这个黑客组织声称自己窃取了联邦调查局(FBI)的大量数据(包括官员的工作信息、地址以及社会保障号码),并给该执法机构一周时间,要求其撤销之前对他们的。
The hacking group behind a massive FBI data breach says it will not publish the information it obtained, but cannot guarantee what will happen with the data it already shared. ShinyHunters claimed responsibility for stealing a massive trove of data from the FBI last Tuesday — including officials' job assignments, addresses and social security numbers — and gave the law enforcement agency one week to rescind an unflattering statement about the group.
随着截止日期的临近,ShinyHunters的代表周一向 CBC News 发表声明,表示他们从未打算公开这些敏感信息,并指出媒体和公众“做出了许多错误的假设和疯狂的猜测”。该组织曾参与多起针对大型企业和机构的网络攻击事件。通常情况下,ShinyHunters 会要求支付赎金作为不公开数据的条件,但他们坚称这次并没有这样的意图。
With the deadline approaching, a ShinyHunters representative sent CBC News a statement Monday saying they were never planning to release the sensitive data, adding that the media and the public have "made many false assumptions and wild speculations." The group has been linked to dozens of cyberattacks targeting large companies and institutions. ShinyHunters typically demand ransom payments in exchange for not releasing sensitive data, but they have been adamant that was not their intention in this case.
ShinyHunters 否认曾向 FBI 提出过赎金要求,但承认他们过去的某些行为可能会被误解。声明中写道:“我们多次强调这并非敲诈行为,是因为从一开始我们就决定永远不会公开这些数据——我们从未有过这样的打算。”
Campaign to 'combat disinformation' ShinyHunters denied asking the FBI for a ransom, but acknowledged "past operations" could leave them open to misinterpretation. "The reason why we have stated multiple times that this is not extortion is because since the very beginning we had made our decision that we would never publish this data.
该组织还表示,他们对 FBI 的行动属于一场“打击虚假信息”的行动的一部分。他们解释说:“如果我们是正常地发表这份声明,外界对我们也根本不会如此关注;我们的言论和意图早就被忽视了。但现在,大家都清楚问题的真相以及我们的真实目的了。”
We have never intended to nor have we ever planned to," the statement said in part. The group told CBC News that their actions against the FBI were part of a campaign to "combat disinformation" about their tactics. "If we made this statement normally then this much attention to our words and intentions would've never been this widespread.
此外,ShinyHunters 对 FBI 5月份发布的一份报告提出异议。那份报告称他们曾威胁目标的家人,并威胁要公开受害者的尴尬或敏感照片。
是什么驱使了“ShinyHunters”这个声称对FBI发动黑客攻击的组织呢?
We'd have been ignored and disregarded. However, now everyone knows what the issue is and what we are doing." ShinyHunters took issue with an FBI report from May that said, among other things, the group is known to threaten family members of its targets and threaten to release embarrassing or compromising images of its victims.
在针对“ShinyHunters”的调查中,荷兰警方逮捕了一名安全专家。该组织否认曾使用过任何非法手段,并在上周二发生数据泄露事件后发表声明,要求FBI在一周内删除或“更正”相关报告。
What drives ShinyHunters, the group that claimed responsibility for hacking the FBI? Dutch police arrest security professional in ShinyHunters investigation ShinyHunters denied ever using those tactics and released a statement following last Tuesday's data breach giving the FBI one week to remove or "correct" the report.
“ShinyHunters”向部分记者提供了一份包含5000行数据的电子表格,称这些数据仅为其声称拥有的2至3太字节(TB)数据量中的一小部分。该表格中包含了数千名FBI员工的姓名、地址、电话号码、出生日期、社会安全号码以及紧急联系人信息。
The group shared a 5,000-line spreadsheet of breached FBI data with some journalists, which it said represented only a small piece of its claimed two- to three-terabyte trove. The sample included names, addresses, telephone numbers, dates of birth, social security numbers and emergency contact details for what it claimed were thousands of FBI employees.
当CBC News周一询问“ShinyHunters”是否采取了任何措施来防止这些数据被其他渠道泄露时,该组织的代表表示他们“无法保证”这些数据的安全性,称“因为这超出了我们的控制范围,而且有些记者辜负了我们的信任”。加拿大学校也发生了数据泄露事件——我们对此了解多少呢?
When CBC News asked ShinyHunters on Monday whether they have taken any steps to ensure the shared data isn't leaked by other sources, the representative said they "cannot guarantee" what will happen to those samples, "because that is out of our control and certain journalists violated our trust." There's a data breach at Canadian schools. What do we know?
“不能信任他们,”多伦多网络安全公司Packetlabs的研发主管Ian Lin表示,这令人担忧。他提到,除了记者外,还有许多研究人员声称自己已经获得了这些数据。
May 8 Duration 'Can't trust them,' researcher says Ian Lin, an ethical hacker and head of research and development at Toronto-based cybersecurity company Packetlabs, says that's concerning. He says he's seen "a number of researchers" claiming online to have obtained the data, in addition to journalists.
Lin告诉CBC News:“肯定有人愿意为这些数据支付高昂的价格。”
"There's going to be people that are willing to pay a high price for this data," Lin told CBC News.
此次网络攻击波及了全球多所大学,其中包括加拿大的顶尖学府。Telus公司正在调查这起事件;“ShinyHunters”组织声称对此负责。一位前FBI特工称这些数据是“外国情报机构的宝库”,这一事件引发了人们对FBI员工安全的担忧。
A cyberattack hit universities worldwide, including top Canadian schools. Here's what we know Telus probes cybersecurity incident that 'ShinyHunters' group claims responsibility for The hack, which one former FBI operative called a "foreign intelligence service goldmine," has raised concerns about the safety of the agency's employees.
《纽约时报》周一报道称,联邦调查局(FBI)向全体员工发布了一份内部备忘录,承认在一场网络安全事件中员工的个人信息被盗,并要求员工在家庭和工作场所保持警惕,一旦遇到任何未经请求的联络或威胁,必须立即报告。
New York Times reported Monday that the FBI sent out a staff memo acknowledging employees had personal information stolen in a cybersecurity incident, and instructing them to remain vigilant at home and at work and report any unsolicited contacts or threats.
林表示他对“ShinyHunters”这个黑客组织能否信守承诺并不抱太大希望,因为这类犯罪黑客组织常常会违背自己的承诺,或者多次利用相同的数据作为勒索手段。
Lin says he does not have high hopes ShinyHunters will keep their word, saying it's common for criminal hacking groups to renege on their promises or to use the same set of data as leverage multiple times. "Why they did this, I think was for attention.
“他们这么做,我认为只是为了吸引关注。但你仍然不能相信他们能保护你的数据安全——因为这些数据现在成了他们对抗执法机构和FBI的筹码。他们随时都可能将这些数据用于自己的其他目的,”他说。
But you still can't trust them to keep safe your data. Because now this is leverage over the law enforcement and FBI. And at any moment they could choose to use this data for their own additional purposes," he said.
“FBI和所有执法部门都应该继续保持警惕。这次事件应该能让FBI吸取深刻的教训。”
"The FBI and law enforcement should all still remain vigilant. There should be massive lessons learned from the FBI side."