About that "Russia hacked our power grid" thing
So a brand new ScaryRussia! came out today.
This time they hacked our power grid.
Russian hackers are conducting a broad assault on the U.S. electric grid, water processing plants, air transportation facilities and other targets in rolling attacks on some of the country’s most sensitive infrastructure, U.S. government officials said Thursday.
The announcement was the first official confirmation that Russian hackers have taken aim at facilities on which hundreds of millions of Americans depend for basic services. Bloomberg News reported in July that Russian hackers had breached more than a dozen power plants in seven states, an aggressive campaign that has since expanded to dozens of states, according to a person familiar with the investigation.
"Since at least March 2016, Russian government cyber actors" have targeted "government entities and multiple U.S. critical infrastructure sectors," including those of energy, nuclear, water and aviation, according to an alert issued Thursday by the Department of Homeland Security and Federal Bureau of Investigation.
Critical manufacturing sectors and commercial facilities also have been targeted by the ongoing "multi-stage intrusion campaign by Russian government cyber actors."
That is certainly scary sounding, and unlike last time, this one comes from respected sources.
However, much like the FBI report about the DNC hack, there is a lot less than meets the eye.
You see, I actually did something that they don't expect people to do - I looked at the report.
The first thing you'll notice from this report is the complete lack of any evidence that the Russian government, or even someone in Russia, had anything to do with this.
That doesn't mean that the evidence doesn't exist, but it does mean that we are supposed to trust them about this "sophisticated attack group".
And we all know that only a Putin Puppet wouldn't trust the FBI.
DHS analysis identified the threat actors accessing publicly available information hosted by organization-monitored networks during the reconnaissance phase. Based on forensic analysis, DHS assesses the threat actors sought information on network and organizational design and control system capabilities within organizations
Well that certainly sounds sophisticated.
What exactly is involved in this "Stage 1: Reconnaissance".
As an example, the threat actors downloaded a small photo from a publicly accessible human resources page. The image, when expanded, was a high-resolution photo that displayed control systems equipment models and status information in the background
Oh, yes. Very sophisticated reconnaissance!
Who would have thought about looking at a public web site?
"Stage 2: Weaponization" is next. Sounds scary doesn't it?
Throughout the spear-phishing campaign, the threat actors used email attachments to leverage legitimate Microsoft Office functions for retrieving a document from a remote server using the Server Message Block (SMB) protocol.
Seriously! Spear-phishing again?
And not even recent spear-phishing! Hackers stopped using loaded word documents a decade ago because commercial anti-virus software usually picked it up.
And what moron falls for that anymore?
"Stage 3: Delivery" this overly dramatic theme is getting tiresome.
Email messages included references to common industrial control equipment and protocols. The emails used malicious Microsoft Word attachments that appeared to be legitimate résumés or curricula vitae (CVs) for industrial control systems personnel, and invitations and policy documents to entice the user to open the attachment.
The obvious problem here is a lack of anti-virus software on email servers, and an idiotic staff.
"Stage 4: Exploitation" I'm starting to see a pattern.
Emails contained successive redirects to http://bit[.]ly/2m0x8IH link, which redirected to http://tinyurl[.]com/h3sdqck link, which redirected to the ultimate destination of http://imageliners[.]com/nitel. The imageliner[.]com website contained input fields for an email address and password mimicking a login page for a website
All this report is, is a "How to spear-phish" guide.
Interestingly, the report even tells you what files and registry keys to modify, and even the commands to use.
It's "how to hack for beginners".
Was this a wise thing to post on the internet?
This script contained hard-coded values for the group name “administrator” in Spanish, Italian, German, French, and English.
You know what's missing from this list? Russian.
the threat actors dropped and executed open source and free tools such as Hydra, SecretsDump, and CrackMapExec. The naming convention and download locations suggest that these files were downloaded directly from publically available locations such as GitHub.
You know what that sounds like? Ordinary criminal hackers.
Literally everything about this hack is ordinary.
The only IP addresses listed in this report are:
91.183.104.150, and that's in Belgium.
62.8.193.206, which is in Germany.
5.153.58.45, in Netherlands.
Now I'm not saying that there wasn't a hack.
There most likely was.
