Connect with us

Breaking

Security experts doubt North Korea hacked Sony

Published

on

The Culver City east gate of Sony Pictures Entertainment in Los Angeles, California (Gerry Boughan / Shutterstock)

The Culver City east gate of Sony Pictures Entertainment in Los Angeles, California (Gerry Boughan / Shutterstock)

Some cybersecurity experts say it is unlikely North Korea was behind the cyberattack that crippled Sony Pictures’ computers and possibly leaked unreleased movies online.

Speculation has been rampant that the hard-line communist state sponsored last week’s hack in anger over the new Sony movie “The Interview,” in which Seth Rogen and James Franco play television journalists assigned by the CIA to assassinate North Korean leader Kim Jong Un.

“State-sponsored attackers don’t create cool names for themselves like `Guardians of Peace’ and promote their activity to the public,” said cybersecurity expert Lucas Zaichkowsky.

He said the details he has seen point instead to hacktivists, who break into computers to make a political point, often one involving the free exchange of information on the Internet. Hacktivists targeted Sony in the past.

“The Interview” comes out on Christmas. Over the summer, North Korea warned that the release of the comedy would be an “act of war that we will never tolerate.” It said the U.S. will face “merciless” retaliation.

FBI spokesman Joshua Campbell would not comment Tuesday on whether North Korea or another country was behind the attack. The FBI is investigating.

It would be unusual if North Korea was behind the breach, said Darren Hayes, director of cybersecurity at Pace University’s computer science school.

“However, there are numerous hackers for hire” in some of the shadowy corners of the Internet, he said. “If Kim Jong Un has developed his own rank-and-file cyberattack unit, with sophisticated capabilities, then we should be very concerned.”

Sony Pictures hasn’t said how the hackers breached its system. But such attacks often start with “phishing” attempts, a compromised website or a malicious insider, said cybersecurity researcher Craig Young at Tripwire, a security software company that works with such businesses as Visa, Mastercard, Walmart and Starbucks.

Given that the hackers were apparently able to obtain unreleased movies as well as personnel records, Social Security numbers, passport photos, technical documents and other material, Young said it is unlikely they used just a single point of access.

“It’s much more likely that attackers were able to exploit a series of vulnerabilities, misconfigurations and poor network architecture to continuously increase their level of access over time,” he said.

A security expert who was part of the South Korean government’s investigation into March 2013 cyberattacks blamed on North Korea said there is not enough evidence to point the finger at the North for the Sony incident even though there are similarities.

The expert, who requested anonymity because he wasn’t authorized by his employer to speak about the matter, said that when South Korean authorities concluded that Pyongyang was behind the attacks that paralyzed servers at financial institutions and media companies, they had not just malicious computer code but also IP addresses and other evidence.

“We cannot rule out the possibility that some other groups have imitated” North Korea’s cyberattacks, he said.

The increased dependence on cloud technology by nearly all major businesses to store their information has made them more vulnerable, said Carson Sweet, CEO of data-protection firm CloudPassage.

Sony workers last week logged on to see a message on their computer screens that said “Hacked by (hash)GOP,” which may be the initials of a group calling itself Guardians of Peace, according to Variety.

Some unreleased Sony movies such as “Still Alice,” “Annie,” “Mr. Turner” and “To Write Love on Her Arms” were later distributed online, along with the still-in-theaters “Fury,” though a direct connection to the hacking hasn’t been confirmed.

Culver City, California-based Sony Pictures said Monday that it is still dealing with the effects of the cyberattack and is working closely with law enforcement officials to investigate.

Sony has brought in forensic experts from the Mandiant division of FireEye, a Silicon Valley cybersecurity company, according to a person familiar with the case who spoke on condition of anonymity because the companies have not yet announced the arrangement.

Mandiant helps companies determine the extent of breaches and repair the damage. It has worked on other high-profile computer break-ins, including the one at Target last year.

Associated Press writers Eric Tucker in Washington, Brandon Bailey in San Francisco and Youkyung Lee in Seoul, South Korea contributed to this story.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Latest

Fumio Kishida Fumio Kishida
News5 hours ago

Japanese premier calls for ‘int’l governance’ to achieve secure AI

ISTANBUL – Acknowledging that evolving high technology has the potential to be a “vital tool to further enrich” the world, Japanese...

News5 hours ago

PH, Japan, US, Aussie defense chiefs call out Chinese actions in SCS

HONOLULU, Hawaii – The respective defense chiefs of the Philippines, Japan, the United States, and Australia have collectively called out China’s...

PBBM PBBM
News18 hours ago

PBBM expects ratification of PH-South Korea FTA deal this year

MANILA — President Ferdinand R. Marcos Jr. is expecting the ratification of the free trade agreement (FTA) between the Philippines...

tattooed man wearing orange shirt inside a jail tattooed man wearing orange shirt inside a jail
News18 hours ago

BuCor: 805 PDLs released in April

MANILA – Prison officials on Friday said 805 persons deprived of liberty (PDLs) were released from various operating prisons and...

News18 hours ago

Consumers using excessive water to get warning from MWSS

MANILA – Consumers with excessive water consumption in Metro Manila and nearby provinces may receive warning notices from the Metropolitan...

Headline18 hours ago

100 caregivers wanted in South Korea

MANILA – The Republic of South Korea is looking for 100 Filipino caregivers, according to the Department of Migrant Workers...

Entertainment1 day ago

Kim heats up the summer as Metro’s latest cover star

Sizzles as Metro Body 2024 headliner Multimedia idol Kim Chiu shares her journey to healthy living and her reaction to...

Health1 day ago

Can this thumb test tell if you are at increased risk of a hidden aortic aneurysm?

All the parts of our bodies share an inherent connectivity. This goes much further than “the foot bone’s connected to...

Dua Lipa Dua Lipa
Entertainment1 day ago

Radical Optimism is Dua Lipa’s philosophy for dealing with life’s chaos – but radical openness is a better approach

  In a teaser video for her third album, Radical Optimism, Dua Lipa explained that every track has that “through-the-struggle-you-are-going-to-make-it”...

Mother Holding Her Baby Mother Holding Her Baby
Health1 day ago

Do we really need to burp babies? Here’s what the research says

Parents are often advised to burp their babies after feeding them. Some people think burping after feeding is important to...

WordPress Ads