TIMELESS NEWS NOW
Sign In
  • Home
  • World
  • US
  • UK
  • Entertainment
  • Sports
  • Cricket
  • India
  • Technology
  • Life & Style
  • Auto
  • Cyber News
  • Web Stories
Reading: Russian Hackers Use Spyware Tools from NSO and Intellexa: Cozy Bear’s New Techniques
Share
TIMELESS NEWS NOWTIMELESS NEWS NOW
Aa
  • Home
  • World
  • US
  • UK
  • Entertainment
  • Sports
  • Cricket
  • India
  • Technology
  • Life & Style
  • Auto
  • Cyber News
  • Web Stories
Search
Have an existing account? Sign In
Follow US
Copyright © 2023 Timeless News Now. All Rights Reserved
TIMELESS NEWS NOW > Technology > Russian Hackers Use Spyware Tools from NSO and Intellexa: Cozy Bear’s New Techniques

Russian Hackers Use Spyware Tools from NSO and Intellexa: Cozy Bear’s New Techniques

Staff Editor
Last updated: 2024/08/29 at 5:51 PM
Staff Editor
Share
Russian Hacker
Strong Spyware Exploits Make It Possible for New "Watering Hole" Attacks
SHARE

Google’s security researchers have discovered a concerning link between the commercial spyware sector and a well-known Russian hacker gang. The results show how state-sponsored hackers are using technologies that were first created by commercial surveillance corporations in very complex and concerning ways.

Contents
Cozy Bear’s New TacticsSpyware Industry’s InfluenceCommercial Spyware: A Double-Edged SwordResponses from the IndustryThe Importance of Timely UpdatesLooking Ahead

Cozy Bear’s New Tactics

According to Google’s study of a cyber espionage campaign that targeted consumers in Mongolia between November 2023 and July 2024, sophisticated spyware tactics were used by the Russian hacker organization APT29, also known as Cozy Bear, to infect cellphones. Cozy Bear, an organization connected to Russia’s Foreign Intelligence Service (SVR), took use of flaws in iOS and Android operating systems.

The researchers found that Cozy Bear had taken over two official websites in Mongolia in order to insert malware that could be used to collect browser cookies from Android and iPhone devices. This technique, called a “watering hole” assault, was injecting malicious code into these websites so that when users visited them, their devices were hacked.

Spyware Industry’s Influence

The apparent connection between Cozy Bear’s attack methods and those of for-profit spyware providers like Intellexa and NSO Group is what makes this finding more disturbing. Google discovered that Cozy Bear’s actions were remarkably similar to those that had previously been connected to these for-profit monitoring companies. The companies Intellexa and NSO Group are notorious for creating programs like Pegasus and Predator that governments have used to spy on political personalities, activists, and dissidents.

According to Google’s investigation, the vulnerabilities employed in the assaults against the government websites in Mongolia were either extremely similar to, or identical to, those created by NSO Group and Intellexa. It’s still unknown how precisely Russian Hacker Cozy Bear got these vulnerabilities. The Russian hackers may have obtained them by way of direct communication with these companies, bought them from a third party, or came across the exploits in another way.

Commercial Spyware: A Double-Edged Sword

These discoveries have important ramifications. Despite being frequently promoted as a tool for law enforcement and national security, the commercial spyware sector has demonstrated that its methods and equipment may fall into the hands of bad actors. There are grave worries over the spread of sophisticated hacking methods due to the possibility that hostile state actors would utilize these flaws.

Threat Analysis Group researcher at Google Clement Lecigne stressed that even though it’s unclear where the exploit was first obtained, it’s clear that malicious organizations are repurposing commercial spyware programs. This emphasizes how crucial it is to resolve software vulnerabilities as soon as possible and apply security fixes to reduce the dangers associated with them.

Responses from the Industry

NSO Group has vehemently denied any involvement in the Russian Hacker operations in reaction to these discoveries. The corporation declared that it only sells its equipment to approved intelligence and law enforcement organizations affiliated with the United States and Israel, and that it does not sell its technology to Russia. NSO went on to say that security risks are always being watched over its systems.

Another major participant in the commercial spyware sector, Intellexa, has not yet responded to inquiries about the matter. So far, attempts to obtain a statement from the corporation have proven fruitless.

