Russian Agents Hack Webcams to Guide Missile Attacks on Kyiv

The Security Service of Ukraine has asked owners and operators of webcams in the country to stop broadcasts from their devices over concerns about Russia's intelligence services using the feeds to conduct military reconnaissance against strategic targets.
The SSU's move follows a recent incident where Russian agents hacked into two residential webcams in Kyiv to gather information on the city's air defense systems prior to launching a missile attack on the Ukrainian capital.
Residential Webcams In a statement, the SSU described one of the webcams as being located on top of a Kyiv apartment building - apparently near a critical infrastructure facility - and being used by the condo association to monitor the surrounding area.
Russian intelligence services hacked into the camera, changed its viewing angle, and streamed its live feed to YouTube from which they monitored everything within the camera's range.
The second camera too was located at a residential complex in Kyiv, this one for monitoring the building's parking facility.
Russian agents took control of the webcam the same way they did with the first and used it to gather information on an adjacent critical infrastructure facility.
This has meant blocking the operation of some 10,000 IP cameras in Ukraine that Russia could have used to inform its missile attacks on the country, the SSU said.
In its statement, the state security agency reminded citizens and operators of street webcams in the country about their obligation not to broadcast video and images that Russia could use for targeted attacks.
The Broader Threat Russia's hacking of IP cameras and the country's use of them in carrying out air attacks against Ukraine highlights the risks associated with webcams and insecure IoT devices in general.
He points to a 2021 report from Palo Alto Networks that identified IP cameras as the least secure IoT devices, followed by Internet-connected printers.
In the Ukraine-Russia and Israel-Hamas conflicts, both sides have been hacking into IP cameras and other IoT systems to gain intelligence, promote propaganda, and enable lateral movement into other systems, Broomhead says.
The apparent ease with which Russian agents managed to compromise the IP cameras in Kyiv highlights the lack of robust security features in many widely deployed IoT products.
These include features such as strong authentication mechanisms, regular security updates, and the ability to monitor and detect suspicious activities, says Callie Guenther, senior manager, cyber threat research at Critical Start.
Concerns over IoT security prompted the National Institute of Standards and Technology to propose a new encryption standard in February 2023 for connected devices based on a group of algorithms known as Ascon.
NIST has described the standard as designed for even the most lightweight IoT devices - such as IP cameras, medical devices, and stress detectors on roads and bridges.
Security experts expect it will be sometime yet before IoT vendors begin implementing the new standard in any meaningful way, given how far behind most of them are in implementing even basic security protections.


This Cyber News was published on www.darkreading.com. Publication date: Wed, 03 Jan 2024 23:00:26 +0000


Cyber News related to Russian Agents Hack Webcams to Guide Missile Attacks on Kyiv

