US-led ‘Five Eyes’ alliance dismantled Russia’s ‘premier espionage cyber-tool’
May 11, 2023 3 Comments
AN ESPIONAGE TOOL DESCRIBED by Western officials as the most advanced in the Russian cyber-arsenal has been neutralized after a 20-year operation by intelligence agencies in the United States, Australia, Canada, the United Kingdom and New Zealand. The operation targeted Turla, a hacker group that cyber-security experts have long associated with the Russian government.
Turla is believed to be made up of officers from Center 16, a signals intelligence unit of Russia’s Federal Security Service (FSB), one of the Soviet-era KGB’s successor agencies. Since its appearance in 2003, Turla has used a highly sophisticated malware dubbed ‘Snake’ to infect thousands of computer systems in over 50 countries around the world. Turla’s victims include highly sensitive government computer networks in the United States, including those of the Department of Defense, the National Aeronautics and Space Administration, and the United States Central Command.
The Snake malware has also been found in computers of privately owned firms, especially those belonging to various critical infrastructure sectors, such as financial services, government facilities, electronics manufacturing, telecommunications and healthcare. For over two decades, the Snake malware used thousands of compromised computers throughout the West as nodes in complex peer-to-peer networks. By siphoning information through these networks, the Turla hackers were able to mask the location from where they launched their attacks.
On Tuesday, however, the United States Department of Justice announced that the Federal Bureau of Investigation (FBI), along with its counterparts in the United States-led ‘Five Eyes’ intelligence-sharing alliance, had managed to dismantle Snake. This effort, codenamed Operation MEDUSA, was reportedly launched nearly 20 years ago with the goal of neutralizing the Snake malware. In the process, Five Eyes cyber-defense experts managed to locate Turla’s facilities in Moscow, as well as in Ryazan, an industrial center located about 120 miles southeast of the Russian capital.
The complex cyber-defense operation culminated with the development of an anti-malware tool that the FBI dubbed PERSEUS. According to the Department of Justice’s announcement, PERSEUS was designed to impersonate the Turla operators of Snake. In doing so, it was able to take over Snake’s command-and-control functions. Essentially, PERSEUS hacked into Snake and instructed the malware to self-delete from the computers it had compromised. As of this week, therefore, the worldwide peer-to-peer network that Snake had painstakingly created over two decades, has ceased to exist, as has Snake itself.
► Author: Joseph Fitsanakis | Date: 11 May 2023 | Permalink
THE UNITED STATES HAS arrested two residents of New York City for allegedly conspiring to create and operate a clandestine police station run by the Chinese government in the borough of Manhattan. The arrests come a month after authorities in Canada launched an
A RUSSIAN INTELLIGENCE OPERATIVE, who lived in Maryland using forged Brazilian identity documents, has been charged with espionage and other crimes by the United States Department of Justice. Victor Muller Ferreira, a Brazilian national, was stopped from entering the Netherlands in June of last year, where he had intended to join the International Criminal Court (ICC) as an intern.
THE SPIRALING SOCIAL UNREST in Israel and the Palestinian Territories may harm longstanding intelligence-sharing agreements between Israel and its Western allies, including the United States, according to reports. Historically, intelligence-sharing partnerships between Israel and its closest ally, the United States, have tended to remain largely unaffected by regional upheavals. This time, however, some Israeli officials are concerned that the Israeli-American intelligence relationship is “under a question mark and under great tension”.
THE WORLD HEALTH ORGANIZATION has called on the United States and China to share what they know about the source of the COVID-19 pandemic. The call, made by WHO’s Director-General Dr. Tedros Adhanom Ghebreyesus and others, came days after United States Federal Bureau of Investigation Director Christopher Wray said in a television interview that COVID-19 “most likely” originated from a Chinese government laboratory.
A BOOK BY A former Central Intelligence Agency (CIA) case officer, which alleges that a senior Agency official sabotaged American counterintelligence efforts on orders from Moscow, has prompted a series of fiery exchanges by retired CIA personnel. The primary figures in the dispute are the book’s author, Robert Baer, and Paul J. Redmond, who served as the CIA’s Associate Deputy Director of Operations for Counterintelligence.