The Importance of Timely Updates

The identification of these assaults emphasizes how important it is for people and companies to keep their software updated. According to Google’s analysis, Russian Hacker Cozy Bear’s exploits were predicated on vulnerabilities that had been fixed weeks before to the strikes. This implies that even after vulnerabilities were fixed, unpatched devices continued to be vulnerable.

Users of iPhones and iPads were found to be protected even while running vulnerable software versions when they used Lockdown Mode, an enhanced security feature. This feature serves as evidence of how crucial it is to use all available security measures in order to protect against sophisticated assaults.

Looking Ahead

The combination of state-sponsored hacking and commercial spyware tactics highlights the necessity for proactive security measures and attention as the cyber threat landscape continues to change. In order to protect themselves from these advanced attacks, users and organizations need to continue being vigilant about installing patches and upgrading their software.

To sum up, the latest discoveries made by Google are a clear reminder of how intricate and dynamic cyberthreats may be. The interaction between state-sponsored hacking and commercial spyware draws attention to the larger cybersecurity implications and the continuous difficulty of protecting sensitive data in an increasingly digital society.

Read More: Apple’s September 10 Launch: iPhone 16 Pro, New AirPods, and Apple Watch Unveiled

Subscribe to Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

TAGGED: APT29 cyber attack, Commercial spyware Intellexa NSO Group, Commercial surveillance tools and hackers, Cozy Bear, Cozy Bear and commercial spyware, Cozy Bear hacking group, Cozy Bear Mongolian government websites, Exploits used by Cozy Bear, Google security research Russian hackers, Google Threat Analysis Group findings, How statesponsored hackers acquire exploits, Lockdown Mode iPhone security, Mongolian government cyber attack, NSO Group Russia connection, Protecting devices from spyware attacks, Russia's Foreign Intelligence Service, Russian hackers spyware
Share This Article
Twitter Email Copy Link Print
Previous Article Telegram CEO Telegram CEO Released After Paris Custody; Report Claims 2017 iPhone Hack
Next Article Jurassic World ‘Jurassic World’ Revealed: Title, First Look Photos, and Synopsis Unveiled
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Trending

global

The world will struggle to keep global warming below 1.5C in 2023, with Earth reaching 1.4C

The World Meteorological Organisation (WMO) has issued a dire warning…

November 30, 2023
Aditya-L1

Aditya-L1 Mission Takes First-Ever Full-disk Images of the Sun

In a groundbreaking achievement, the Aditya-L1 spacecraft's Solar Ultraviolet Imaging…

December 9, 2023
Miles Routledge

British YouTuber Miles Routledge Faces Backlash for Nuclear Bomb Comment on India

Famous for his controversial online alias "Lord Miles," British YouTuber…

August 22, 2024

You Might Also Like

One UI 7
Technology

Samsung One UI 7 Beta Based on Android 15 Officially Launches: What’s New and What to Expect

Samsung has officially unveiled its highly anticipated One UI 7 beta, based on Android 15, after months of delays. This…

8 Min Read
Gemini iPhone
Technology

Google Gemini AI Launches Standalone iPhone App with Gemini Live

Google Gemini AI Launches Standalone iPhone App with Gemini Live FeatureGoogle's AI assistant makes a major leap onto iOS with…

10 Min Read
Nintendo
Technology

Wake Up with Joy: Nintendo’s Exciting New Alarmo Clock is Here!

Nintendo has surprised fans yet again with a new piece of hardware that’s bound to change the way you wake…

7 Min Read
PlayStation
Technology

Celebrate 30 Years of PlayStation: Unveiling the Exciting Anniversary Collection!

In a heartfelt tribute to three decades of gaming excellence, PlayStation has announced the 30th Anniversary Collection, featuring a limited…

5 Min Read
TIMELESS NEWS NOW
  • Entertainment
  • Technology
  • Auto

World

US

UK

India

Sports

Cricket

Life and Style

Web Stories

  • About Us
  • Contact Us
  • Author
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions
  • Cookie Policy

Connect with Us

Facebook-f Twitter Google Tumblr

    © 2025 Timeless News Now. All Rights Reserved.

    Go to mobile version
    This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.