惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

S
Secure Thoughts
Security Latest
Security Latest
Simon Willison's Weblog
Simon Willison's Weblog
O
OpenAI News
GbyAI
GbyAI
L
LINUX DO - 最新话题
A
Arctic Wolf
T
Tor Project blog
G
GRAHAM CLULEY
I
InfoQ
博客园_首页
IT之家
IT之家
The Register - Security
The Register - Security
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
P
Proofpoint News Feed
The GitHub Blog
The GitHub Blog
Blog — PlanetScale
Blog — PlanetScale
N
Netflix TechBlog - Medium
K
Kaspersky official blog
博客园 - 三生石上(FineUI控件)
S
SegmentFault 最新的问题
U
Unit 42
PCI Perspectives
PCI Perspectives
量子位
P
Palo Alto Networks Blog
S
Securelist
T
Troy Hunt's Blog
博客园 - 【当耐特】
Recorded Future
Recorded Future
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
S
Security Affairs
Engineering at Meta
Engineering at Meta
T
The Blog of Author Tim Ferriss
博客园 - 聂微东
罗磊的独立博客
N
News and Events Feed by Topic
人人都是产品经理
人人都是产品经理
B
Blog RSS Feed
NISL@THU
NISL@THU
C
Cisco Blogs
T
Threatpost
有赞技术团队
有赞技术团队
Forbes - Security
Forbes - Security
Hugging Face - Blog
Hugging Face - Blog
Last Week in AI
Last Week in AI
T
The Exploit Database - CXSecurity.com
Cloudbric
Cloudbric
Cyberwarzone
Cyberwarzone
Google DeepMind News
Google DeepMind News
C
Cyber Attacks, Cyber Crime and Cyber Security

hacker Archives - VICE

Cartel Hacker Used Security Cameras, FBI Official’s Phone to Hunt Informants Teen Hacker Stole 60 Million Kids’ Data and Tried to Ransom It for Bitcoin ‘Windows for Gamers’ Rolls Dice With Your Security Hacker Used Internal U-Haul Tool to Look Up Customer Information Microsoft Employees Exposed Own Company’s Internal Logins ‘Imma Make U Dig Ur Own Grave’: He Doxes Ransomware Hackers and Gets Death Threats in Return LAPSUS$: How a Sloppy Extortion Gang Became One of the Most Prolific Hacking Groups Microsoft Investigating Claim of Breach by Extortion Gang Encrochat Lawyers Say Clients Haven’t Had Fair Trials
Hackers Breach Russian Space Research Institute Website
Joseph Cox · 2022-03-03 · via hacker Archives - VICE

Hackers have compromised a website connected to Russia’s Space Research Institute (IKI), which designs and builds scientific instruments for space experiments, according to screenshots and archived data.

The news is part of a flurry of hacktivism activity against Russian entities during Russia’s ongoing invasion of Ukraine. Although the overall impact of such hacks seems limited at the moment, a slew of groups and individuals have claimed compromises of Russian targets over the past several days.

Videos by VICE

“Heyyy Russian [homophobic slur].. Sorry.. Cosmonauts ??.. idk what to say, go get a nice website instead of threatening people with ISS, heard??” a message left on a section of the IKI-related site reads. The mention of the ISS is likely referring to recent comments from Russian authorities around the possibility of pulling out from operation of the International Space Station.

“Also leave Ukraine alone else Anonymous will f*ck you up even more :))” the message added. The hackers that claimed responsibility for the compromise called themselves v0g3lsec on Twitter.

Do you know about any other hacks around the Ukraine invasion? We’d love to hear from you. Using a non-work phone or computer, you can contact Joseph Cox securely on Signal on +44 20 8133 5190, Wickr on josephcox, or email joseph.cox@vice.com.

The message was posted on a particular subdomain on the site, which is offline at the time of writing. Other subdomains, such as one belonging to IKI’s Department of Optical and Physical Research, remain accessible.

V0g3lsec also posted a selection of what it claimed were files taken from the Roscosmos, Russia’s overall Space Agency, which is a different organization to the one they compromised the website of. The files are a combination of handwritten forms, PDFs, and spreadsheets in a mix of Russian and English talking specifically about lunar missions, according to Motherboard’s review of the files.

V0g3lsec told Motherboard in an online chat that “they were using their own file sharing service where the files could be access only by providing a username & password.. all i did was bruteforcing the password while keeping the username as ‘admin’.. as they were using a weak password, it didnt take much time for me to get the password.”

One of the documents discusses the location of potential landing sites for lunar spacecraft on the Moon’s South Pole. Russian authorities have already announced their South Pole sites, however. Motherboard could not immediately verify the legitimacy of the leaked files.

IKI did not immediately respond to a request for comment.

On Tuesday, Twitter users shared a separate unverified claim on Twitter from another alleged hacking group which suggested it had targeted a “Vehicle Monitoring System.” Seemingly in response, Roscosmos head Dmitry Rogozin denied that Russian satellite control centres had been hacked, and told Interfax that “Offlining the satellites of any country is actually a casus belli, a cause for war.”

The new website compromise in no way indicates a hack of space satellites.

Becky Ferreira contributed reporting.

Update: This piece has been updated to include comment from V0g3lsec.

Subscribe to our cybersecurity podcast, CYBER. Subscribe to our new Twitch channel.