Monday, March 27, 2023
manilastandard.net
ADVERTISEMENT
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Others
    • Pets
    • Pop.Life
      • Newsmakers
      • Hangouts
      • A-Pop
      • Post Its
      • Performances
      • Malls & Bazaars
      • Hobbies & Collections
    • Technology
      • Gadgets
      • Computers
      • Business
      • Tech Plus
    • MS ON THE ROAD
      • Sedan
      • SUV
      • Truck
      • Bike
      • Accessories
      • Motoring Plus
      • Commuter’s Corner
    • Home & Design
      • Residential
      • Commercial
      • Construction
      • Interior
    • Spotlight
    • Gallery
      • Photos
      • Videos
    • Events
      • Seminars
      • Exhibits
      • Community
    • Biyahero
      • Travel Features
      • Travel Reels
      • Travel Logs
  • Advertise with Us
No Result
View All Result
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Others
    • Pets
    • Pop.Life
      • Newsmakers
      • Hangouts
      • A-Pop
      • Post Its
      • Performances
      • Malls & Bazaars
      • Hobbies & Collections
    • Technology
      • Gadgets
      • Computers
      • Business
      • Tech Plus
    • MS ON THE ROAD
      • Sedan
      • SUV
      • Truck
      • Bike
      • Accessories
      • Motoring Plus
      • Commuter’s Corner
    • Home & Design
      • Residential
      • Commercial
      • Construction
      • Interior
    • Spotlight
    • Gallery
      • Photos
      • Videos
    • Events
      • Seminars
      • Exhibits
      • Community
    • Biyahero
      • Travel Features
      • Travel Reels
      • Travel Logs
  • Advertise with Us
No Result
View All Result
manilastandard.net
No Result
View All Result
Home Business Biz Plus

Hive ransomware: Modern, efficient business model

AFPbyAFP
January 27, 2023, 8:20 pm
in Biz Plus, Business
Reading Time: 4 mins read
A A
Share on FacebookShare on TwitterShare on Email

by Paul Handley

WASHINGTON—The US Justice Department’s shutdown Thursday of the Hive ransomware operation —which extorted some $100 million from more than 1,500 victims worldwide—highlights how hacking has become an ultra-efficient, specialized industry that can allow anyone to become a cyber-shakedown artist.

Modern business model

Hive operated in what cybersecurity experts call a “ransomware as a service” style, or RaaS—a business that leases its software and methods to others to use in extorting a target.

The model is central to the larger ransomware ecosystem, in which actors specialize in one skill or function to maximize efficiency.

ADVERTISEMENT
Federal Bureau of Investigation director Christopher Wray (right), joined by Attorney General Merrick Garland, delivers remarks on an international ransomware enforcement action at the U.S. Justice Department on Jan. 26, 2023, in Washington, D.C. The Justice Department announced that the FBI seized the website of HIVE, a notorious ransomware gang, which has extorted more than $100 million from victim organizations. AFP

According to Ariel Ropek, director of cyber threat intelligence at cybersecurity firm Avertium, this structure makes it possible for criminals with minimal computer fluency to get into the ransomware game by paying others for their expertise.

“There are quite a few of them,” Ropek said of RaaS operations.

“It is really a business model nowadays,” he said.

How it works

On the so-called dark web, providers of ransomware services and support pitch their products openly.

At one end are the initial access brokers, who specialize in breaking into corporate or institutional computer systems.

They then sell that access to the hacker, or ransomware operator.

But the operator depends on RaaS developers like Hive, which have the programming skills to create the malware needed to carry out the operation and avoid counter-security measures.

Typically, their programs—once inserted by the ransomware operator into the target’s IT systems—are manipulated to freeze, via encryption, the target’s files and data.

The programs also extract the data back to the ransomware operator.

RaaS developers like Hive offer a full service to the operators, for a large share of the ransom paid out, said Ropek.

“Their goal is to make the ransomware operation as turnkey as possible,” he said.

