Forescout’s phony water plant fooled TwoNet into claiming a fake cyber victory – then it quietly shut up shop

Security researchers say they duped pro-Russia cybercriminals into targeting a fake critical infrastructure organization, which the crew later claimed - via their Telegram group - to be a real-world attack.

Forescout said the short-lived TwoNet hacktivist group fell for one of its researchers’ honeypots, designed to look like a water treatment plant to a remote attacker. […]

  • Chozo@fedia.io
    link
    fedilink
    arrow-up
    123
    ·
    4 days ago

    I’m sorry, what sort of “hacktivist” group targets water treatment plants? That’s not hactivism, that’s terrorism.

    • real_squids@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      64
      ·
      edit-2
      4 days ago

      A pro-russian one apparently. Makes sense as their definition of terrorism is, conveniently, very flexible.

      Before the group scarpered again, it pitched itself as a full-service cybercrime crew, instead of the almost exclusively DDoS-focused outfit from earlier in the year.

      Yeah I wouldn’t call someone like that hacktivists if they’re selling their services to whoever.

  • dick_fineman@discuss.online
    link
    fedilink
    English
    arrow-up
    65
    ·
    4 days ago

    I feel like this is the plot to a Hallmark movie. He was a Russian Hacktivist group, She was a researcher setting up honeypots to trap her enemies. But what she never expected was to trap love in her honeypot.

    …and now maybe it’s the plot for a shitty porno. Anyway, Netflix, give me money.

  • Em Adespoton@lemmy.ca
    link
    fedilink
    English
    arrow-up
    30
    ·
    4 days ago

    I wonder whether they shut up shop because they thought they’d just made the CIA’s “naughty” list?

    Or just did the rather common thing these days of ditching their infrastructure as blown and starting up again under a new name?

    • scytale@piefed.zip
      link
      fedilink
      English
      arrow-up
      21
      ·
      4 days ago

      Probably more of the latter. They unwittingly fell into a honeypot and are probably afraid they exposed themselves and will be tracked down. So better to break it up and try again in another form.

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      6
      ·
      4 days ago

      It could be that failure is punished very severely

      It isn’t all that uncommon in Authoritarian government