What I am saying is a) there is absolutely no evidence given that this originated from Russia, and b) this is such an ordinary hack that teenagers could do it.
Comments
One last thing
I have a friend who does tech support for water utilities.
Those companies generally don't use Microsoft Windows as control equipment.
They use Unix and VMS, and they often aren't hooked up to the internet anyway.
So this hack was no danger.
The fact that there were no Russian IP's or Russian words
proves that this was a Russian operation. They are doing this in an attempt to confuse the American untelligence community.
Russians are sneaky
We obviously are going to have to tighten up our security.
You missed the whole point! Russia, Russia, Russia,...
chuck utzman
TULSI 2020
Russia Russia Russia...
Indeed.
I opened up my news feed this morning and every third story was a Russia! Article, all designed to inspire fear.
They really are trying their damndest to ramp up another cold war. (At least I hope their goal is a cold one)
I guess they realized Americans have largely become weary of all our hot ones but just don't want to let go of that juicy revenue that a fearful population will provide...
I suspect we are well and truly fucked if we don't get legalized corporate bribery out of our politics soon.
"I used to vote Republican & Democrat, I also used to shit my pants. Eventually I got smart enough to stop doing both things." -Me
“...American intelligence community.” Hahaha!
That’s all you need to define the word oxymoron.
Accent on the ‘moron’
EDIT: typo
EDIT EDIT: untelligence/intelligence (I was probably closer to the truth with the typo.
I'm tired of this back-slapping "Isn't humanity neat?" bullshit. We're a virus with shoes, okay? That's all we are. - Bill Hicks
Politics is the entertainment branch of industry. - Frank Zappa
A Simple Solution
Trump's New and Improved CIA Director can hire some teenagers to run America's Elite Cyber Security Counterforce Task Force. Or if the CIA's budget was too tight she could cyber-torture the Non Russian Administrators.
"They'll say we're disturbing the peace, but there is no peace. What really bothers them is that we are disturbing the war." Howard Zinn
maybe what we are missing
expanded definition of "Russian"
So now Bernie bros are "Russians"
Actually anyone who doesn't want immediate and total conflict
The world is now split into Russians and neocons.
"Obama promised transparency, but Assange is the one who brought it."
I hear Jared’s not too busy since he got his
access to secret info taken away. And that Palestinian/Israeli thing peace thing hasn’t gone according to plan.
I'm tired of this back-slapping "Isn't humanity neat?" bullshit. We're a virus with shoes, okay? That's all we are. - Bill Hicks
Politics is the entertainment branch of industry. - Frank Zappa
Jared...
Jared was probably making some progress. That's why Israel got his security clearance yanked. Can't have the Palestinians treated like human beings, now can we?
But gjohnsit,
even if there are hundreds of thousands of Americans who can read this as you do and see that it is absurd and that it doesn't involve "the" Russians or any Russians, can it be shown to be enough for our ignorant homeland security personnel to launch a nuclear attack because it's a cyberattack? And as they describe it, cobbled together to involve crucial infrastructure, can they make the case that they made the mistake of seeing it as a major attack on our ability to survive and therefore worthy of a nuclear attack on Russia, even if the IP address was wrong?
Well intentioned but less informed than the teenagers you refer to, can they still claim they understood it to be a major cyberattack and launch? That's the question this raises for me. They don't have to be accurate, they don't have to be geniuses, they don't even have to be well-informed or even knowledgeable about what they are doing. They just have to be fired up and ready to kill.
This report from Bloomberg tells us that the Deep State
believes a majority of Americans are as dumb as a sack of hammers and if they throw out enough nails, the stupid fucks will be willing to start hammering at them.
What really concerns me is that I think they are correct in their assessment.
Found proof. Photo of Russian bear hacking power grid.
You say
he is a Russian bear. So I saw him as such. But then I looked him up, and it turns out he is a California black bear and from Yosemite California. No tourist. No tourist from Russia. Just a native Californian. So there.
Aha! The devious Russians have fooled you.
Russian bears were originally brought from Russia in 1812 by Ivan Aleksandrovich Kuskov. When he settled in California he interbred the smart Russian bear with the common American black bear to produce a superior breed that is highly intelligent and capable of learning to hack the US power system.
