Dive Brief:
-
Researchers at FireEye Inc. said hackers used Twitter and photos in tandem to break into U.S. government and defense industry computers this year.
-
The technique they used demonstrates how hackers can shift tactics quickly when detected.
-
FireEye identified the campaign as the work of a Russian group it calls APT29.
Dive Insight:
FireEye researchers said the group utilized Twitter controls combined with hidden data in photos — a technique known as steganography — to communicate with previously infected computers. It was discovered during a FireEye investigation at an unnamed victim organization.
FireEye Strategic Analysis Manager Jennifer Weedon said, “It’s striking how many layers of obfuscation that the group adopts... These groups are innovating and becoming more creative.”