I-Generative Data Intelligence

Ukusebenza Kwethonya Kwe-Cyber-Evolving yase-Iran Ukusekela i-Hamas

Usuku:

Ngenkathi impi phakathi kwe-Israel ne-Hamas iqala ngo-Oct. 7, 2023, amaqembu e-inthanethi ase-Iranian ngokushesha avuka ukuze anikeze usekelo ku-Hamas. Laba balingisi abasekelwa i-Iran nabaxhumene ne-Iran bahlanganise imikhankaso enethonya nama-hacks okuphazamisayo, indlela iMicrosoft eyibiza ngokuthi “imisebenzi yethonya elinikwe amandla yi-cyber” - osekuyi-Iran. hamba isu

Nakuba umsebenzi wokuqala ubonakala unamandla futhi ungosomathuba, le mizamo ikhule yaba yinkimbinkimbi futhi yaba nzima njengoba ukungqubuzana kuqhubeka. Izenzo ezithathwe ngamaqembu ngamanye sezisebenzisana kakhulu, futhi ububanzi bale misebenzi bunwetshiwe emhlabeni wonke, kwengeza ukudideka nokungathembeki olwazini oluvela esifundeni.

Ukufeza izinhloso zabo, amaqembu ase-Iranian asebenzisa amaqhinga, amasu, kanye nezinqubo ezine eziyinhloko (TTPs). Ukuthi bayisebenzisa kanjani futhi nini indlela ngayinye kunikeza ukuqonda ngamasu asetshenziswayo. Ukuqonda lo mcabango kungasiza abavikeli bazilungiselele futhi bazivumelanise nokuhlasela okuqhubekayo kolwazi oludukisayo. 

Ama-TTP Ashayela Isu lase-Iran

Indlela ye-Iran yokuba nomthelela ekusebenzeni iklanyelwe ukufeza izinhloso eziningi zokusabisa, ukucekela phansi, nokuziphindiselela, kanye nokubukela phansi ukwesekwa kwamazwe ngamazwe kwe-Israel. Ama-TTP ayo ahlanganisa ukuzenza ongeyena, ukwenza kusebenze izethameli eziqondiwe; imiyalezo nama-imeyili; kanye nokusebenzisa imithombo yezindaba yombuso ukwandisa umthelela wayo. Ukubheka le misebenzi ngayinye kuveza indlela esebenza ngayo ekhonsathini ukuqinisa umkhankaso.

Ukuzenza ongeyena

I-Iran ithuthukise abantu abaningi abakholisayo abasetshenziswa kule misebenzi ye-inthanethi. Esebenzisa lobu bunikazi bamanga, amaqembu asekelwa yi-Iran naseduze asabalalisa izindaba ezidukisayo nezinsongo ezinkundleni zokuxhumana, ama-imeyili, nemibhalo. Lokhu kuzenza ongeyena kuya kukholisa kakhulu ngokuhamba kwesikhathi, okuvumela amaqembu ukuthi akhe izishoshovu mbumbulu kuzo zombili izinhlangothi zomkhakha wezepolitiki. Okungacacile ngokuphelele, nokho, ukuthi ngabe basebenzelana ngqo ne-Hamas noma basebenzela izinhloso zabo ngokuqinile.

Ivula izethameli eziqondisiwe 

Inhloso ephindaphindwayo yamaqembu ase-Irani ukuqasha abantu okuhlosiwe ukusiza ukusabalalisa imilayezo engamanga. Lokhu kuletha iqiniso emkhankasweni, njengoba manje abangani nomakhelwane sebebona abantu ababaziyo bethuthukisa lezi zindaba ezingelona iqiniso.

Ukukhulisa umbhalo kanye ne-imeyili 

Yize inkundla yezokuxhumana ibalulekile ekusabalaliseni inkulumo-ze yamaqembu kanye nolwazi olungamanga, ukuthumela imiyalezo ngobuningi nama-imeyili kuba okubalulekile emizamweni yawo. Iqembu elilodwa lase-Iranian, i-Cotton Sandstorm, lisebenzise le ndlela kusukela ngo-2022, ngokuhamba kwesikhathi lilola amakhono alo. Imilayezo ivamise ukuthatha ikhredithi ngokuhlaselwa ku-inthanethi okungenzeki ngempela noma ixwayise abamukeli ngokungeyikho mayelana nokuhlasela okungokoqobo kwamasosha e-Hamas. Ngaphezu kobunikazi bamanga, okungenani esimweni esisodwa basebenzise i-akhawunti eyonakalisiwe ukuze bathuthukise ubuqiniso bemilayezo.

