Get 40% Off
💰 Buffett reveals a $6.7B stake in Chubb. Copy the full portfolio for FREE with InvestingPro’s Stock Ideas toolCopy Portfolio

Microsoft says Austrian firm behind spyware targeting law firms, banks

Published 07/27/2022, 01:36 PM
Updated 07/27/2022, 02:22 PM
© Reuters. FILE PHOTO: A Microsoft logo is seen at a pop-up site at Roosevelt Field in Garden City, New York July 29, 2015. REUTERS/Shannon Stapleton
MSFT
-
GOOGL
-
GOOG
-

By James Pearson

LONDON (Reuters) - Security researchers at Microsoft (NASDAQ:MSFT) have said an Austrian firm was behind a string of digital intrusions at banks, law firms and strategic consultancies in at least three countries.

The firm, DSIRF, developed spyware - malicious software designed to spy on or steal information from a target's device - called "Subzero" which uses so-called Zero-day exploits to access confidential information such as passwords, or logon credentials, Microsoft said in a blog post on Wednesday.

"Observed victims to date include law firms, banks, and strategic consultancies in countries such as Austria, the United Kingdom, and Panama," the post said, without identifying the victims.

Vienna-based DSIRF, or DSR Decision Supporting Information Research Forensic GmbH, did not respond to email and telephone requests for comment.

Zero-day exploits are serious software flaws of great value to both hackers and spies because they work even when software is up to date.

The term comes from the amount of warning users get to patch their machines protectively; a two-day flaw is less dangerous because it emerges two days after a patch is available.

Some cybersecurity firms develop such tools to deploy alongside routine "pentesting", or penetration testing, to test a company's digital defences against malicious attacks.

"Microsoft's interaction with a victim confirmed they had not consented to red teaming and malware deployment, and confirmed it was unauthorised activity," Microsoft Security Unit general manager Cristin Goodwin, who authored the report, told Reuters.

According to a copy of an internal presentation published last year by German news website Netzpolitik, DSIRF advertises Subzero as a "next generation cyber warfare" tool which can take full control of a target's PC, steal passwords, and reveal its location.

3rd party Ad. Not an offer or recommendation by Investing.com. See disclosure here or remove ads .

Another one of the slides in that presentation showed several uses for the spyware, including anti-terrorism and the targeting of human trafficking and child pornography rings.

Microsoft's findings come as the United States and Europe mull tighter rules around vendors of spyware, a fast-growing and under-regulated global industry, and after the Pegasus spyware developed by Israel's NSO was found to have been used by governments to spy on journalists and dissidents.

"This industry appears to be thriving," Shane Huntley, Senior Director of the Threat Analysis Group at Alphabet (NASDAQ:GOOGL), told a U.S. House of Representatives committee on Wednesday.

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.