Game of Thrones Hack Tedx in Aftermath of High-Profile ‘Game of Thrones’ Hack, a Chance to Raise Global Cyber Standards
Total Page:16
File Type:pdf, Size:1020Kb
game of thrones hack tedx In aftermath of high-profile ‘Game of Thrones’ hack, a chance to raise global cyber standards. The name of the song playing is “The Light of the Seven.” It’s a haunting, evocative piece from a penultimate scene in last season’s final episode of Game of Thrones, beginning with delicate, well-timed notes from a piano. It is a masterpiece of tension, fear and ultimately fury. It was also a good choice for the hackers. The cellos come in less than a minute later, ominous, a portent of something sinister to come. When the children’s chorus comes in, alight with orchestral violins and pipe organs, the voices are a stark counterpoint to the building violence on screen that ends in a crescendo of green fire enveloping the pompous, religious enemies of the Queen of the Seven Kingdoms, Cersei Lannister. Hackers who stole key pieces of some of HBO’s crown jewel properties used that musical score for dramatic effect just weeks ago as they detailed their demands over a roughly five-minute video, using Game of Thrones – one of the most popular shows on the planet – as leverage. To view the video, please click here. To read an ACFCS sidebar piece to this story covering cyber countermeasures, please click here. “We confess that HBO was one of our difficult targets to deal with but we succeeded. (It took about 6 months),” according to the video obtained by Mashable. “Also, we obtained full scripts and cast list of your (and our) very popular TV series; Game of Thrones S7.” In the latest HBO hack, the group is requesting a ransom of an implied $6 million to $7.5 million, or as the note calls their “six-month salary in Bitcoin,” or else the dark net denizens would release the full 1.5 terabytes of data. But HBO apparently had full episodes and seasons (the series is currently a few episodes into season seven) in a more secure location. The series, as the namesake implies, chronicles the efforts of several houses to take control of the Iron Throne, adapted from a storied book series by George R.R. Martin. “You concealed GOT7 very carefully so we can't find it due to lack of time although we are so close,” the group stated in the video. “Instead, we produced some tiny mini-series of GOT 7 for you which be able to shock the entire world. What we got from GOT 7 not only put an end to fate of this season but also corrupts your idea and efforts to season 8.” The hack follows similar breaches of Netflix, Sony, ICM, WME, UTA and a production company that affected content from ABC, NBC, FX and Disney. Hackers in recent years have also punctured many of the country’s largest banks, retailers, healthcare firms and even a site with data on U.S. government personnel. But if there is a bright spot in a hack that could hurt such a beloved franchise, cybersecurity experts say the breach could be used as a teaching tool. It may help governments, organizations and individuals to realize that cybercriminals see data of all kinds as potentially even more valuable than standard credit and debit card information – leading to stronger global cyber defenses. “We have vulnerabilities in the U.S. and people don’t realize that because we are so gullible,” said John Walsh, Chief Executive of SightSpan, a global risk management firm. “The government worries about attacks on nuclear power plants or the electric grid, but those are relatively safe. China, however, as just one example, is invading every day, hacking into engineering firms, law firms and accounting firms and, yes, entertainment business as well.” Hopefully getting governments, companies and even individuals to think about their own cyber safety as a result of the hack will help them also come to a profound but sobering realization. “This is a new kind of war and we are at war right now,” Walsh said. “Data right now is more valuable than money because, if done right, hackers can use it again and again.” That would be an interesting turnabout on the axiom of fact informing fiction. In this case, an online assault by virtual world brigands against a fantasy kingdom could potentially lead to better cyber swords and shields in the real world. AML rules creating ransom payment challenges? The unknown cyber gang behind the HBO hack seems to unintentionally mention how stronger anti-money laundering (AML) rules being implemented by banks globally are making it harder for them to find institutions and virtual currency exchanges that will handle the Bitcoin ransom demand. “Do the bitcoin job quick,” the group says. “Some banks in USA have problems in exchanging bitcoin and caused trouble in past. We don't accept sentences like: we want to pay but banks are lazy and don't cooperate. Its your problem. Give some bucks, they do like slaves.” The HBO hack “underscores the vulnerability of companies large and small, particularly hackers targeting and obtaining high value content,” said Joseph DeMarco, a partner at New York-based DeVore & DeMarco and the former Assistant US Attorney for the Southern District of New York, heading the computer hacking program. “And that high value content can come from an entertainment company or a bank or a healthcare provider,” he said. “The fact of the matter is that information has value and people are out there looking for ways to steal it,” DeMarco said. “All companies need to have robust data security, good access controls, encryption and employ the most sophisticated countermeasures for protecting the crown jewel intellectual properties in the best way possible.” Such measures are required for persistent and determined hackers. For instance, the hacking group tied to the HBO breach claimed they do two operations a year, netting as much as $15 million in total and that HBO marks their 17th target. Only three have failed to pay and “were punished very badly and 2 of them collapse entirely.” Even so, while the group is doing its best to be menacing and demands to be taken seriously, the scrolling text in the video is filled with atrocious spelling and grammatical errors, meaning the group is clearly foreign, from hacker nests in likely locales including Russia, China or Eastern Europe – the usual suspects. Winter is coming – for HBO. The breach allegedly includes a veritable cornucopia of proprietary loot, including future episodes and scripts of the epic fantasy phenomenon, along with what the various actors get paid and even their phone numbers – something leaked a few days ago as proof of the digital haul. While the video yields few clues about how the group got in to HBO, it mentions in passing that the group pays $500,000 annually for the use of “zero day exploits,” a term describing an unknown or undisclosed software vulnerability that hackers can exploit to breach computer programs, steal data, or use malware to infect additional computers or an entire network. The video ends with a look at two potential futures for HBO, and a warning seemingly straight from the mouth of one of the show’s most popular dark and brooding characters. “Winter is coming – HBO is falling,” or “Winter is Coming – HBO is standing & Everlasting,” the hackers stated in the video, a nod to the current King of the North of House Winterfell, Jon Snow – or Stark or Targaryen – depending on how far you are in the books or show. And as in Game of Thrones, having a battle-ready mindset can help companies realize attacks with virtual flaming arrows can come from anywhere and at any time, meaning operations must better segment their data so only individuals with the highest clearances can access the most valuable or sensitive data. “In the show, the Lannisters are the most cunning house,” Walsh said. “Companies need to realize hackers are just like that. Whatever weaknesses you have, they will exploit them. And anyone can be a target. Sometimes hackers will just get into a place just to see if they can. Don’t look for logical answers when it comes to hacking because some attacks are done as a source of pride.” In an ironic twist, the hackers are clearly fans of the show, expressing little to no enmity or vitriol toward HBO. That is a departure from previous hacks against media and technology companies. The hack of Sony, for instance, allegedly done by North Korea, was widely believed to be in response to a movie called “The Interview” deriding and satirizing the country’s leader, an affront the rogue regime could not endure. The main reason for the hack: “Our motives isn't political nor financial,” the group said. “(Even we hate trump like other Americans do) Its like a game for us, we enjoy to get data. Money isn't our main purpose,” according to the group. Going further, the note evinces the delusions of grandeur common to hackers with self-inflated views of themselves. In some instances, the group asks to be “partners” in global distribution of HBO shows and that the entire hack is something cable executives should be thanking them for as helpful “penetration testing” and publicity at a fraction of their normal advertising budget. “We don't want to endanger HBO's situation nor causing to lose its reputation,” the hacker collective said. “We want to be your partner in a tiny part of HBO's huge income. HBO spends 12 million in 2017 for Market Research and 5 million for GOT7 advertisements.