The same Chinese governance - linked hackers who place the effort of both 2020 presidential candidatesearlier this yearhave been strain to trick substance abuser into installing malware by posing as the antivirus supplier McAfee and using otherwise licit on-line services like GitHub and Dropbox .
On Friday , Huntley said that one of APT 31 ’s late hacking techniques involved email links that would download malicious code hosted on the open - source platform GitHub . The malware was construct using the Python figure language and “ would let the attacker to upload and download files as well as execute arbitrary bidding ” through Dropbox ’s cloud storage service , he wrote .
“ Every malicious piece of this attack was hosted on licit service , making it firmly for defenders to trust on web signal for detection , ” Huntley say .

Photo: Kenzo Tribouillard (Getty Images)
Another phishing scam visit the group impersonate McAfee , a legitimate and popular antivirus software system supplier , as a frontal to quietly slip malicious codification onto the target ’s machine .
“ The targets would be prompted to install a legitimate version of McAfee anti - virus software from GitHub , while malware was simultaneously mutely establish to the system . ”
“ U.S governance agencies have warned about unlike threat actors , and we ’ve worked nearly with those agencies and others in the tech industry to portion out lead and intelligence service about what we ’re seeing across the ecosystem , ” Huntley say .

He contribute that in the event that Google ’s anti - phishing safeguards find a government - stake blast , the company sends the intended dupe a word of advice explaining that a foreign administration may be aim them .
Google is n’t the only technical school giant seeing an increase in cyberattacks ahead of the election . In September , Microsoft report that Chinese , Russian , and Iranian government - second hackers hadlaunched likewise stillborn attackson high - visibility someone relate with both the Trump and Biden campaigns . Last calendar week , the FBI and U.S. Cybersecurity and Infrastructure Security Agency alsoreleased detailsabout campaigns by foreign government - linked hacker to exploit federal , nation , and local governance networks .
BidenCybersecurityGoogleJoe BidenMicrosoftTrump

Daily Newsletter
Get the skilful tech , science , and acculturation tidings in your inbox daily .
News from the future , delivered to your present .
You May Also Like













![]()