OMG! Sleeper bears!
Quick, check out your children's subversive and deceptively named Teddy bear! (Was an earlier American President really in on this fiendish plot?)
Psychopathy is not a political position, whether labeled 'conservatism', 'centrism' or 'left'.
A tin labeled 'coffee' may be a can of worms or pathology identified by a lack of empathy/willingness to harm others to achieve personal desires.
CB's reply is example of Russia-gater "counter arguments".
I once asked on TOP how did the Russians know to target the Rust Belt. Answer: Putin has the best super computers in the world. Nothing more. I asked why would Putin kill a spy they leg go over eight years ago? Answer: maybe to see the tactics of the hazmat team. Just say any bullshit.
Ha good one.
Why would someone need to leak the report?
I mean if it's this serious, shouldn't the director of homeland security be giving a press conference on this?
Sheesh, how much longer until it's Putin has WMDs!?
Hey, maybe if they do say that then people would wake the Hell up!
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
I know, right!
The thing that all the #Russiagaters seem to have lost track of is that Russia Actually Has Weapons of Mass Destruction -- Lots and Lots of them.
A lot of wanderers in the U.S. political desert recognize that all the duopoly has to offer is a choice of mirages. Come, let us trudge towards empty expanse of sand #1, littered with the bleached bones of Deaniacs and Hope and Changers.
-- lotlizard
Great take down. Everything nefarious is Russian.
Yah, funny. You read the original. It is surprising how many people yelling conspiracy have never read the original quoted material. I think the logic sorta follows this
Hacking is nefarious.
Russians are nefarious.
Therefore, the Russians are hackers.
Russian owns anything nefarious. So something nefarious happened at some power plant, therefore it was the Russians.
Speaking of Gish Gallop and bigotry
Consortiumnews has an informative article by Natylie Baldwin.
Did you comment on ToP the other day?
I thought I saw a comment from you on a Russia Russia diary.
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
Now and then I do.
I should just stop going to the site other than a quick look at the diaries to get a sense what the democratic establishment is pushing. I have noted that the "front pagers" are basically Russia or "Isn't Trump Bad".
You WILL get bojo'd for Thought Crime
at DKos if you stray too far from the party line.
It used to be a good site for lively discussion before Moosetits took up sheep farming. Last time I visited it looked just like this:
[video:https://www.youtube.com/watch?v=QcE5aDTszrY]
Yah, when I joined very wide open discussions.
Except for the fact that the sheep
In the video are kind of endearing. At TOP, not so much.
P.S. I love that video!
There is always Music amongst the trees in the Garden, but our hearts must be very quiet to hear it. ~ Minnie Aumonier
That is your comment I read over there
a few others who post here have been trying to put some sanity in the diaries, but they are getting nowhere with it.
I noted that the nerve agent was made in Uzbekistan and that Americans were helping the Uzbeks in cleaning out their nerve gas storage
Not only this, but the chemical weapons organization submitted a report that Russia had given up all of its chemical weapons and the US signed off on the report. So it Russia gave up its chemical weapons decades ago and there has been no clear cut evidence of both the poison that was used and that Putin himself did the deed, then how can any person with a thinking brain buy this snark?
BTW, another ex Russian who had laundered over a hundred million dollars and was an expat in UK was murdered over the weekend. ToP is saying that Putin is getting to big for his britches and someone needs to take him down and, and, and ......
No proof of anything is needed over there for them to blame Putin for what happens. It's like night of the living zombies over there anymore and it is really disgusting that an evidenced based website doesn't require it anymore.
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
I say this with the utmost affection
For fellow c99 posters, but what a precious waste of time.
It's like the proverbial 7 black drops of ink in a can of white paint. Invisible Man indeed.
There is always Music amongst the trees in the Garden, but our hearts must be very quiet to hear it. ~ Minnie Aumonier
I disagree
Trying to talk some sanity to people who have lost theirs is worth trying. A few of the others that tried this had a few rec's and one person said "finally some sense here which seems to have fled this place."
It's always a good idea to not just let the next WMDs run unabated.
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
I think that depends on the individual
I personally avoid engaging in a place that seeks to destroy reason and takes malicious pleasure in penalizing you for doing so.