Russian Agents Hack Webcams to Guide Missile Attacks on Kyiv - The Security Service of Ukraine has asked owners and operators of webcams in the country to stop broadcasts from their devices over concerns about Russia's intelligence services using the feeds to conduct military reconnaissance against strategic ...
10 months ago Darkreading.com
A Gigantic New ICBM Will Take US Nuclear Missiles Out of the Cold War-Era but Add 21st-Century Risks - Cybersecurity for the software-driven Sentinel nuclear missile has been a top focus of the program. Those underground capsules are about to be demolished and the missile silos they control will be completely overhauled. A new nuclear missile is ...
10 months ago Securityweek.com
Russia Spies on Kyiv Defenses via Hacked Cameras Before Missile Strike - Russian intelligence hacked online surveillance cameras to spy on air defense activities and critical infrastructure in Kyiv ahead of recent missile strikes, the Security Service of Ukraine has revealed. The Kremlin was able to remotely control two ...
10 months ago Infosecurity-magazine.com
Ukraine says Russia hacked web cameras to spy on targets in Kyiv - Ukraine's security officers said they took down two online surveillance cameras that were allegedly hacked by Russia to spy on air defense forces and critical infrastructure in Ukraine's capital, Kyiv. The cameras were installed on residential ...
10 months ago Therecord.media
SpaceX Launched Military Satellites Designed to Track Hypersonic Missiles - Two prototype satellites for the Missile Defense Agency and four missile-tracking satellites for the US Space Force rode a SpaceX Falcon 9 rocket into orbit Wednesday from Florida's Space Coast. These satellites are part of a new generation of ...
8 months ago Wired.com
Ukraine Arrests Hacker for Assisting Russian Missile Strikes - Ukrainian security services have arrested a hacker for allegedly targeting government websites and providing intelligence to Russia to carry out missile strikes on the city of Kharkiv. Security Service of Ukraine revealed that its cyber unit has ...
9 months ago Infosecurity-magazine.com
Ukraine: Russia hacked webcams to aid missile, drone strikes on Kyiv - Ukraine accused Russia of hacking webcams to spy on Kyiv targets ahead of a deadly air raid this week, an example of how cyberattacks against internet-connected devices have become a part of modern warfare. The attacks primarily targeted Kyiv and ...
10 months ago Packetstormsecurity.com
Detained Russian student allegedly helped Ukrainian hackers with cyberattacks - A Russian tech student could face treason charges for helping Ukrainian hackers carry out cyberattacks against Russia. A resident of the Siberian city of Tomsk, Seymour Israfilov was detained by Russian security services in October, but little ...
9 months ago Therecord.media
Sandworm Hackers Caused Another Blackout in Ukraine-During a Missile Strike - The notorious unit of Russia's GRU military intelligence agency known as Sandworm remains the only team of hackers to have ever triggered blackouts with their cyberattacks, turning off the lights for hundreds of thousands of Ukrainian civilians not ...
11 months ago Wired.com
FSB arrests Russian hackers working for Ukrainian cyber forces - The Russian Federal Security Service arrested two individuals believed to have helped Ukrainian forces carry out cyberattacks to disrupt Russian critical infrastructure targets. Both suspects were taken into custody one same day in two different ...
11 months ago Bleepingcomputer.com
23andMe Blames Users for Recent Data Breach as It's Hit With Dozens of Lawsuits - It's been nearly two years since Russia's invasion of Ukraine, and as the grim milestone looms and winter drags on, the two nations are locked in a grueling standoff. If you made some New Year's resolutions related to digital security, check out our ...
10 months ago Wired.com
US launches nuke spy satellites amid Russia weapon rumors The Register - Last night's launch of six Pentagon missile-detection satellites was well timed as fears mount that Russia is considering putting nuclear weapons into space. The US Department of Defense confirmed its payload included two satellites for the Missile ...
8 months ago Go.theregister.com
New NCCoE Guide Helps Major Industries Observe Incoming Data While Using Latest Internet Security Protocol - PRESS RELEASE. Companies in major industries such as finance and health care must follow best practices for monitoring incoming data for cyberattacks. The latest internet security protocol, known as TLS 1.3, provides state-of-the-art protection, but ...
9 months ago Darkreading.com
Who Is Behind Pro-Ukrainian Cyberattacks on Iran? - COMMENTARY. Ukrainian cyber forces have attacked Russian infrastructure and assets almost since the first day of the Russian invasion of Ukraine on Feb. 24, 2022. While its mainstay is denial-of-service attacks that have knocked out the Russian ...
9 months ago Darkreading.com
Ukraine security services involved in hack of Russia's largest private bank - Ukrainian hackers collaborated with the country's security services, the SBU, to breach Russia's largest private bank, a source within the department confirmed to Recorded Future News. Last week, two groups of pro-Ukrainian hackers, KibOrg and NLB, ...
11 months ago Therecord.media
Ukraine says it hacked Russian aviation agency, leaks data - Ukraine's intelligence service, operating under the Defense Ministry, claims they hacked Russia's Federal Air Transport Agency, 'Rosaviatsia,' to expose a purported collapse of Russia's aviation sector. Rosaviatsia is the agency responsible for ...
11 months ago Bleepingcomputer.com
Feds arrest Russians accused of tech smuggling operation The Register - Three Russian nationals were arrested in New York yesterday on charges of moving electronics components worth millions to sanctioned entities in Russia, pieces of which were later recovered on battlefields in Ukraine. Nikolay Goltsev, a ...
11 months ago Theregister.com
Kazakhstan to extradite Russian cyber expert to Moscow despite US requests - Kazakhstan will reportedly extradite a prominent Russian cybersecurity expert to Moscow after refusing to send him to the U.S. Nikita Kislitsin, who was detained in Kazakhstan earlier in June at the request of the U.S., will face hacking and ...
10 months ago Therecord.media
New Microsoft Incident Response team guide shares best practices for security teams and leaders - The incident response process can be a maze that security professionals must quickly learn to navigate-which is no easy task. Surprisingly, many organizations still lack a coordinated incident response plan, and even fewer consistently apply it. ...
10 months ago Microsoft.com
Russian military hackers target NATO fast reaction corps - Russian APT28 military hackers used Microsoft Outlook zero-day exploits to target multiple European NATO member countries, including a NATO Rapid Deployable Corps. Researchers from Palo Alto Networks' Unit 42 have observed them exploiting the ...
11 months ago Bleepingcomputer.com
Ukrainian hackers disrupt internet providers in Russia-occupied territories - Ukrainian hackers have temporarily disabled internet services in parts of the country's territories that have been occupied by Russia. The group of cyber activists known as the IT Army said on Telegram that their distributed denial-of-service attack ...
11 months ago Therecord.media
9 Best DDoS Protection Service Providers for 2024 - eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More. One of the most powerful defenses an organization can employ against distributed ...
11 months ago Esecurityplanet.com
Russia Hacked Residential Cameras in Ukraine to Spy on Air Defense, Critical Infrastructure - The Security Service of Ukraine announced this week that it has taken down two residential surveillance cameras that were hacked by Russia and abused to spy on air defense systems and critical infrastructure in Kyiv. One of the cameras was located in ...
10 months ago Securityweek.com
AI models can be weaponized to hack websites on their own The Register - AI models, the subject of ongoing safety concerns about harmful and biased output, pose a risk beyond content emission. When wedded with tools that enable automated interaction with other systems, they can act on their own as malicious agents. ...
8 months ago Go.theregister.com
US sanctions Russian for cleaning Ryuk's and oligarchs' cash The Register - A Russian woman the US accuses of being a career money launderer is the latest to be sanctioned by the country for her alleged role in moving hundreds of millions of dollars on behalf of oligarchs and ransomware criminals. Among these was her alleged ...
11 months ago Theregister.com

Latest Cyber News


Cyber Trends (last 7 days)


Trending Cyber News (last 7 days)