RateCaptain
  • Home
    • About Us
    • Contact Us
  • FX Rates
  • Money Market
  • Cryptocurrency
  • Commodities
  • Corporates
No Result
View All Result
Subscribe
  • Home
    • About Us
    • Contact Us
  • FX Rates
  • Money Market
  • Cryptocurrency
  • Commodities
  • Corporates
No Result
View All Result
RateCaptain
No Result
View All Result
Home Technology

UN Computers Breached By Hackers

Rate Captain by Rate Captain
September 9, 2021
in Technology
Reading Time: 4 mins read
A A
0
Share on FacebookShare on TwitterShare on WhatsappShare on Telegram

AlsoRead

ChatGPT Incorporates Content from Elon Musk’s Controversial Grokipedia in Responses

EU Fines Delivery Hero and Glovo €329M for Online Food Delivery Cartel

Airtel Drives Nigerian Stock Market to Record High, Surpassing N70 Trillion Mark

Hackers breached the United Nations’ computer networks earlier this year and made off with a trove of data that could be used to target agencies within the intergovernmental organization.

The hackers’ method for gaining access to the UN network appears to be unsophisticated: They likely got in using the stolen username and password of a UN employee purchased off the dark web.

The credentials belonged to an account on the UN’s proprietary project management software, called Umoja. From there, the hackers were able to gain deeper access to the UN’s network, according to cybersecurity firm Resecurity, which discovered the breach. The earliest known date the hackers obtained access to the UN’s systems was April 5, and they were still active on the network as of Aug. 7.

“Organizations like the UN are a high-value target for cyber espionage activity,” Resecurity Chief Executive Officer Gene Yoo said. “The actor conducted the intrusion with the goal of compromising large numbers of users within the UN network for further long-term intelligence gathering.”

The attack marks another high-profile intrusion in a year when hackers have grown more brazen. JBS SA, the world’s largest meat producer, was hit by a cyberattack this year that forced the shutdown of U.S. plants. Colonial Pipeline Co., operator of the biggest U.S. gasoline pipeline, also was compromised by a so-called ransomware attack. Unlike those hacks, whoever breached the UN didn’t damage any of its systems, but instead collected information about the UN’s computer networks.

Resecurity informed the UN of its latest breach earlier this year and worked with organization’s security team to identify the scope of the attack. UN officials informed Resecurity that the hack was limited to reconnaissance, and that the hackers had only taken screenshots while inside the network. When Resecurity’s Yoo provided proof to the UN of stolen data, the UN stopped corresponding with the company, he said.

The Umoja account used by the hackers wasn’t enabled with two-factor authentication, a basic security feature. According to an announcement on Umoja’s website in July, the system migrated to Microsoft Corp.’s Azure, which provides multifactor authentication. That move “reduces the risk of cybersecurity breaches,” an announcement on Umoja’s site read.

The UN didn’t respond to requests for comment.

The UN and its agencies have been targeted by hackers before. In 2018, Dutch and British law enforcement foiled a Russian cyberattack against the Organisation for the Prohibition of Chemical Weapons as it probed the use of a deadly nerve agent on British soil. Then, in August 2019, the UN’s “core infrastructure” was compromised in a cyberattack that targeted a known vulnerability in Microsoft’s SharePoint platform, according to a report by Forbes. The breach wasn’t publicly disclosed until it was reported by the New Humanitarian news organization.

In the latest breach, hackers sought to map out more information about how the UN’s computer networks are built, and to compromise the accounts of 53 UN accounts, Resecurity said. Bloomberg News wasn’t able to identify the hackers or their purpose in breaching the UN.

Bloomberg News did review dark web ads where users across at least three marketplaces were selling these same credentials as recently as July 5.

The reconnaissance carried out by the hackers may enable them to conduct future hacks or to sell the information to other groups that may seek to breach the UN.

“Traditionally, organizations like the United Nations have been targeted by nation state actors, but as cybercriminals are finding ways to more effectively monetize stolen data and as access to these organizations is more frequently available for sale by initial access brokers, we expect to see them increasingly targeted and infiltrated by cybercriminals,” said Allan Liska, a senior threat analyst at Recorded Future. Liska said he had seen the username and password for UN employees for sale on the dark web.