How efficacious it is for the unarmed few who chose to swim against that tidal wave of virulent flesh eating bacteria remains to be seen.
There is always Music amongst the trees in the Garden, but our hearts must be very quiet to hear it. ~ Minnie Aumonier
No proof required is right.
https://medium.com/@caityjohnstone/what-happens-when-a-russiagate-skepti...
Aron Mate of Real News interviews Luke Harding about this book on Russian meddling, etc. When Mate asks for proof of some assertion, Harding replies basically "my proof is that Putin is bad". Mate says sure okay Putin is bad, but what proof do you have. Harding had no proof other than asserting all the accusations must be true because Putin is a bad person.
Wow.
What a wonderful interview of Harding by Aaron Mate. Thank you for linking it.
One of the things about Harding's style of speaking is his constant use of the words, "kind of," which are recognized as qualifiers (in tentative speech) in order to weaken one's message. In other words, if you say Putin owns Trump, that's different from saying, Putin kind of owns Trump. But if you use it constantly, as Harding does in this interview, you are saying, "nothing I am saying in this interview is actually based on facts or evidence."
In Harding's case, he is speaking to defend his book which is entitled, "Collusion," but he doesn't take advantage of the opportunity to provide evidence, and the constant refrain, "kind of," only makes his assertions, such that everybody knows or that if you were in Russia you would know, less meaningful. Here is a part that Caitlin Johnstone provided in text:
Aron did a great job showing how that guy was wrong
on just about everything he wrote. This type of information should be posted on ToP and if someone gets banned for it then it's against site rules. Not that it would stop them, but maybe it'd open some minds there.
Thanks for posting it.
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
Deliciously uncomfortable to watch
My favorite part of the interview was at the end:
After that Harding just logged off and left Mate to wrap up the interview by himself.
Caitlin Johnstone also made a good point about how Gish gallop works when she pointed out the way in which Harding asserted that elections in France and Germany were also hacked:
I agree with Johnstone, I'd be shocked if we see another interview between those who are pushing Russia-Gate narrative and someone with the credentials of Mate who asks the most obvious Journalism 101 question: Where's the evidence?
There is always Music amongst the trees in the Garden, but our hearts must be very quiet to hear it. ~ Minnie Aumonier
We are soon to be
prisoners without bars.
"The “jumpers” reminded us that one day we will all face only one choice and that is how we will die, not how we will live." Chris Hedges on 9/11
you all hacked my brain
and write stuff I can't understand. Don't think all your funny stuff will deceive me in believing you are the good guys? Nah, nah.
Besides did you know that Putin's children went to the German school in Moscow and that Merkel recently said she got some real good beer and smoked fish when she last time had a Kaffeeklatsch with Putin? Yummy.
So, isn't there a German-Russian conspiracy to just blow off your brains once and for all?
I think some folks in the MIT labs are successfully developing humans with no brains. That's a great counter-intelligence tactic (or strategy), so there is nothing to hack anymore left over for them German-Russian conspiracy love-dolls. See, brainless is the way to be victorious.
You won, I am hacked.
https://www.euronews.com/live
I just love it when people ACTUALLY DO
their homework. Unlike 99.9% of the MSM. Would love to see this posted over at TOP. Better yet, would love to see it get in front of Rachel Maddow's face.
"Without the right to offend, freedom of speech does not exist." Taslima Nasrin
If this were posted at TOP...
It would quickly be deleted and the author banned. They don't like dissenting thinkers who use common sense and logic to disprove their pet theories.
He was already banned for writing truthful diaries there
I read it the other night and it was a damn fine diary with you know, evidence to back him up, yet the rubes there refused to bother to read the diary and links provided or believe it what he wrote. Even the ones who agreed with him got taken down.
Truth doesn't matter there anymore if it gets in the way of their thought processes.
There were problems with running a campaign of Joy while committing a genocide? Who could have guessed?
They have thought processes?
I thought it was mostly like eating Cheetos for the brain.
There is always Music amongst the trees in the Garden, but our hearts must be very quiet to hear it. ~ Minnie Aumonier
Can't wait to see
What Evil Russia Committed Against the Free World is next up.
These people have no shame.
"You can't just leave those who created the problem in charge of the solution."---Tyree Scott