fbi正式将朝鲜称为索尼黑客案的罪魁祸首

美国联邦调查局说,朝鲜是上个月索尼遭受网络攻击的幕后黑手,这起攻击导致泄露被盗电子邮件和社会安全号码,并取消了采访。美国联邦调查局(FBI)在周三晚间接到美国官员匿名报告后,今天上午正式确认朝鲜政府是黑客攻击的元凶。数周来,外界普遍怀疑朝鲜是这些袭击的幕后黑手。...

美国联邦调查局说,朝鲜是上个月索尼遭受网络攻击的幕后黑手,这起攻击导致泄露被盗电子邮件和社会安全号码,并取消了采访。美国联邦调查局(FBI)在周三晚间接到美国官员匿名报告后,今天上午正式确认朝鲜**是黑客攻击的元凶。数周来,外界普遍怀疑朝鲜是这些袭击的幕后黑手。

007Ys3FFgy1gpz893h1o9j32bc1jh1kx

“这种恐吓行为超出了国家行为可以接受的范围。”

“我们对这次攻击对一个私营部门实体和在那里工作的普通公民的破坏性深感关切,”该局写道,这次黑客攻击强调了为什么网络攻击是最大的****威胁之一朝鲜的行动意在对美国企业造成重大伤害,压制美国公民的表达权利。这种恐吓行为超出了国家行为可接受的范围。”

联邦调查局没有说明将采取什么行动来应对这次袭击。奥巴马总统预计将在今天下午发表讲话,届时他可能会解释美国将如何应对朝鲜。白宫昨天开始为他的回应设定预期,解释说回应必须“成比例”,因为袭击者可能希望引起某种反应。

该局说,用于攻击索尼的恶意软件与此前被朝鲜使用的恶意软件有关。”例如,在特定的代码行、加密算法、数据删除方法和受损网络方面都有相似之处,”该局写道。这次袭击中使用的基础设施与过去与朝鲜有关的袭击中使用的基础设施也有“明显重叠”。类似的工具也被使用。

在过去的几周里,媒体报道了许多类似之处,这使得这些结论基本上不足为奇。不过,美国联邦调查局也指出,它使用了“敏感来源和方法”来确定这次袭击的幕后主使,而这些来源和方法目前还没有被描述。

索尼第一次意识到这次攻击是在11月下旬,当时它的电脑系统在全球范围内被关闭。一个自称为“和平卫士”的组织对这次袭击负责,从上周起,该组织就开始在网上发布被盗的索尼文件。周二,黑客们还威胁要对电影《采访》的放映进行攻击,导致索尼取消发行。

据推测,朝鲜对采访内容持异议,采访内容涉及朝鲜领导人金正恩的暗杀企图,并生动地描绘了金正恩的死亡。这部喜剧由塞思·罗根和詹姆斯·佛朗哥主演,计划在圣诞节上映。这种情况不会再发生了。事实上,索尼影射说,它可能会选择根本不发布采访,包括在线、点播或DVD和蓝光。这对索尼来说将是一个巨大的损失:Wrap报告称,索尼在这部电影上已经花费了约9000万美元,索尼预计至少会获得2.1亿美元的回报。

FBI的完整声明转载如下:

Today, the FBI would like to provide an update on the status of our investigation into the cyber attack targeting Sony Pictures Entertainment (SPE). In late November, SPE confirmed that it was the victim of a cyber attack that destroyed systems and stole large quantities of personal and commercial data. A group calling itself the "Guardians of Peace" claimed resp***ibility for the attack and subsequently issued threats against SPE, its employees, and theaters that distribute its movies.

The FBI has determined that the intrusion into SPE’s network c***isted of the deployment of destructive malware and the theft of proprietary information as well as employees’ personally identifiable information and confidential communicati***. The attacks also rendered thousands of SPE’s computers inoperable, forced SPE to take its entire computer network offline, and significantly disrupted the company’s business operati***.

After discovering the intrusion into its network, SPE requested the FBI’s assistance. Since then, the FBI has been working closely with the company throughout the investigation. Sony has been a great partner in the investigation, and continues to work closely with the FBI. Sony reported this incident within hours, which is what the FBI hopes all companies will do when facing a cyber attack. Sony’s quick reporting facilitated the investigators’ ability to do their jobs, and ultimately to identify the source of these attacks.

As a result of our investigation, and in close collaboration with other U.S. government departments and agencies, the FBI now has enough information to conclude that the North Korean government is resp***ible for these acti***. While the need to protect sensitive sources and methods precludes us from sharing all of this information, our conclusion is based, in part, on the following:

  • Technical ****ysis of the data deletion malware used in this attack revealed links to other malware that the FBI knows North Korean actors previously developed. For example, there were similarities in specific lines of code, encryption algorithms, data deletion methods, and compromised networks.
  • The FBI also observed significant overlap between the infrastructure used in this attack and other malicious cyber activity the U.S. government has previously linked directly to North Korea. For example, the FBI discovered that several Internet protocol (IP) addresses associated with known North Korean infrastructure communicated with IP addresses that were hardcoded into the data deletion malware used in this attack.
  • Separately, the tools used in the SPE attack have similarities to a cyber attack in March of last year against South Korean banks and media outlets, which was carried out by North Korea.