AUTHORITIES IN THE UNITED States have launched at least two separate investigations into the business dealings of Charles McGonigal, the highest-ranking former employee of the Federal Bureau of Investigation (FBI) to face criminal charges in recent times. Much has been written about McGonigal’s
INFORMATION PROVIDED BY THE United States Central Intelligence Agency helped Kyiv foil two Russian plots against the life of Ukraine’s President, Volodymyr Zelenskyy, in the crucial early stages of the Russo-Ukrainian war, according to a new book. The claim is made in
THE GOVERNMENT OF WAR-torn Libya announced on Thursday that William Burns, director of the United States Central Intelligence Agency (CIA) was in capital Tripoli for discussions with senior Libyan officials. By visiting Tripoli, Burns became the highest-ranking American government official to travel to the North African country under the presidency of Joe Biden.
FEMALE TARGETS OF CONSPIRACY theories propagated by QAnon adherents face up to 10 times more online harassment and abuse than male targets, a behavioral study of pro-QAnon online users has found. QAnon refers to an American-rooted conspiracy theory that views former United States President Donald Trump as a central figure in a behind-the-scenes battle against a sinister cabal of enemies, known as the “deep state”. According to QAnon adherents, “deep state” elites (politicians, entertainment figures and other celebrities) consist of Satan-worshiping cannibals who traffic children for sex. QAnon adherents also believe that these elites will be routed during “The Storm”, a final reckoning between Trump and the “deep state”, which will result in the arrest and physical extermination of all elites.
A YEAR-LONG INVESTIGATION by the Reuters news agency attempts to shed light on the alleged arrests of more than a dozen Iranian spies, who claim to have worked for the United States Central Intelligence Agency. Periodically Iran claims to have captured members of alleged CIA spy rings operating across its territory. For instance, in 2019 Iran’s Ministry of Intelligence
A TIP BY BELGIAN intelligence helped the Federal Bureau of Investigation foil a plot by Iraqi nationals to kill former United States President George W. Bush. American news outlets
MULTIPLE NEWS OUTLETS CLAIMED on Wednesday that Monday’s search by authorities of a Florida residential compound belonging to former United States President Donald Trump was based on information provided to the Federal Bureau of Investigation by a confidential human source. The source reportedly gave the FBI details about a number of classified documents that were allegedly hidden in Trump’s Florida estate, as well as their precise location.






China sentences US citizen to life for espionage following closed-door trial
May 15, 2023 by Joseph Fitsanakis 1 Comment
The individual convicted in this case has been named in media reports as John Shing-Wan Leung, 78. He is reportedly a permanent resident of Hong Kong, a special administrative region of China, over which Beijing has near-absolute control. It is not known if Leung was a Chinese citizen at any time in his life. China does not recognize joint citizenship and requires its citizens to drop their Chinese citizenship when swearing allegiance to another country. The Reuters news agency reported on Monday that Leung was at some point a member of two American-based Chinese expatriate groups, which it described as “pro-China”. These are the United States-China Friendship Promotion Association and the United States-China Friendship Association.
Leung is believed to have been arrested in Hong Kong in 2021 by local Chinese counterintelligence officers. He has been held in prison ever since his arrest. A press release issued on Monday by the Intermediate People’s Court in Suzhou, a city located in southern Jiangsu province, 700 north of Hong Kong, said Leung had been found “guilty of espionage”. The press release added that Leung had been “sentenced to life imprisonment and deprived of [his] political rights for life”. However, the statement provided no information about Leung’s alleged crimes, or the country he was found to have spied for.
According to the BBC, the United States embassy in Beijing refused to discuss the details of this case, stating only that the United States government was aware of Leung’s conviction. An embassy spokesperson told the BBC that “the Department of State has no greater priority than the safety and security of US citizens overseas”.
► Author: Joseph Fitsanakis | Date: 15 May 2023 | Permalink
Filed under Expert news and commentary on intelligence, espionage, spies and spying Tagged with China, counterintelligence, espionage, Hong Kong, John Shing-Wan Leung, lawsuits, News, Suzhou (China), United States