Polite but firm

When the ransomware is planted and activated, the target receives a message telling them how to correspond and how much to pay to get their data unencrypted.

That ransom can run from thousands to millions of dollars, usually depending on the financial strength of the target.

Inevitably the target tries to negotiate on the portal. They often don’t get very far.

Menlo Security, a cybersecurity firm, last year published the conversation between a target and Hive’s “Sales Department” that took place on Hive’s special portal for victims.

In it, the Hive operator courteously and professionally offered to prove the decryption would work with a test file.

But when the target repeatedly offered a fraction of the $200,000 demanded, Hive was firm, insisting the target could afford the total amount.

Eventually, the Hive agent gave in and offered a significant reduction—but drew the line there.

“The price is $50,000. It’s final. What else to say?” the Hive agent wrote.

If a target organization refuses to pay, the RaaS developers hold a backup position: they threaten to release the hacked confidential files online or sell them.

Hive maintained a separate website, HiveLeaks, to publish the data.

On the back end of the deal, according to Ropek, there are specialist operations to collect the money, making sure those taking part get their shares of the ransom.

Others, known as cryptocurrency tumblers, help launder the ransom for the hacker to use above-ground.

Modest blow

Thursday’s action against Hive was only a modest blow against the RaaS industry.

There are numerous other ransomware specialists similar to Hive still operating.

The biggest current threat is LockBit, which attacked Britain’s Royal Mail in early January and a Canadian children’s hospital in December.

In November, the Justice Department said LockBit had reaped tens of millions of dollars in ransoms from 1,000 victims. AFP

And it isn’t hard for Hive’s operators to just start again.

“It’s a relatively simple process of setting up new servers, generating new encryption keys. Usually there’s some kind of rebrand,” said Ropek.

Tags: cybercrimeHackingHive ransomwareUS Justice Department
ADVERTISEMENT
AFP

AFP

Related Posts

PLDT eyes investors in data center unit

byDarwin G. Amojelar
March 26, 2023, 6:45 pm
0
8
Luck of draw could send PH to Tokyo Olympics

PLDT Inc. said over the weekend it held exploratory talks with financial advisers to bring in potential investors in its...

Read more

Ayala Land plans to sell P22b worth of fixed-rate bonds

byJenniffer B. Austria
March 26, 2023, 6:41 pm
0
8
Ayala Land’s profit rose 38% to P2.55b in the third quarter

Property developer Ayala Land Inc. plans to raise up to P22 billion from the issuance of fixed-rate bonds. ALI said...

Read more

Visa processing bottleneck restrains tourism growth

byOthel V. Campos
March 26, 2023, 6:35 pm
0
8
CONCEPCION INDUSTRIAL CORPORATION: Notice of the Annual Stockholders’ Meeting

The Department of Tourism warned over the weekend about losing P2.51 billion in industry revenues if the government fails to...

Read more

Holcim PH reported 63% drop in profit last year on weak demand, higher costs

byJenniffer B. Austria
March 26, 2023, 6:30 pm
0
8
Holcim investing P210m in factories

Cement manufacturer Holcim Philippines Inc. said over the weekend net income reached P942 million in 2022, down 63 percent from...

Read more

ERC asked to submit action plan to resolve more than 20 unapproved power supply deals

byAlena Mae S. Flores
March 26, 2023, 6:25 pm
0
8
Gatchalian eyes ‘tandem vote’ bill for President, VP

Senator Sherwin Gatchalian asked the Energy Regulatory Commission to submit an action plan to resolve the more than 20 cases...

Read more

Stocks face volatility amid dovish US Fed

byJenniffer B. Austria
March 26, 2023, 6:20 pm
0
8
Stock market surges; PLDT, Globe advance

Local stocks are expected to continue facing volatility amid the dovish US Federal Reserve’s stance and the uncertainty on the...

