AP source: US investigators link NKorea to Sony hacking; official statement could come | iNFOnews | Thompson-Okanagan's News Source
Subscribe

Would you like to subscribe to our newsletter?

Current Conditions Mostly Cloudy  22.4°C

AP source: US investigators link NKorea to Sony hacking; official statement could come

This photo provided by Columbia Pictures - Sony shows, Seth Rogen, center, as Aaron, and James Franco, as Dave, arriving in North Korea to a welcoming crowd in a scene from Columbia Pictures' "The Interview." (AP Photo/Columbia Pictures - Sony, Ed Araquel)
Original Publication Date December 17, 2014 - 3:35 PM

WASHINGTON - Federal investigators have now connected the hacking of Sony Pictures Entertainment Inc. to North Korea, a U.S. official said Wednesday, though it remained unclear how the federal government would respond to a break-in that exposed sensitive documents and ultimately led to terrorist threats against moviegoers.

The official, who said a more formal statement could come in the near future, spoke on condition of anonymity because the official was not authorized to openly discuss an ongoing criminal case.

Until Wednesday, the Obama administration had been saying it was not immediately clear who might have been responsible for the computer break-in. North Korea has publicly denied it was involved.

The unidentified hackers had demanded that Sony cancel its upcoming release of the movie "The Interview," a comedy starring Seth Rogen and James Franco that included a gruesome scene depicting the assassination of North Korea's leader. Sony on Wednesday cancelled the Dec. 25 release, citing the threats of violence against movie theatres, and the movie studio later said there were no further plans to release the film.

The disclosure about North Korea's involvement came just after Sony hired FireEye Inc.'s Mandiant forensics unit, which last year published a landmark report with evidence accusing a Chinese Army organization, Unit 61398, of hacking into more than 140 companies over the years. Tracing the origins of hacker break-ins and identities of those responsible is exceedingly difficult and often involves surmise and circumstantial evidence, but Mandiant's work on its highly regarded China investigation provides some clues to its methods.

Investigators will disassemble any hacking tools left behind at the crime scene and — similar to bomb detectives — scour them for unique characteristics that might identify who built or deployed them. Hints about origin might include a tool's programming code, how or when it was activated and where in the world it transmitted any stolen materials.

In some cases, investigators will trace break-ins by hackers to "command and control" computers or web servers, and logs in those machines or information in Internet registration records might provide further clues about who is behind the hack. Sometimes, hackers using aliases are identified on social media networks or in chat rooms discussing targets or techniques. Mandiant named three Chinese Army hackers, including one known as "Ugly Gorilla."

The most sophisticated tools or specialized techniques are generally attributed to the work of governments — such as the U.S. role in releasing a tool known as Stuxnet to cripple Iran's nuclear program — because it can be expensive and time-consuming for experts to build them. But governments wouldn't use their most sophisticated tools against unsophisticated targets, because of the risk that valuable tools would be discovered and rendered useless for future attacks.

It wasn't immediately clear how the U.S. government was preparing to respond. The White House did not comment about the reported connection to North Korea and there was no immediate response from the State Department.

In May, the Justice Department took the highly unusual step of announcing indictments against five Chinese military officials accused of vast cyberespionage against major American corporations. But months later, none of those defendants have been prosecuted in the United States, illustrating the challenge of using the American criminal justice system against cybercriminals operating in foreign countries.

News from © The Associated Press, 2014
The Associated Press

  • Popular kamloops News
  • UPDATE: Snow day in Kamloops
    KAMLOOPS - Today was supposed to be the first day back after winter break, but students in Kamloops are instead starting the new year with a snow day after heavy snowfall Sunday. School Dist
  • Kelowna homeowners top Canadian list of mortgage-free living
    In a city known for its high housing costs, Kelowna surprisingly has more mortgage-free homeowners than the vast majority of the country. Recently released statistics show that Kelowna
  • Canada's only desert is in B.C. but not where you think it is
    Canada’s only desert is in the Southern Interior of B.C. but it might not be where you think it is. They lay that claim in Osoyoos, where you’ll find the Nk’Mip desert cult
  • UPDATE: Second day of school closures in Kamloops, TRU reopens
    KAMLOOPS - After two days of almost constant snow, School District 73 will close schools for a second day on Tuesday, Jan. 6 though Thompson Rivers University is set to reopen. At 6:30 a.m.
  • One dead in Fraser Canyon head-on collision
    Police are looking for witnesses and dashcam footage of a fatal accident involving three vehicles in a Fraser Canyon collision on Sunday. BC Highway Patrol said two vehicles collided head-on
View Site in: Desktop | Mobile