{"id":12803,"date":"2018-07-14T10:45:14","date_gmt":"2018-07-14T18:45:14","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2018\/07\/14\/news-6570\/"},"modified":"2018-07-14T10:45:14","modified_gmt":"2018-07-14T18:45:14","slug":"news-6570","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2018\/07\/14\/news-6570\/","title":{"rendered":"Ukraine Blocks a Russian Hack, a Silk Road Arrest, and More Security News This Week"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/media.wired.com\/photos\/5b49239140e30c2ec0dcc99f\/master\/pass\/Server-Attack-Security-938031226.jpg\"\/><\/p>\n<p><strong>Credit to Author: Brian Barrett| Date: Sat, 14 Jul 2018 13:00:00 +0000<\/strong><\/p>\n<p><span class=\"lede\">After four months <\/span>of relative quiet from the special counsel&#x27;s office, Robert Mueller Friday <a href=\"https:\/\/www.wired.com\/story\/mueller-indictment-dnc-hack-russia-fancy-bear\/\">indicted a dozen Russians<\/a> for their role in hacking the DNC, DCCC, and the presidential campaign of Hillary Clinton. It&#x27;s unlikely they&#x27;ll ever actually get arrested, but it&#x27;s safe to say we know a lot more about Russian intelligence than we did last week.<\/p>\n<p>And speaking of Russian intelligence, this week it also became apparent that <a href=\"https:\/\/www.wired.com\/story\/facebook-gave-russian-internet-giant-special-data-extension\/\">Facebook gave Russian internet giant Mail.ru<\/a> a two-week extension on curtailing its invasive data practices back in 2015. Facebook says it hasn&#x27;t found any misuse by Mail.ru, but, you know. Not ideal.<\/p>\n<p class=\"paywall\">There was impactful news stateside as well; <a href=\"https:\/\/www.wired.com\/story\/a-landmark-legal-shift-opens-pandoras-box-for-diy-guns\/\">3-D gun pioneer Cody Wilson won a long-gestating lawsuit<\/a> against the US, meaning he&#x27;s now allowed to distribute his designs freely. Human Rights Watch dug into how the <a href=\"https:\/\/www.wired.com\/story\/us-government-sold-spy-phones-to-suspects\/\">US has distributed so-called spy phones<\/a> to suspects that are either preloaded with surveillance malware, or that have encryption keys that law enforcement hangs onto.<\/p>\n<p class=\"paywall\">Apple, meanwhile, <a href=\"https:\/\/www.wired.com\/story\/apple-china-censorship-bug-iphone-crash-emoji\/\">messed up its China-friendly censorship<\/a> of the Taiwanese flag emoji, crashing at least one iPhone owner&#x27;s phone every time she tapped it or received it in a message. And while we&#x27;re talking Apple, here are <a href=\"https:\/\/www.wired.com\/story\/apple-ios-12-iphone-security\/\">all the ways iOS 12 will make you and your iPhone safer<\/a>. You&#x27;re going to need them, if the second half of 2018 has cybersecurity failures half as bad <a href=\"https:\/\/www.wired.com\/story\/2018-worst-hacks-so-far\/\">as the year has seen so far<\/a>. Let&#x27;s hope none of them will be traced back to China likely having a heads up about Meltdown and Spectre before the US government did.<\/p>\n<p class=\"paywall\">There&#x27;s more! As always, we\u2019ve rounded up all the news we didn\u2019t break or cover in depth this week. Click on the headlines to read the full stories. And stay safe out there.<\/p>\n<p class=\"paywall\">Ukrainian security services this week said they stopped an attempted cyberattack against a chlorine distribution plant. Russia has repeatedly targeted Ukraine, including <a href=\"https:\/\/www.wired.com\/story\/russian-hackers-attack-ukraine\/\">devastating attacks on its power grid<\/a>. In this case, Russian hackers apparently used VPNFilter malware\u2014the same that <a href=\"https:\/\/www.wired.com\/story\/vpnfilter-router-malware-outbreak\/\">infected half a million routers<\/a> in May\u2014to try to disrupt the operations at the plant, which provides clean water throughout the country. Ukraine didn&#x27;t offer many details about how exactly it thwarted the attack, but did say it headed off &quot;possible catastrophic consequences.&quot;<\/p>\n<p class=\"paywall\">To say that selling spyware is a controversial practice is a bit of an understatement, given that enables stalkers and abusers. Which is one reason why, as Motherboard <a href=\"https:\/\/motherboard.vice.com\/en_us\/article\/qvm44m\/hacker-steals-text-messages-android-spyware-company-spyhuman\" target=\"_blank\">notes<\/a>, those companies have of late become popular hacker targets. This time, a company called SpyHuman was breached, including text messages and the details of 440,000,000 calls. The SpyHuman site also has an apparent security flaw that allowed hackers to read a stream of SMS messages from strangers.<\/p>\n<p class=\"paywall\">The dark web! It&#x27;s not just for drugs and body parts. A hacker reportedly tried to sell maintenance documents for the MQ-9 Reaper drone, that they&#x27;d apparently stolen from an Air Force officer. As fun and alarming as what he was selling is how he obtained it. According to cybersecurity firm Recorded Future, the hacker simply went hunting for Netgear routers that hadn&#x27;t patched <a href=\"https:\/\/www.wired.com\/2016\/12\/ton-popular-netgear-routers-exposed-no-easy-fix\/\">a known vulnerability<\/a>. The attempted sale was for $150, a pretty good bargain closely kept military tech.<\/p>\n<p class=\"paywall\">Nearly a month after alleged Silk Road consigliere <a href=\"https:\/\/www.wired.com\/story\/silk-road-roger-clark-extradited\/\">Roger Clark was extradited from Thailand<\/a>, the Justice Department on Friday announced that it has also extradited Gary Davis, whom it says was known as &quot;Libertas&quot; on the notorious dark web marketplace. &quot;Gary Davis allegedly served as an administrator who helped run the Silk Road, a secret online marketplace for illegal drugs, hacking services, and an assortment of other criminal activities,&quot; the DOJ said in a press release announcing the extradition. Davis faces charges conspiracy to distribute narcotics, conspiracy to commit computer intrusion, conspiracy to commit money laundering, all of which come with hefty sentencing guidelines.<\/p>\n<p class=\"related-cne-video-component__dek\">It\u2019s 2017! It\u2019s time to start using an encrypted messaging app. Why? Using end-to-end encryption means that no one can see what you\u2019re sharing back and forth.<\/p>\n<p><a href=\"https:\/\/www.wired.com\/story\/security-roundup-ukraine-blocked-a-russian-hack-of-its-critical-infrastructure\" target=\"bwo\" >https:\/\/www.wired.com\/category\/security\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/media.wired.com\/photos\/5b49239140e30c2ec0dcc99f\/master\/pass\/Server-Attack-Security-938031226.jpg\"\/><\/p>\n<p><strong>Credit to Author: Brian Barrett| Date: Sat, 14 Jul 2018 13:00:00 +0000<\/strong><\/p>\n<p>Drone plans for sale, a Silk Road arrest, and more security news this week. <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10607],"tags":[714],"class_list":["post-12803","post","type-post","status-publish","format-standard","hentry","category-security","category-wired","tag-security"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12803","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=12803"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12803\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=12803"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=12803"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=12803"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}