Red October (malware)

Operation Red October or Red October was a cyberespionage malware program discovered in October 2012 and uncovered in January 2013 by Russian firm Kaspersky Lab. The malware was reportedly operating worldwide for up to five years prior to discovery, transmitting information ranging from diplomatic secrets to personal information, including from mobile devices. The primary vectors used to install the malware were emails containing attached documents that exploited vulnerabilities in Microsoft Word and Excel.[1][2]Later, a webpage was found that exploited a known vulnerability in the Java browser plugin.[1][3]Red October was termed an advanced cyberespionage campaign intended to target diplomatic, governmental and scientific research organizations worldwide.

A map of the extent of the operation was released by the Kaspersky Lab – the "Moscow-based antivirus firm that uncovered the campaign."[4]

After being revealed, domain registrars and hosting companies shut down as many as 60 domains, used by the virus creators to receive information. The attackers, themselves, shut down their end of the operation, as well. [citation needed]

The perpetrator of the operation has not been conclusively determined but it appeared to have been in operation on some level since May 2007 at the latest. According to Kaspersky Lab, Russian slang words were found in the code which would be "generally unknown to non-native Russian speakers." However, the program also appeared to be built on existing exploits developed by Chinese hackers and previously used against Tibetan activists.[4]

Operation Red October Cyber Breaches[4]
CountryGovernmentEmbassy (Diplomatic)MilitaryNuclear / Energy ResearchAerospaceOil & Gas IndustryTrade and CommerceResearch InstitutionsUnknown Victims
 United StatesNoYesNoNoNoNoNoNoNo
 RussiaNoYesYesYesNoNoNoYesNo
 BelarusYesYesYesYesNoYesNoYesNo
 KazakhstanYesYesYesYesYesNoNoNoNo
 United Arab EmiratesYesYesNoYesNoYesNoNoNo
 AzerbaijanNoYesNoYesNoYesNoYesNo
 TurkmenistanYesNoNoYesNoYesNoNoNo
 AfghanistanYesYesYesNoNoNoNoNoNo
 MoldovaYesYesYesNoNoNoNoNoNo
 FranceNoYesYesNoNoNoNoNoNo
 SpainYesYesNoNoNoNoNoNoNo
 ArmeniaYesYesNoNoNoNoNoNoNo
 CyprusYesYesNoNoNoNoNoNoNo
 IraqYesNoNoNoNoNoNoNoNo
 BruneiYesNoNoNoNoNoNoNoNo
 LuxembourgYesNoNoNoNoNoNoNoNo
 IndiaNoYesNoNoNoNoNoNoNo
 UgandaNoYesNoNoNoNoNoNoNo
 PakistanNoYesNoNoNoNoNoNoNo
 OmanNoYesNoNoNoNoNoNoNo
 Saudi ArabiaNoYesNoNoNoNoNoNoNo
 ItalyNoYesNoNoNoNoNoNoNo
 PortugalNoYesNoNoNoNoNoNoNo
 MoroccoNoYesNoNoNoNoNoNoNo
 IsraelNoYesNoNoNoNoNoNoNo
 JordanNoYesNoNoNoNoNoNoNo
 GreeceNoYesNoNoNoNoNoNoNo
 IrelandNoYesNoNoNoNoNoNoNo
 BelgiumNoYesNoNoNoNoNoNoNo
 GermanyNoYesNoNoNoNoNoNoNo
 HungaryNoYesNoNoNoNoNoNoNo
 MauritaniaNoYesNoNoNoNoNoNoNo
 CongoNoYesNoNoNoNoNoNoNo
 South AfricaNoYesNoNoNoNoNoNoNo
 BotswanaNoYesNoNoNoNoNoNoNo
 MozambiqueNoYesNoNoNoNoNoNoNo
 TanzaniaNoYesNoNoNoNoNoNoNo
 KenyaNoYesNoNoNoNoNoNoNo
 LithuaniaNoYesNoNoNoNoNoNoNo
 LatviaNoYesNoNoNoNoNoNoNo
 TurkeyNoYesNoNoNoNoNoNoNo
 IranNoYesNoNoNoNoNoNoNo
 UzbekistanNoYesNoNoNoNoNoNoNo
 KuwaitNoYesNoNoNoNoNoNoNo
  SwitzerlandNoYesNoNoNoNoNoNoNo
 LebanonNoYesNoNoNoNoNoNoNo
 AustriaNoYesNoNoNoNoNoNoNo
 GeorgiaNoYesNoNoNoNoNoNoNo
 Bosnia & HerzegovinaNoYesNoNoNoNoNoNoNo
 SerbiaNoNoNoNoNoNoNoNoYes
 FinlandNoNoNoNoNoNoNoNoYes
 Czech RepublicNoNoNoNoNoNoNoNoYes
 SlovakiaNoNoNoNoNoNoNoNoYes
 MacedoniaNoNoNoNoNoNoNoNoYes
 AlbaniaNoNoNoNoNoNoNoNoYes
 MaliNoNoNoNoNoNoNoNoYes
 AustraliaNoNoNoNoNoNoNoNoYes
 ChileNoNoNoNoNoNoNoNoYes
 BrazilNoNoNoNoNoNoNoNoYes
 EthiopiaNoNoNoNoNoNoNoNoYes
 BulgariaNoNoNoNoNoNoNoNoYes
 BahrainNoNoNoNoNoNoNoNoYes
 SlovakiaNoNoNoNoNoNoNoNoYes

References