One of the most exciting parts of IR work is monitoring threat actors while they are still active. This report describes one of the actors that we observed live in action. #operationwocao https://t.co/EeueynLIwr
— Maarten van Dantzig (@MaartenVDantzig) December 19, 2019
Fox-IT has put a very interesting report on APT20, a group that has been quiet for years, as @frankgr tells Bloomberg. One interesting mode of operation is how hackers circumvented 2FA (token likely generated on the SAME device)https://t.co/TWdPiFsvS0https://t.co/7UYhugJQjV
— hͭaͣᶰkͬaͥnͮᵉʳᵈᶤ (@hatr) December 19, 2019
Dutch cyber security researchers believe state actor was able to recreate 2FA soft tokens (RSA) to bypass multi factor authentication without fobhttps://t.co/fWGRbtx7y5
— David Whelan (@davidpwhelan) December 23, 2019
Interesting opsec mistake?:
— Brian in Pittsburgh (@arekfurt) December 19, 2019
"Possibly frustrated by the fact of losing access to the webshells, the last seen 'command' executed
by the actor is 'wocao'. According to a number of native Mandarin speakers in our network, this could be Chinese slang for 'shit' or 'damn'...." https://t.co/KBFQnFcs1G
Chinese hacker group caught bypassing 2FA
— Catalin Cimpanu (@campuscodi) December 23, 2019
* Report details new APT20 activity
* Attacks discovered in 10 countries
* Primary victims include govt entities and MSPshttps://t.co/EQyMPxW5J9 pic.twitter.com/k6SpHIhbru
Operation Wocao (我操, “Wǒ cāo”, used as “shit” or “damn” https://t.co/q68UGDVl42 Shining a light on one of China’s hidden hacking groups
— Bill Bishop (@niubi) December 19, 2019
Now this right here is funny https://t.co/96CejSGZKB pic.twitter.com/ODdy30GxGr
— Dave Liebenberg (@ChinaHandDave) December 19, 2019
Operation Wocao: Shining a light on one of China’s hidden hacking groups - Fox-IT
— higefox (@higefox) December 24, 2019
[pdf] https://t.co/Oguo3zgbfV#APT20 https://t.co/7CxJYY6kgR
Operation Wocao: Shining a light on one of China’s hidden hacking groups | @foxit https://t.co/plNFM4Q5KV#cybersecurity @Belgium_Cyber @patrickcoomans @CyberDuctTape @SafeSmartTech #wocao #APT20 #infosec #hacking #infosecurity pic.twitter.com/072ZDguEyp
— Patrick Coomans ? (@patrickcoomans) December 24, 2019
Operation Wocao: Shining a light on one of China’s hidden hacking groups
— William Nee (@williamnee) December 20, 2019
h/t @niubi's Sinocism.
Not sure I really understand this hacking news, but I wanted to use the following hashtags: #OperationWocao #我操https://t.co/2V4UyYH5Y8
Operation Wocao: Shining a light on one of China’s hidden hacking groups (APT20) https://t.co/SsWFGVGgAm
— /r/netsec (@_r_netsec) December 19, 2019
Chinese hacker group caught bypassing 2FA | ZDNet https://t.co/8G7pfVMgww
— George Millennial ?️? (@MillennialPriml) December 25, 2019
Chinese hacker group caught bypassing 2FA https://t.co/GwQbcIGFNo
— Patrick C Miller (@PatrickCMiller) December 25, 2019
中国政府とつながっているハッカーグループが2要素認証を突破
— Kohei Ando (@jackkoheiando) December 25, 2019
Chinese hacker group caught bypassing 2FAhttps://t.co/HnW4kMJRRT
“Chinese hacker group caught bypassing 2FA” https://t.co/AbDezuw53L#OrmanBeckles #Thehitechnomad #electronics #technology #tech #instatech #instagood #geek #techie #nerd #techy #photooftheday #productivity #lifehacks #lifehack #lifehacking #cybersecurity #2FA pic.twitter.com/uxnNpe7eXG
— The Hi Tech Nomad (@thehitechnomad) December 23, 2019
Chinese #hacking group caught bypassing two-factor authentication to breach government entities and service providers on behest of the Beijing government.https://t.co/B3MDWJj3bN#2FA #MFA #security #cybersecurity #cyberattack #cybercrime #cyberwar #risk #riskmanagement pic.twitter.com/hSinphll9z
— Soteryx Corp (@SoteryxCorp) December 23, 2019
