Election Systems Under Attack via Microsoft Zerologon Exploits
#1
Information 
Quote:U.S. government officials have warned that advanced persistent threat actors (APTs) are now leveraging Microsoft’s severe privilege-escalation flaw, dubbed “Zerologon,” to target elections support systems.
 
Days after Microsoft sounded the alarm that an Iranian nation-state actor was actively exploiting the flaw (CVE-2020-1472), the Cybersecurity Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) published a joint advisory warning of further attacks.
 
The advisory details how attackers are chaining together various vulnerabilities and exploits – including using VPN vulnerabilities to gain initial access and then Zerologon as a post-exploitation method –  to compromise government networks.
 
“This recent malicious activity has often, but not exclusively, been directed at federal and state, local, tribal and territorial (SLTT) government networks,” according to the security advisory. “Although it does not appear these targets are being selected because of their proximity to elections information, there may be some risk to elections information housed on government networks.”
 
With the U.S. November presidential elections around the corner – and cybercriminal activity subsequently ramping up to target election infrastructure and presidential campaigns – election security is top of mind. While the CISA and FBI’s advisory did not detail what type of elections systems were targeted, it did note that there is no evidence to support that the “integrity of elections data has been compromised.”

Read more: https://threatpost.com/election-systems-...on/160021/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
QOwnNotes
26.4.16  Tag assi...Kool — 12:15
NanaZip 6.0 Update 3 (6.0.1691.0)
NanaZip 6.0 Update...harlan4096 — 06:11
QOwnNotes
26.4.15  Added an...Kool — 11:43
Zorin OS 18.1 Released With Windows App ...
Zorin OS has annou...harlan4096 — 07:14
Webroot SecureAnywhere 9.0.44.40
Webroot SecureAnyw...harlan4096 — 06:30

[-]
Birthdays
Today's Birthdays
avatar (44)techlignub
avatar (43)Stevenmam
avatar (50)onlinbah
Upcoming Birthdays
avatar (45)wapedDow
avatar (51)steakelask
avatar (45)Termoplenka
avatar (43)bycoPaist
avatar (49)pieloKat
avatar (43)ilyagNeexy
avatar (51)donitascene
avatar (51)Toligo

[-]
Online Staff
There are no staff members currently online.

>