The credentials have been offered by multiple Russian-speaking cybercriminals, according to Mark Arena, chief executive officer of security-intelligence firm Intel 471. The UN credentials were being sold as part of a patch of dozens of usernames and passwords to various organizations for just $1,000.

“Since the start of 2021 we’ve seen multiple financially motivated cybercriminals selling access to the Umoja system run by the United Nations,” Arena said. “These actors were selling a broad range of compromised credentials from a multitude of organizations at the same time. In a number of previous occasions, we’ve seen compromised credentials being sold to other cybercriminals, who have undertaken follow up intrusion activity within these organizations.”

Previous Post

Minister Of Trade – Trade Ministry Considering Robust Roles In The Economy

Next Post

Facebook And Ray- Ban May Launch Smart Glasses On The 9th September

Related News

AI chatbot ChatGPT stumbles as it reaches its limitations of intelligence.

ChatGPT Incorporates Content from Elon Musk’s Controversial Grokipedia in Responses

by Victoria Attah
January 26, 2026
0

OpenAI's ChatGPT has begun referencing material from Grokipedia, the AI-generated encyclopedia created by Elon Musk's xAI, in some of its...

GDP in Euro Area Declines by 0.1%, While EU Records a Modest 0.1% Increase

EU Fines Delivery Hero and Glovo €329M for Online Food Delivery Cartel

by Stephen Akudike
June 3, 2025
0

On June 2, 2025, the European Commission imposed a €329 million fine on Delivery Hero and its subsidiary Glovo for...

Airtel Nigeria Witnesses Surge in Data Consumption and Revenue Growth Amid 4G Expansion.

Airtel Drives Nigerian Stock Market to Record High, Surpassing N70 Trillion Mark

by Victoria Attah
May 28, 2025
0

On May 28, 2025, the Nigerian All-Share Index (NGX ASI) soared to a record high of 111,606.22, gaining 1,721.29 points...

NCC warns against the insecurity of WhatsApp.

Global WhatsApp Outage, Nigerians are feeling the Heat

by Victoria Attah
May 27, 2025
0

Today, May 27, 2025, WhatsApp, the messaging colossus that underpins daily communication for billions, ground to a halt. For several...

Next Post

Facebook And Ray- Ban May Launch Smart Glasses On The 9th September

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

World Bank Emphasizes Cash Transfers to Break Poverty Cycle in Nigeria

Nigerian Companies Secure Over $2.5 Billion in World Bank Contracts, Rank Fifth Globally

January 28, 2026
Nigeria Plans New FX Rules, Targeting 750 Naira Exchange Rate

Naira Strengthens to N1,400.66/$ in Official Market as US Dollar Weakens Globally

January 28, 2026

Popular Story

  • 2024 Budget Outline: Oil Price Set at $77.96, Naira Stands at 750 Against the Dollar

    Nigeria and UAE Sign Landmark Trade Deal to Eliminate Tariffs on Thousands of Products

    0 shares
    Share 0 Tweet 0
  • Dangote Refinery Suspends Petrol Sales and Cancels Contracts as Crude Supply Issues Bite

    0 shares
    Share 0 Tweet 0
  • US Records $1.45 Billion Trade Surplus with Nigeria in First 10 Months of 2025 as Exports Surge 60%

    0 shares
    Share 0 Tweet 0
  • National Grid Collapses Again, Plunging Nigeria into Nationwide Blackout

    0 shares
    Share 0 Tweet 0
  • Nigeria Customs Service Surpasses N7.2 Trillion Revenue Target in 2025

    0 shares
    Share 0 Tweet 0
RateCaptain

RateCaptain

We bring you the most accurate in new and market data. Check our landing page for details.

  • Home
  • About Us
  • Privacy Policy
  • Terms & Conditions
  • Disclaimer
  • Cookie Policy
  • Contact Us

Copyright © 2022 RateCaptain - All rights reserved by RateCaptain.

No Result
View All Result
  • Home
    • About Us
    • Contact Us
  • FX Rates
  • Money Market
  • Cryptocurrency
  • Commodities
  • Corporates

Copyright © 2022 RateCaptain - All rights reserved by RateCaptain.

RateCaptain
Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
?>