Android Century
  • Home
  • Android Zone
    • Android Apps
    • Android Games
    • Apps APk Files
    • Games Apk Files
    • Apps Hack Tricks
  • Reviews
  • Fantasy Zone
    • Entertainment
    • Quotes and Status
    • Life Style
    • Home Made Tips
    • Hair Care
    • Skin Care
    • Fantasy Tips
  • Tricks
    • Free Recharge
    • Free Internet
    • shopping Cashback
    • Recharge Cashback
  • Tech
  • Mobiles
  • Gadgets
  • News
  • How To's
  • Software
Breaking
Loading...

Featured post

How to Take Great Photos With Apple's iPhone X

Recent Posts

Labels

  • Android Apk Files
  • Android Apps
  • Android Games
  • Apps Apk Files
  • Entertainment
  • Fantasy Tips
  • Gadgets
  • Hair Care
  • HomeMade Tips
  • How To's
  • News
  • Quotes
  • Quotes & Status
  • Recharge Cashback
  • Recharge Promo Codes
  • Shopping Cashback
  • Technology
  • skin care
Home / News / How they did it Inside the Russian hack of Yahoo

How they did it Inside the Russian hack of Yahoo

Latest Govt. Jobs 16:28:00 News Edit
One mistaken click. That's all it took for hackers aligned with the Russian state security service to gain access to Yahoo's network and potentially the email messages and private information of as many as 500 million people.
The U.S. Federal Bureau of Investigation has been investigating the intrusion for two years, but it was only in late 2016 that the full scale of the hack became apparent. On Wednesday, the FBI indicted four people for the attack, two of whom are Russian spies.
Here's how the FBI says they did it:
The hack began with a spear-phishing email sent in early 2014 to a Yahoo company employee. It's unclear how many employees were targeted and how many emails were sent, but it only takes one person to click on a link, and it happened.
Once Aleksey Belan, a Latvian hacker hired by the Russian agents, started poking around the network, he looked for two prizes: Yahoo's user database and the Account Management Tool, which is used to edit the database. He soon found them.
So he wouldn't lose access, he installed a backdoor on a Yahoo server that would allow him access, and in December he stole a backup copy of Yahoo's user database and transferred it to his own computer.
The database contained names, phone numbers, password challenge questions and answers and, crucially, password recovery emails and a cryptographic value unique to each account.
It's those last two items that enabled Belan and fellow commercial hacker Karim Baratov to target and access the accounts of certain users requested by the Russian agents, Dmitry Dokuchaev and Igor Sushchin.
170315 fbi 2Martyn Williams
A U.S. District Court endictment for four people accused of hacking Yahoo is seen against FBI wanted posters.
The account management tool didn't allow for simple text searches of user names, so instead the hackers turned to recovery email addresses. Sometimes they were able to identify targets based on their recovery email address, and sometimes the email domain tipped them off that the account holder worked at a company or organization of interest.
Once the accounts had been identified, the hackers were able to use stolen cryptographic values called "nonces" to generate access cookies through a script that had been installed on a Yahoo server. Those cookies, which were generated many times throughout 2015 and 2016, gave the hackers free access to a user email account without the need for a password.
Throughout the process, Belan and his colleague were clinical in their approach. Of the roughly 500 million accounts they potentially had access to, they only generated cookies for about 6,500 accounts.
The hacked users included an assistant to the deputy chairman of Russia, an officer in Russia's Ministry of Internal Affairs and a trainer working in Russia's Ministry of Sports. Others belonged to Russian journalists, officials of states bordering Russia, U.S. government workers, an employee of a Swiss Bitcoin wallet company and a U.S. airline worker.
So clinical was the attack that when Yahoo first approached the FBI in 2014, it went with worries that 26 accounts had been targeted by hackers. It wasn't until late August 2016 that the full scale of the breach began to become apparent and the FBI investigation significantly stepped up.
In December 2016, Yahoo went public with details of the breach and advised hundreds of millions of users to change their passwords.
Share on Facebook Share on Twitter Share on Google Plus

RELATED POSTS


Alcatel 1x with Android Oreo (Go ed...

Huawei P20, P20 Pro, P20 Lite price

Xiaomi Redmi 5 with 18:9 display
How they did it Inside the Russian hack of Yahoo How they did it Inside the Russian hack of Yahoo Reviewed by Latest Govt. Jobs on 16:28:00 Rating: 5

0 comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments ( Atom )

Search This Blog

TEST BOOK FOR GOVT ENTRANCE TEST

TEST BOOK FOR GOVT ENTRANCE TEST
Find All Latest book for preparation of SSC,RAILWAYBANK PO,RBI,BANK CLERK,GATE ME,GATE CE are available here in less prices, to check out the books click here

Translate

  • Popular Post
  • Random posts
  • Category

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & Earn Offer:  Hey Guys! Today I make an article about Teen Patti Referral ...
  • Taotronics TT-BH22 Headphones Review
    We make it a addiction to now not look up pricing of a product sooner than reviewing and if ...
  • Reliance Jio to offer sharp tariff discounts for customers signing up by March-end
    Reliance Industries' Jio unit will charge a tariff for its services from April, but will offer ...
  • Pentagon strongly condemns North Korea missile test
    The Pentagon on Monday strongly condemned North Korea’s latest missile test, adding that the ...
  • Fitbit Zip 2017 review
    Fitbit PROS: Clever, accurate tracking Expandable online service Integration with 3rd ...
  • Bank wallets growing faster than e-wallets
    In the  bank  versus  e-wallets  sweepstakes,  lenders  have now gained lost ground. As of ...