Ukusebenzisa i-State Media 

Lapho amaqembu axhumene ne-Iran enza izitatimende ezingamanga mayelana nokuhlasela kwe-inthanethi nezibuyekezo zempi, abezindaba abaxhumene ne-Islamic Revolutionary Guard Corps (IRGC) kwesinye isikhathi basakaza futhi benze ihaba lezi zindaba. Ngokuvamile bazocaphuna imithombo yezindaba engekho ukuze basekele isimangalo. Ezinye izitolo ezixhumene ne-Iranian kanye ne-Iran ziyayikhulisa le ndaba, iyenze ibonakale izwakala naphezu kokuntuleka kobufakazi.

I-Microsoft Threat Intelligence ibone okunye ukukhathazeka okuvelayo kusukela kwaqala ukulwa ngo-Okthoba: ukusetshenziswa kobuhlakani bokwenziwa (AI). Izithombe namavidiyo akhiqizwe yi-AI asabalalisa izindaba ezingamanga noma adala izithombe ezingezinhle eziqondise abantu ababalulekile emphakathini. Kulindeleke ukuthi leli qhinga liqhubeke nokukhula ngokubaluleka njengoba imisebenzi yase-Iran enikwe amandla yi-cyber ikhula.

Ukunweba Imizamo Yokufinyelelwa Komhlaba Wonke

Saqala ukubona ukusebenzisana phakathi kwamaqembu axhumene ne-Iran ekuqaleni kwempi. Lokhu kwenza iqembu ngalinye likwazi ukunikela ngamakhono akhona futhi kususa isidingo seqembu elilodwa lokuthuthukisa uhlobo olugcwele lwamathuluzi noma imisebenzi yokuhweba. 

Maphakathi noNovemba, ukusebenza kwe-Iran okunikwe amandla ku-inthanethi okuhlobene nempi kwadlulela ngale kwa-Israyeli emazweni nasezinhlanganweni i-Iran ezibuka njengabasekeli baka-Israyeli, okuhlanganisa i-Bahrain, i-UAE, ne-US. An ukuhlasela ngokumelene nezilawuli ze-logicable logic (PLCs) ezakhiwe yi-Israeli e-Pennsylvania zithathe igunya lamanzi lingaxhunyiwe ku-inthanethi ngoNovemba. NgoDisemba, umuntu iMicrosoft Threat Intelligence ekholelwa ukuthi iyiqembu elixhumene ne-Iran wathi idatha iputshulwe ezinkampanini ezimbili zaseMelika. Leli qembu lithole udumo ngokuhlaselwa kwalezi zinkampani ngokususwa kwedatha ngenyanga edlule.

Amaqembu ase-Iranian asebenzisa izindlela eziningi zokuthonya ezinikwe amandla ku-inthanethi ukuze afeze izinhloso zawo. I-Microsoft Threat Intelligence ibone ukuthi iqembu le-IRGC elibizwa nge-Cotton Sandstorm lisebenzise abantu abaningi abafika ku-inthanethi abayi-10 ukusebenzisa izindlela eziningi engxenyeni yokugcina ka-2023, ngokuvamile lithatha engaphezu kweyodwa yale mizila ngasikhathi sinye:

Izindlela ze-Cyber:

  • Ukwebiwa kwedatha

  • Ukonakala

  • Ukunqatshelwa kokusatshalaliswa kwesevisi

  • Ukudunwa kwe-imeyili

Izindlela zokuthonya:

  • Ukuvuza kwedatha

  • Ama-Sockpuppets (abantu bamanga baku-inthanethi)

  • Ukuzenza izisulu

  • Ukuzenza ongeyena wabalingani

  • Umbhalo kanye ne-imeyili

  • Izindaba eziqanjiwe

Uma nje ukungqubuzana kusaqhubeka, ukusebenza kwe-Iran okunikwe amandla ku-inthanethi ngeke kukhule kuphela, kodwa futhi kuzoba nokubambisana kakhulu nokucekela phansi. Nakuba la maqembu ezoqhubeka nokusebenzisa amathuba, amaqhinga awo aya ngokuya ebalwa futhi ahlanganiswe. Ukuqonda okuphelele kwalezi zindlela, okuqiniswa ubuhlakani obuphelele bokusongela, kunganikeza abavikeli umkhawulo ekuhlonzeni nasekunciphiseni lokhu kuhlasela nomaphi lapho kuvela khona.

— Funda “I-Iran ithuthukisa ukusebenza kwethonya elinikwe amandla yi-cyber ekusekeleni i-Hamas" futhi uthole imininingwane kochwepheshe be-Microsoft Threat Intelligence ku- I-Microsoft Threat Intelligence Podcast.

indawo_img

Latest Intelligence

indawo_img

Xoxa nathi

Sawubona lapho! Ngingakusiza kanjani?