By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Security Parrot - Cyber Security News, Insights and ReviewsSecurity Parrot - Cyber Security News, Insights and Reviews
Notification
Latest News
OpenAI may use Associated Press archive for AI training
July 14, 2023
EU users can hold conversations with Google Bard from training set
July 14, 2023
Aptos, the new default font for Microsoft Office
July 14, 2023
BlackLotus UEFI bootkit sources published on GitHub
July 14, 2023
Hackers from the XDSpy cyber-espionage group attacked Russian organizations on behalf of the Ministry of Emergency Situations
July 14, 2023
Aa
  • News
  • Tutorials
  • Security InsiderComing Soon
  • Expert InsightComing Soon
Reading: Lenoardo S.p.A Data Breach; 94 Attacked Devices with Malware
Share
Security Parrot - Cyber Security News, Insights and ReviewsSecurity Parrot - Cyber Security News, Insights and Reviews
Aa
Search
  • News
  • Tutorials
  • Security InsiderComing Soon
  • Expert InsightComing Soon
Follow US
Security Parrot - Cyber Security News, Insights and Reviews > News > Lenoardo S.p.A Data Breach; 94 Attacked Devices with Malware
News

Lenoardo S.p.A Data Breach; 94 Attacked Devices with Malware

Last updated: 2020/12/07 at 8:42 AM
Jim Koohyar Biniyaz Published December 5, 2020
Share
leonard-under-cyber-attack
SHARE

ThreatIT Team Reports: Through a newly engineered Trojan, inoculated into computers through USB keys, for almost two years, between May 2015 and January 2017, they stole 10 gigabytes of classified data and information of significant business value. This is what the news concerning the hacker attack on which the Naples Public Prosecutor’s Office is investigating says.

The user profiles of many employees were configured on the workstations targeted by the hackers, some with managerial duties, engaged in business activities aimed at the production of goods and services of a strategic nature for the security and defense of the country such as projects for electronic systems of military aircraft.

Cyber Attack on Leonardo S.p.A

In January 2017, Leonardo’s cyber security structure reported anomalous network traffic, outgoing from some workstations of the Pomigliano D’Arco plant, generated by an artifact software called “cftmon.exe”, unknown to company antivirus systems . The anomalous traffic was directed towards a web page called “www.fujinama.altervista.org”, whose preventive seizure was requested and ordered, and today carried out.

According to Leonardo’s first complaint, the computer anomaly was limited to a small number of workstations and characterized by an exfiltration of data deemed not significant. Subsequent investigations have reconstructed a much more extensive and severe scenario.

In fact, the investigations showed that, for almost two years (between May 2015 and January 2017), Leonardo’s IT structures had been hit by a targeted and persistent cyber attack (known as Advanced Persistent Threat or APT), since it was made with installation in the target systems, networks and machines, of a malicious code aimed at creating and maintaining active communication channels suitable for allowing the silent exfiltration of significant quantities of data and information classified as having significant corporate value.

Two precautionary measures were notified to a former employee and a manager of Leonardo spa (an Italian company active in the defense, aerospace and security sectors) believed to be involved in a serious attack on IT structures against the Aerostructures Division and the Aircraft Division started in 2015.

leonard-under-cyber-attack

Suspect Arrested for Investigation of Cyber Attack to Leonardo S.p.A:

Arturo d’Elia, the former employee of Leonardo Spa arrested for whom today the investigating magistrate ordered jail, had even managed to successfully carry out a cyber attack on a NATO base located on Italian territory. An action for which he was so proud to note it on his resume, without specifying that it was precisely for that cyber crime that he had been convicted. Nonetheless, he worked for Leonardo Spa’s IT security.

Recipients of the precautionary measures are the former IT security manager of Leonardo SpA, for whom the investigating magistrate ordered the prison and head of the CERT (Cyber ​​Emergency Readiness Team) of Leonardo spa, a body responsible for managing the computer attacks suffered. by the company to which the precautionary measure of home custody was notified. The former employee is challenged with abusive access to the computer system, unlawful interception of electronic communications and unlawful processing of personal data, according to the crime of misdirection.

Leonardo S.p.A. Respond to Cyber Attack:

Data not compromised, we are the injured party Leonardo released a statement regarding the hacker attack: “With regard to the current measures adopted by the Naples judiciary, Leonardo announces that the investigation was triggered by a complaint presented by the same company security which was followed by others. The measures concern a former collaborator who is not employed by Leonardo and a non-executive employee of the company. The Company, obviously the injured party in this affair, has provided since the beginning and will continue to provide the maximum collaboration to the investigators to clarify the issue. ‘happened and for its own protection. Finally, it should be noted that classified data, i.e. strategic data, is processed in segregated areas and therefore without connectivity and in any case not present on the Pomigliano site “.

Weekly Updates For Our Loyal Readers!

Jim Koohyar Biniyaz December 5, 2020
Share this Article
Facebook Twitter Email Copy Link Print

Archives

  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • February 2023
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020

You Might Also Like

News

OpenAI may use Associated Press archive for AI training

July 14, 2023
News

EU users can hold conversations with Google Bard from training set

July 14, 2023
News

Aptos, the new default font for Microsoft Office

July 14, 2023
News

BlackLotus UEFI bootkit sources published on GitHub

July 14, 2023

© 2022 Parrot Media Network. All Rights Reserved.

  • Home
  • Parrot Media Group
  • Privacy Policy
  • Terms and Conditions
Join Us!

Subscribe to our newsletter and never miss our latest news, podcasts etc..

Zero spam, Unsubscribe at any time.

Removed from reading list

Undo
Go to mobile version
Welcome Back!

Sign in to your account

Lost your password?