Read more

Print Edition

View More

Recent Posts

  • Under-implemented Rare Disease Law
  • UN’s global disaster alert systems goal faces uphill climb
  • Bridge fishing
  • Quezon’s finest
  • Study of devolution to LGUs out in 2 months—DBM exec
  • Romualdez duo, DSWD hand out aid in Davao Oro to quake victims
  • STAR program to aid move of domestic flights to NAIA
  • Sen. Villar urges Soroptimist women to embark on urban gardening

Advertisement

Latest News

Romualdez duo, DSWD hand out aid in Davao Oro to quake victims

byRio N. Araja
March 26, 2023, 11:20 pm
0
8
Congressional spouses play important roles, says Romualdez

In partnership with Secretary Rex Gatchalian of the Department of Social Welfare and Development, Speaker Ferdinand Martin Romualdez and wife...

Read more

STAR program to aid move of domestic flights to NAIA

byRey E. Requejo
March 26, 2023, 11:10 pm
0
8
Honest airport employee returns P.5m 

The Manila International Airport Authority will start the second phase of its Schedule and Terminal Assignment Rationalization (STAR) program in...

Read more

Sen. Villar urges Soroptimist women to embark on urban gardening

byMacon Ramos-Araneta
March 26, 2023, 11:00 pm
0
8
Sen. Villar urges Soroptimist women to embark on urban gardening

As the country observes Women’s Month, Sen. Cynthia A. Villar recently recognized the women awardees of Soroptimist International of the...

Read more

SMC gives cash to Cavite fisherfolk

byManila Standard
March 26, 2023, 10:50 pm
0
8
Thousands win in SMB promo

San Miguel Corporation (SMC) has extended monthly cash assistance to more fisherfolk families, bringing to close to 2,000 the beneficiaries...

Read more

HIV patients urged to get treatments

byManila Standard
March 26, 2023, 10:40 pm
0
8
PhilHealth expedites settling debts to hospitals by debit-credit scheme

The Philippine Health Insurance Corporation (PhilHealth) is urging patients infected with the human immunodeficiency virus (HIV) to avail of outpatient...

Read more

Advertisement

ADVERTISEMENT
Facebook Twitter Instagram Youtube

ABOUT US

Manila Standard

Manila Standard website (manilastandard.net), launched in August 2002, extends the newspaper’s reach beyond its traditional readers and makes its brand of Philippine news and opinion available to a much wider and geographically diverse readership here and overseas.

Digital Edition

In tone and content, the online edition mirrors the editorial thrust of the newspaper. While hewing to the traditional precepts of fairness and objectivity, MS believes the news of the day need not be staid, overly long or dry. Stories are succinct, readable and written in a lively style that has become a hallmark of the newspaper.

Download – Today’s Paper

Search

No Result
View All Result

6th Floor Universal Re Bldg., 106 Paseo De Roxas cor. Perea Street, Legaspi Village, 1226 Makati City Philippines

Trunklines: 832-5554, 832-5556, 832-5558

© 2021 Manila Standard - Designed and Developed by Neitiviti Studios.

No Result
View All Result
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Pop.Life
    • Newsmakers
    • Hangouts
    • A-Pop
    • Post Its
    • Performances
    • Malls & Bazaars
    • Hobbies & Collections
  • Technology
    • Gadgets
    • Computers
    • Business
    • Tech Plus
  • MS ON THE ROAD
    • Sedan
    • SUV
    • Truck
    • Bike
    • Accessories
    • Motoring Plus
    • Commuter’s Corner
  • Home & Design
    • Residential
    • Commercial
    • Construction
    • Interior
  • Spotlight
  • Gallery
    • Photos
    • Videos
  • Events
    • Seminars
    • Exhibits
    • Community
  • Biyahero
    • Travel Features
    • Travel Reels
    • Travel Logs
  • Pets
  • Advertise with Us

© 2021 Manila Standard - Designed and Developed by Neitiviti Studios.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Install Manila Standard Web App

Install App