The Complete Mystery of Madeleine McCann™
Welcome to 'The Complete Mystery of Madeleine McCann' forum 🌹

Please log in, or register to view all the forums, then settle in and help us get to the truth about what really happened to Madeleine Beth McCann.

Please note that when you register your username must be different from your email address!

Parliament hit by cyber attack as hackers attempt to access MPs' email accounts

View previous topic View next topic Go down

Parliament hit by cyber attack as hackers attempt to access MPs' email accounts

Post by Keitei on 24.06.17 19:21

Parliament hit by cyber attack as hackers attempt to access MPs' email accounts

Hackers launch ‘sustained and determined attack’ on all parliamentary user accounts 

Lizzie Dearden @lizziedearden 4 hours ago 78 comments

Hackers have targeted Parliament’s email system in an attempt to access the accounts of hundreds of MPs, Lords, aides and staff.

Security services are to shut down access for anyone not in Westminster as part of efforts to secure the network.

“The Houses of Parliament have discovered unauthorised attempts to access parliamentary user accounts,” a parliamentary spokesperson told The Independent.

“We are continuing to investigate this incident and take further measures to secure the computer network, liaising with the National Cyber Security Centre (NCSC). 

“We have systems in place to protect member and staff accounts and are taking the necessary steps to protect our systems.”

MPs were told of the cyber attack on Friday night and said they were unable to access their emails the following morning.

An email sent to everyone using a parliamentary address said “unusual activity and evidence of an attempted cyber attack” had been discovered.

“Closer investigation by our team confirmed that hackers were carrying out a sustained and determined attack on all parliamentary user accounts in attempt to identify weak passwords,” said a message seen by the Huffington Post.

“These attempts specifically were trying to gain access to users’ emails.”

It said changes had been made to the system to prevent the attackers gaining access, shutting down access to emails and unspecified services via mobile phone, but access to systems on the Westminster state itself was unaffected. 

Oz Alashe, a former special forces Lieutenant Colonel and chief executive officer of cyber security platform CybSafe, said compromising email accounts can merely be the “first step” in a wider attack.

“Email accounts represent a rich source of information for hackers, so compromising these accounts would often be the first step in a sophisticated cyber attack,” he added. 

“With the disarray caused by the recent elections, and the resultant changes in parliamentary staff, it would be a prime time to use social engineering to obtain email passwords.

“Fortunately, it appears this attack has been detected early and locked down. Let’s hope no sensitive information has been lost to hackers.”

Mr Alashe told The Independent that the most common method for this type of attack was “brute force”, where considerable processing power is directed to running through as many possible combinations of passwords as possible in a short space of time.

“If it’s simply an attempt to hit a parliamentary domain and gain passwords it could be an individual, but equally it could be a state – it’s too early to tell,” he added.

The attempt came days after reports that Russian hackers had put passwords belonging to senior ministers, ambassadors and senior police officers up for sale online.

Two lists of stolen data included the log-in details of 1,000 British MPs and parliamentary staff, 7,000 police employees and more than 1,000 Foreign Office officials, The Times reported.

The information was believed to have been stolen from LinkedIn, MySpace and other smaller sites, with many passwords “easy to guess”, incorporating memorable numbers and relatives’ names.

Mr Alashe said it was too early to say whether the two incidents were directly connected but that they were part of the same issue.

He said criminal hackers “harvest information” including passwords, addresses and credit card numbers before selling them online, where they can be picked up and used by other actors, including foreign states.

“Many people use the same passwords for different accounts – it’s not unusual,” he added.

“That’s why so many attackers are after these things – once they compromise one account they can sell the password to be used to access others.”

Official guidance from the NCSC states that hackers use software that automatically predicts minor variations to passwords, including the substitution of letters for numbers, warning not to worsen vulnerability by using the same password for accounts at work and home.

The use of longer passwords including a mix of letters, symbols and numbers helps guard against brute force attacks.

Mr Alashe said 75 per cent known breaches take place “because of people rather than technology”, warning: “It doesn’t really matter how good systems are if we as people are making it easy for hackers. 

“One of the most important things is for organisations to educate people on how they can be safe online.

“I don’t think the threat is getting worse, but attacks are happening more frequently. 

“But that’s partly because so many people are much more connected digitally - there are so many more opportunities for people to be hacked.”

Members of the Commons and Lords were giving out alternative contact details on Saturday as work continued to secure parliamentary systems.

Henry Smith, the Conservative MP for Crawley, tweeted: “Sorry no parliamentary email access today – we're under cyber attack from Kim Jong-un, Putin or a kid in his mom's basement or something.”

Vladimir Putin has persistently denied allegations of state-sponsored Russian hacking and interference in foreign elections.

Donald Trump has refuted findings by US intelligence agencies that the Kremlin helped his election campaign with attacks on Ms Clinton, claiming the Democratic National Campaign hack could have been carried out by Russia, China or “somebody sitting on their bed who weighs 400 pounds”.

Fears of a cyber attack on Parliament increased following the successful hacks targeting emails related to Hillary Clinton and Emmanuel Macron’s presidential campaigns.

The UK was also rocked by the WannaCry ransomware attack that hit computers running outdated versions of Microsoft Windows around the world last month.

Infecting more than 230,000 computers in 150 countries, it had a devastating effect on the NHS as computers were left displaying only a page demanding bitcoin payments to decrypt files.

http://www.independent.co.uk/news/uk/home-news/parliament-cyber-attack-mp-email-accounts-houses-commons-politicians-security-police-a7806456.html

____________________
Those who play games do not see as clearly as those who watch. 
avatar
Keitei
Moderator/Investigator

Posts : 921
Reputation : 260
Join date : 2015-10-12

View user profile

Back to top Go down

Re: Parliament hit by cyber attack as hackers attempt to access MPs' email accounts

Post by BlueBag on 25.06.17 7:03

Brilliant (or not).

Now we have an excuse to get leaks about Brexit.

Brilliant (or not).
avatar
BlueBag

Posts : 4403
Reputation : 2222
Join date : 2014-06-06

View user profile

Back to top Go down

Re: Parliament hit by cyber attack as hackers attempt to access MPs' email accounts

Post by Mirage on 25.06.17 8:44

I have always though that if the truth ever came out about this case it would come suddenly from left field. And wouldn't it be a curious thing if the globally badmouthed Russians turned out to be the purveyors of truth and justice for MBM?

Mirage

Posts : 1904
Reputation : 757
Join date : 2013-02-01

View user profile

Back to top Go down

View previous topic View next topic Back to top


 
Permissions in this forum:
You cannot reply to topics in this forum