Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - What You Going To Do When The Nation- State Hackers Come For You?
Articles

What You Going To Do When The Nation- State Hackers Come For You?

ISBuzz TeamBy ISBuzz TeamAugust 2, 2016Updated:July 4, 20244 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

It’s a well-known fact that nation states have almost unlimited cyber powers.
Nation states with unlimited military resources, technical know-how and political motivation gave rise to the infamous APT (“Advanced Persistent Threat”), meaning that an adversary with enough resources and motivation has the ability to hack anyone, regardless of their security mechanisms.

While both an APT campaign and a cybercriminal campaign pose significant threats, the underlying motive for the attacks greatly differ. APT campaigns are executed to collect information, to sabotage or perform other politically driven initiatives, whereas cybercriminals are often only after monetary gain. Given that APT has an almost mythical aura in the industry, many individuals assume that such powerful tool would not be directed towards an innocent commercial organization. APT hackers have proven that they can hack into proprietary air-gapped systems, so surely they can bypass any commercial security product. But if APT hackers do focus on SMBs, what can an SMB do to protect themselves?

On one hand we acknowledge the potential menacing threat and on other realize there’s nothing we can do about it. This realization justifies our inaction toward APT and is the reason we do not bother ourselves with it. Much like how we concern ourselves with protecting ourselves from a great white shark, simply because it can “devour” us, yet more people die from bee stings than by shark attacks. We turn a blind eye to the real threat simply because we have a more plausible scapegoat to focus on.

Although APT campaigns have been in strong force since the beginning of 2016, their main penetration vector was not through some highly secretive zero-day backdoor hardware manipulation. In reality, APT campaigns were distributed in many cases through old-fashioned email.

For example, in June, researchers from Palo Alto Networks discovered a targeted attack against an individual working for the Foreign Ministry of Uzbekistan in China. A spear-phishing email was sent to a diplomat bearing an infected word document carrying the well-known NetTraveler Trojan. Then, earlier this year, researchers from the same company identified a cyber-espionage campaign linked to an Iranian hacking group that focused on government and other high-value targets across the world that has been going on for the past nine years. The attacker managed to compromise a Gmail account used by Israeli officials and used it to send emails with malicious Word and PowerPoint files to an Israeli industrial organization. Additionally, similar malicious emails were sent to a US government official.

The list goes on and on. No matter how advance the malware used to target these organizations or individuals, it was still, in many cases, delivered by email. APTs work their down the supply chain to lower level employees, until the find a weak link and exploit it to then get to their intended target. Sophisticated cyber-crime campaigns have used the same method, as in the famous Target breach, that started when a less secure HVAC vendor was breached by a spear phishing email. This then allowed the hackers to utilize a maintenance link the vendor had as a backdoor to Target’s IT system, and, ultimately, their point of sale devices.

In our interconnected world, almost anyone can be used as a “bridge” to access more lucrative targets. But, if an organization maintains strict email security, it will most likely prevent most of the malware from coming in, regardless of the source, motivation and capabilities.

So, how can a SMB prepare for a possible APT attack? The same as it should prepare for its day-to-day threats. The bottom line is the same – take care of your basic security. Make sure the likely threats vectors, such as email, web etc., are covered (driven by cost effective calculation) and that the height of your protective fence is at least as high as your neighbors.

[su_box title=”About Dotan Bar Noy” style=”noise” box_color=”#336588″][short_info id=’84414′ desc=”true” all=”false”][/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

May 20, 20265 Mins Read

Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

May 6, 20265 Mins Read

Why OSINT deserves the same status as other intelligence disciplines

March 17, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}