Random Posts

  • Udio App – Get 15% Cashback On Recharge And Bills Payment Of Rs 200
    Udio App – Get 15% Cashback On Recharge And Bills Payment Of Rs 200
    21.04.2016 - 0 Comments
    Udio App Offer – Get 15% cashback on recharge and utility bills payment of Rs 200 or more. Udio is the same…
  • Angry Birds-dependent games maker Rovio swings to annual profit 2017
    Angry Birds-dependent games maker Rovio swings to annual profit 2017
    01.03.2017 - 0 Comments
    Finnish mobile games and animation studio Rovio Entertainment swung to an annual profit…
  • Apple to start India manufacturing in coming months with iPhone SE
    Apple to start India manufacturing in coming months with iPhone SE
    17.02.2017 - 0 Comments
    Apple Inc will in the coming months start assembling its lower-priced iPhone SE models at…
  • Huawei income up 32% however profit stays nearly flat
    Huawei income up 32% however profit stays nearly flat
    31.03.2017 - 0 Comments
    Huawei, the world's biggest maker of telecoms equipment, said Friday its 2016 sales rose 32% from a year…
  • QUOTES & STATUS
    QUOTES & STATUS
    13.02.2016 - 0 Comments
    Some people hurt by words ,some by action & some by silence ...But the biggest hurt I believe is…

Labels

Android Apk Files Android Apps Android Games Apps Apk Files Apps Hack Tricks Entertainment Free Internet Freecharge Gadgets Games Apk Files How To's Laptops Guide Mobiles Reviews Technology Viral's android zone free recharge

Entertainment

Tricks

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • Taotronics TT-BH22 Headphones Review
    We make it a ...
  • Hands-on with the home windows 10 Creators update for the Xbox One: Beam recreation streaming arrives
    The Windows ...
  • Pentagon strongly condemns North Korea missile test
    The Pentagon on ...
  • Reliance Jio to offer sharp tariff discounts for customers signing up by March-end
    Reliance Industries' Jio unit will charge a tariff for its services from April, but will offer ...
  • Fitbit Zip 2017 review
    Fitbit PROS ...
  • Bank wallets growing faster than e-wallets
    In the  bank ...

Random Posts

  • 4 reasons to kick off the New Year with an Office 365 Subscription
    4 reasons to kick off the New Year with an Office 365 Subscription
    11.02.2017 - 0 Comments
    The holidays are over and the new year is upon us. It’s a great time to get your productivity needs in…
  • Whats App messenger APK file
    Whats App messenger APK file
    17.02.2016 - 0 Comments
    WhatsApp Messenger is a smartphone messenger available for Android and other smartphones. WhatsApp uses…
  • Nokia's performance in Q4
    Nokia's performance in Q4
    16.02.2018 - 0 Comments
    Finish company HMD Global, which manufactures Nokia-branded smartphones, seems to be giving tough…
  • Google finally lets you shop your parking spot in contemporary Maps beta
    Google finally lets you shop your parking spot in contemporary Maps beta
    24.03.2017 - 0 Comments
    Google Maps is finally starting to understand the headache that is parking. Earlier this year it added…
  • nubia rolls out panic button for users' safety
    nubia rolls out panic button for users' safety
    16.02.2017 - 0 Comments
    As per the Indian governments directive last year, Chinese smartphone maker nubia has…

Most Popular

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J ...
  • Top 5 Best SmartPhones under 7000 Rs (March 2017)
    Looking for the ...
  • Apple, IBM, Cisco are huge because of Indians, do not deny them H-1B visa: RBI Governor Urjit Patel
    ...
  • SAMSUNG GALAXY J7 (2016) Specifications
    SAMSUNG GALAXY J ...
  • BlackBerry Teases Marshmallow Beta Testing for Priv by Next Week
    Blackberry ...
  • LG Q6 Review
    LG Q6 Review
    2017 is ...

Contact Form

Name

Email *

Message *

Offers Zone

Created By Android Century Distributed by Android Century
  • Home
  • About us
  • Contact us
  • Privacy policy
  • Terms of use
  • Advertise here
Subscribe Via Email Subscribe To Android Century By Email And Get Free Updates. ;-)


Your email address is safe with us!