Chinese group caught bypassing #2FA #MFA -#cyber #cybersec #cybersecurity #infosec #infosecurity #cyberattack #cybercrime https://t.co/SBa3B9BvhM
— CarlosAndres Agudelo (@agudeloandres) December 24, 2019
Chinese hacker group caught bypassing 2FAhttps://t.co/tRfiMbXQCm#CyberSecurity #China
— Bob Jackson (@1st_infantry) December 24, 2019
Chinese hacker group caught bypassing 2FAhttps://t.co/nNZPS8rwdd#CyberSecurity #CyberAttack #infosec #APT20
— Mervin Pearce (@mervinpearce) December 24, 2019
Chinese hacker group caught bypassing 2 factor authentication Wocao https://t.co/aOzvCSxUaX via @ZDNet & @campuscodi
— Michael Ron Bowling (@mrbcyber) December 23, 2019
Chinese hacker group caught bypassing 2FA | ZDNet https://t.co/YLeZkgs8cu #China #APT20 #2FA #RSASecurID #CyberSecurity @ZDNet pic.twitter.com/AR8OFZ4sVh
— Bob Carver ✭ (@cybersecboardrm) December 23, 2019
Chinese Hackers Bypass 2FA in Attacks Spanning 10 Countries https://t.co/P629NMuRUc
— Evan Kirstel #CES2020 (@evankirstel) December 25, 2019
Chinese Hackers Bypass 2FA in Attacks Spanning 10 Countries https://t.co/HzhwjR473T
— The Cyber Security Hub (@TheCyberSecHub) December 25, 2019
Chinese Hackers Bypass 2FA in Attacks Spanning 10 Countries https://t.co/WKSITXmgCP
— Corruption Tracker (@TrackTheCorrupt) December 25, 2019
Chinese Hackers Bypass 2FA in Attacks Spanning 10 Countries https://t.co/i4efDF7Fn5
— Michael Ron Bowling (@mrbcyber) December 24, 2019
??Vs?
— Tech L0G ????? (@TechL0G) December 25, 2019
China's APT20 Hacks Detected Bypassing Two-Factor in Attacks https://t.co/sqUDpEqOpm
by @gizmodo
#HackAttack #hacks #ChinaHackers #2FA #CyberWar #APT20 #2FA #infosec #Comsec #opSec #CTO #CIO #DataScience #BigData #CISO #FBI #datacentre #technews #News #serverAdmin
Chinese hacking group has found new way to bypass two-factor authentication https://t.co/g8L1OgbDxy
— The Cyber Security Hub (@TheCyberSecHub) December 25, 2019
2-factor (#mobile) #authentication helps, but it's not all you need to do for #login #security.#2FA #data #dataprotection #datasecurity #CyberSecurity #personalfinance #fintech #cybersec #InfoSec #infosecurity #privacy #dataprivacy #cybercrime #RSAhttps://t.co/OmzNWaLR50 pic.twitter.com/vBaQrl0TLz
— H.P. (@DataDrivenHenry) December 25, 2019
オランダのセキュリティ企業 Fox itによる中国のハッカーグループ我操Wocaoの2要素認証突破手法調査結果。 / 1件のコメント https://t.co/Vh6HUDFZ2G “Operation Wocao: Shining a light on one of China’s hidden hacking groups - Fox-IT” (2 users) https://t.co/JNlcD1VRYe
— Takashi Wada (@Takashi_Wada) December 26, 2019
中国系ハッカーグループが2FAをバイパスし被害組織が利用するVPNをバックドアとして悪用。
— 寺下 健一 / サイバーセキュリティ (@kterashita) December 25, 2019
2FA利用者端末を侵害しインストール済み2FAコードを盗み、別端末でトークンを生成したとのこと。https://t.co/UELYRjyk3L#OpWacao #Wacao #Chinese #APT #ATP20 #2FA pic.twitter.com/kkcTkULiGF
Chinese hacker group caught bypassing 2FA | ZDNet https://t.co/lLEaaO5d0B. #cybersecurity #infosec
— ☠️ .::giblet::. ☠️ (@giblet004) December 25, 2019
Chinese hacker group caught bypassing 2FA https://t.co/cShmmiKR1y via @ZDNet & @campuscodi | Chinese state-sponsored group APT20 has been busy hacking government entities and managed service providers.
— Liberation Technology (@Liberationtech) December 25, 2019
A Chinese hacking group, APT20, is believed to operate on behalf of the Beijing government has learned how to bypass two-factor authentication (2FA) in attacks on global government and industry targets. https://t.co/FeoEXuyBzU
— Auntie Alice (@AuntieAliceCY) December 25, 2019
Not great news for state and local Board of Elections officials. Malicious hackers have tried and continue to try to infiltrate every state.
— Lynn Bernstein (@bernstein_lynn) December 25, 2019
Chinese hacking group has found new way to bypass two-factor authentication https://t.co/acswioLBS6 via @SiliconANGLE