Cyber Actors Use Internet In Malicious Activities
FBI - IC3
   
 
More Today's News:
ߦ   Update- Homicide Victim Identified- 3155 French Road
ߦ   Wrongful death lawsuit moves to trial
ߦ   IN MEMORIAM - Katherine Kay Jahnke
ߦ   Elgin Police Officer William Silva Suffers Fatal On-Duty Heart Attack
ߦ   Officials give details on shootout that killed two Brookhaven officers
ߦ   VIDEO: Crazed Man Charges Officer, Starts Stabbing Him In Head
ߦ   Department of Justice Will Award More Than $10 Million to Support Crime Reduction Efforts
ߦ   Former Bandidos National VP Sentenced To Life In Federal Prison
ߦ   Hillsborough deputy fatally shoots wife, himself with children in home
ߦ   Investigation into Fatal Shooting at 7300 Long Drive
ߦ   Newly-Released FBI Crime Data Shows Violent Crime Decline in 2017
ߦ   Reward Offered in Virginia State Trooper’s Death
ߦ   Santa Fe High School student accused of verbal threat toward teacher arrested
ߦ   Suspect Arrested, Charged in Fatal Shooting at 89 Casa Grande
ߦ   Teen who wanted to be cop hacked into police computer system
ߦ   Texas City HS student arrested after alleged threat found on bathroom wall
ߦ   Traffic Fatality #52
ߦ   U.S. Soldier Sentenced to More Than 11 Years for Illegally Manufacturing, Using a Chemical Weapon
ߦ   19 Busted In Waco On Federal Drug Trafficking Charges
ߦ   3D printed gun advocate accused of paying minor for sex is arrested in Taiwan
ߦ   At least 6 suspects charged with murder in August in Bexar County
ߦ   Constable Deputies Track, Arrest Car Thief
ߦ   Convicted sex offender accused of having sex with dog
ߦ   Houston Attorney Charged in Offshore Tax Evasion Scheme
ߦ   Houston Physician and a Pain Management Clinic Owner Each Sentenced to 35 Years in Prison
ߦ   Man Jailed For Exposing Himself At Elementary School
ߦ   Mexican National Sentenced for East Texas Drug Trafficking
ߦ   Officer And Deceased Identified In Police Shooting
ߦ   Pair Jailed For Theft Of A Firearm
ߦ   Popular Galveston bar could lose alcohol license for drunk-driving related fatality after TABC case
ߦ   Sherffi's Deputies Seize Marijuana Grow Crop
ߦ   Sheriff’s Office Investigating Incident at Montgomery County Animal Shelter
ߦ   Texas woman gets prison in virtual kidnapping, ransom scam
ߦ   Video: Texas Officer Pulls Motorist Clear Just As Truck Slams Into Car
ߦ   Best TV News Bloopers August 2018

 
Search Archives:

Cyber actors actively search for and compromise vulnerable Internet of Things (IoT) devices for use as proxies or intermediaries for Internet requests to route malicious traffic for cyber-attacks and computer network exploitation. IoT devices, sometimes referred to as “smart” devices, are devices that communicate with the Internet to send or receive data. Examples of targeted IoT devices include: routers, wireless radios links, time clocks, audio/video streaming devices, Raspberry Pis, IP cameras, DVRs, satellite antenna equipment, smart garage door openers, and network attached storage devices.

IoT proxy servers are attractive to malicious cyber actors because they provide a layer of anonymity by transmitting all Internet requests through the victim device’s IP address. Devices in developed nations are particularly attractive targets because they allow access to many business websites that block traffic from suspicious or foreign IP addresses. Cyber actors use the compromised device’s IP address to engage in intrusion activities, making it difficult to filter regular traffic from malicious traffic.

Cyber actors are using compromised IoT devices as proxies to:

  • Send spam e-mails;
  • Maintain anonymity;
  • Obfuscate network traffic;
  • Mask Internet browsing;
  • Generate click-fraud activities;
  • Buy, sell, and trade illegal images and goods;
  • Conduct credential stuffing attacks, which occurs when cyber actors use an automated script to test stolen passwords from other data breach incidents on unrelated web-sites; AND
  • Sell or lease IoT botnets to other cyber actors for financial gain.

Cyber actors typically compromise devices with weak authentication, unpatched firmware or other software vulnerabilities, or employ brute force attacks on devices with default usernames and passwords.

Compromised devices may be difficult to detect but some potential indicators include:

  • A major spike in monthly Internet usage;
  • A larger than usual Internet bill;
  • Devices become slow or inoperable;
  • Unusual outgoing Domain Name Service queries and outgoing traffic; or
  • Home or business Internet connections running slow.

Protection and Defense

  • Reboot devices regularly, as most malware is stored in memory and removed upon a device reboot. It is important to do this regularly as many actors compete for the same pool of devices and use automated scripts to identify vulnerabilities and infect devices.
  • Change default usernames and passwords.
  • Use anti-virus regularly and ensure it is up to date.
  • Ensure all IoT devices are up to date and security patches are incorporated.
  • Configure network firewalls to block traffic from unauthorized IP addresses and disable port forwarding.
  • Isolate IoT devices from other network connections.

Additional Resources

For additional information on cyber threats to IoT devices, please refer to “Common Internet of Things Devices May Expose Consumers to Cyber Exploitation,” available at https://www.ic3.gov/media/2017/171017-1.aspx.

Victim Reporting

If you suspect your IoT device(s) may have been compromised, contact your local FBI office and/or file a complaint with the Internet Crime Complaint Center at www.ic3.gov.

Post a comment
Name/Nickname:
(required)
Email Address: (must be a valid address)
(will not be published or shared)
Comments: (plain text only)
Printer Friendly Format  Printer Friendly Format    Send to a Friend  Send to a Friend    RSS Feed  RSS Feed
  Facebook   Share link on Twitter Tweet  
© 1999-2018 The Police News. All rights reserved.