We are deeply concerned about the destructive nature of this attack on a private sector entity and the ordinary citizens who worked there. Further, North Korea’s attack on SPE reaffirms that cyber threats pose one of the gravest national security dangers to the United States. Though the FBI has seen a wide variety and increasing number of cyber intrusi***, the destructive nature of this attack, coupled with its coercive nature, sets it apart. North Korea’s acti*** were intended to inflict significant harm on a U.S. business and suppress the right of American citizens to express themselves. Such acts of intimidation fall outside the bounds of acceptable state behavior. The FBI takes seriously any attempt—whether through cyber-enabled means, threats of violence, or otherwise—to undermine the economic and social prosperity of our citizens.

The FBI stands ready to assist any U.S. company that is the victim of a destructive cyber attack or breach of confidential business information. Further, the FBI will continue to work closely with multiple departments and agencies as well as with domestic, foreign, and private sector partners who have played a critical role in our ability to trace this and other cyber threats to their source. Working together, the FBI will identify, pursue, and impose costs and c***equences on individuals, groups, or nation states who use cyber means to threaten the United States or U.S. interests.

  • 发表于 2021-04-28 10:01
  • 阅读 ( 266 )
  • 分类:互联网

你可能感兴趣的文章

索尼影业正在调查黑客与朝鲜之间的可能联系

...他们正在调查本周早些时候他们的电脑遭到攻击时可能与朝鲜有关联。具体地说,据雷科德说,该公司正在“探索黑客代表朝鲜工作的可能性,也许是在中国以外的地方运作”
 
 
 至于动机,雷科德猜测一...

  • 发布于 2021-04-27 23:48
  • 阅读 ( 124 )

新证据显示朝鲜参与了索尼影业的黑客攻击

...由于索尼影业的员工仍在努力重新上网,新的证据显示,朝鲜可能是黑客攻击的幕后黑手。《华尔街日报》报道说,调查黑客行为的研究人员发现,这些恶意代码与2013年3月针对韩国一系列银行和广播公司的攻击中使用的代码几...

  • 发布于 2021-04-28 00:04
  • 阅读 ( 148 )

朝鲜是如何控制索尼影业的服务器的?

感恩节前的周一,索尼影业遭到朝鲜的攻击。朝鲜电影制片厂仍在推迟其官方声明,但目前看来,这次袭击显然是对即将上映的电影《采访》的报复,这部喜剧讲述了试图杀害朝鲜领导人金正恩的故事。朝鲜官员曾谴责这部电...

  • 发布于 2021-04-28 00:32
  • 阅读 ( 183 )

摧毁索尼的恶意软件是用韩语写的

由于AlienVault公司进行的研究,新的证据显示朝鲜与最近对索尼的攻击有关。利用美国联邦调查局(FBI)公布的代码样本,AlienVault的实验室主任詹姆·布拉斯科(Jaime Blasco)得以追踪落入该公司一个恶意软件蜜罐的恶意软件副...

  • 发布于 2021-04-28 00:47
  • 阅读 ( 137 )

索尼影业黑客盗取了47000个社会安全号码,其中包括史泰龙的

一周前,一个可能来自朝鲜,也可能不来自朝鲜的黑客组织让索尼电影停滞不前,索尼电影的情况变得更加糟糕。黑客们破坏了索尼公司的电脑系统,现在他们在互联网上发布了大量索尼影业的私人文件。对33000多份文件的分...

  • 发布于 2021-04-28 00:52
  • 阅读 ( 189 )

朝鲜称索尼影业黑客攻击是“正义之举”,但否认参与

朝鲜对索尼影业(Sony Pictures)遭受的破坏性黑客攻击表示赞赏,不过朝鲜不承担攻击责任。据《****》报道,朝鲜中央通讯社援引一名发言人的话说,朝鲜没有参与黑客攻击,也不知道索尼为何被列为攻击目标。不过,他提出...

  • 发布于 2021-04-28 01:09
  • 阅读 ( 136 )

索尼黑客攻击的证据指向朝鲜,但这可能还不够

...3; 泄露文件的人在曼谷工作
 首先,有理由认为朝鲜是罪魁祸首。周日,彭博社报道说,泄露索尼文件的核心IP地址之一属于泰国曼谷圣瑞吉斯酒店的私人网络。出于实际原因,似乎不太可能有人在酒店房间外运行VPN或Tor节点...

  • 发布于 2021-04-28 01:22
  • 阅读 ( 138 )

黑客告诉索尼停止发布采访

...(SethRogen)和詹姆斯·佛朗哥(JamesFranco)主演,讲述了朝鲜领导人金正恩遇刺的故事。这是迄今为止袭击者对这部电影最明确的提及,尽管此前许多人将袭击事件与朝鲜对电影上映的报复联系在一起。
 
 
 ...

  • 发布于 2021-04-28 01:37
  • 阅读 ( 129 )

索尼黑客承诺将泄露数据作为“圣诞礼物”,提议对索尼员工的数据进行删改

...体目标并不具体,但要求索尼停止发布采访内容,这涉及朝鲜领导人金正恩的血腥死亡。朝鲜否认参与黑客攻击,但一些可疑迹象表明它参与了攻击。”当然,SPE越早接受我们的要求越好时间越久,SPE的状态就越差,我们最终会...

  • 发布于 2021-04-28 09:08
  • 阅读 ( 222 )

索尼黑客威胁说,他们会对在影院观看采访的人发动恐怖袭击

...预防措施,”洛杉矶警察局局长查理贝克告诉报道。
 朝鲜否认参与此事
 人们普遍怀疑朝鲜在这些袭击中起了作用,证据也指向了这个方向。不过,朝鲜否认与此事有任何牵连,而且有可能证据最终不足以令人信服,无法...

  • 发布于 2021-04-28 09:28
  • 阅读 ( 165 )
ifsvd3951
ifsvd3951

0 篇文章

相关推荐