K accounts pwned

Streamer says access came via credential stuffing

Delinea Secret Server customers should apply latest patches

Attackers could nab an org's most sensitive keys if left unaddressed

Open sourcerers say suspected xz-style attacks continue to target maintainers

Social engineering patterns spotted across range of popular projects

What's up with AI lately? Let's start with soaring costs, public anger, regulations...

'Obtaining genuine consent for training data collection is especially challenging' industry sages say

SIM swap crooks solicit T-Mobile US, Verizon staff via text to do their dirty work

No breach responsible for employee contact info getting out, says T-Mo

US House approves FISA renewal – warrantless surveillance and all

PLUS: Chinese chipmaker Nexperia attacked; A Microsoft-signed backdoor; CISA starts scanning your malware; and more

Global taxi software vendor exposes details of nearly 300K across UK and Ireland

High-profile individuals including MPs said to be caught up in leak

SharePoint logs are easily circumvented and Microsoft is dragging its heels

Now is the perfect time to review those permissions

Rust rustles up fix for 10/10 critical command injection bug on Windows in std lib

BatBadBut hits Erlang, Go, Python, Ruby as well

X fixes URL blunder that could enable convincing social media phishing campaigns

Poorly implemented rule allowed miscreants to deceive users with trusted URLs

Notepad++ dev slams Google-clogging notepad.plus 'parasite'

Imitator seemingly swiftly sunk from search after plea to users for help