The hackers' carnival: How do they dig for gold in the Rio Olympic Games?

In Rio, there are not only sportsmen, fans or samba dancers, but also a group of scammers who hide in the corners.

Earlier, the Rio police had issued a warning warning tourists to be aware of possible crimes and terrorist incidents, but what is more alarming is digital information security.

Not only will 500,000 visitors to Rio become targets of attack, along with sponsors of the International Olympic Committee (IOC): famous companies such as Coca-Cola, General Electric, McDonald's, Visa, Samsung, and Bridgestone, and even lying at home. People watching the Olympic Games video are also the "gold mines" for fraudsters.

Let's take a look at what these online fraudsters are all full of malicious "sets".

Relegation I. Pre-match pre-sale tickets (target group: fans planning to visit the Rio stadium)

"The Olympic Games has attracted a lot of people. For hackers, the main question is: ' How can these people get some money out? '" said Thomas Fischer, a researcher at Digital Guardian Security in the United States.

As early as the spring of this year, Kaspersky, Russia, had made relevant reports. Internet fraudsters have already obtained Rio's first pot of gold by selling fake tickets. The report pointed out: "The phishing website uses the excuse of selling fake tickets to ask users to provide private information such as bank account details. After the criminals extract this information and steal money from the victim's bank account. In order to obtain the trust of the other, the criminals will also It is promised that tickets will be received two or three weeks before the scheduled event."

The intention to go to Rio Olympic fans is the “fat fish” of phishing emails, because the number of such groups is really huge, and the number of hackers succeeding is also quite large.

Pathway II. Malicious ransomware (target group: people who are watching the game at home)

Large sports games are a paradise for malicious ransomware. Even those who do not intend to go to Rio and watch videos at home are not spared. During the Olympic Games, mail, social media posts will provide a large number of video links, apps, games and other content, people click on it will be infected with a malicious virus, resulting in the computer can not use only forced to pay ransom. Similar situations have occurred at the 2014 World Cup and the Sochi Winter Olympics in the same year. (For this, Xiao Bian reminds you to come across this type of ransomware virus. Check out this article "Retalizing hacking! This website helps you to decrypt hacked files for free" to get some self-help measures.)

In addition, fraudsters also invite the audience to participate in the Olympic Games gambling. And even if these people involved in illegal gambling are counted, even if they are aware of the problems, they will not dare to call the police.

"The first thing to do is to be vigilant about this kind of link. If something seems to be a 'pie' thing in heaven, then it is definitely a trap ." Senior Vice President, Symantec Cyber ​​Security Services President Samir Kapuria said.

Retreat 3, steal bank card information (target group: Rio locals)

Of course, bank card readers and ATMs are certainly the focus areas for attacks. In one case, the fraudsters implanted a plastic scanner in the ATM machine, read the chip information on the bank card, and the user entered a four-digit PIN code. In another case, the fraudsters inserted a modified bank card into the regular reader and implanted malware on it. After that, the bank card information used on this machine was automatically transmitted to the fraudsters. The fraudster then copied the same bank card and stole money.

This is a sports reporter who goes to Rio to describe his own tragic experience. "Rio welcomes my time: In the convenience store of the IOC's main news center, my card was blacked out just after the credit card was used."

Last year, 49% of Brazilians claimed that they had been credit card fraud, a ratio that was 19% higher than the previous year. According to the surveys of ACI Worldwide and Aite Group, only Mexico has a top 56% fraud rate that exceeds Brazil. The U.S. ratio is 47%, ranking third.

Retreat IV, Wi-Fi hotspots (target crowd: tourists who like to take selfies)

It's hard to come to Rio and take a selfie, of course, which means that visitors will inevitably connect outdoors and share their photos on social networks. The fraudsters found the "pain point" well and deliberately set up Wi-Fi for tourists to use, then secretly recorded the visitors' online activities and data.

Last month, Kaspersky analyzed more than 4,500 wireless network hotspots near Rio and found that about a quarter of them had security holes. These networks either use old encryption algorithms or simply do not have encryption.

Fischer said: "Hackers can record all data traffic and analyze it in real time, or leave it for later analysis and look for a username and password."

Near the Olympic venues, staff can monitor and close suspicious wireless hotspots, but at the gathering place of tourists outside the venue, they can't do anything.

The way to resist these malicious Wi-Fis is: VPN. Kapuria recommends that people who use public wireless networks outdoors can protect their privacy through VPN connections. Because when using a VPN, their network data is encrypted before it is sent out.

In this regard, Brazil is also working hard to improve this situation. Aptilo Networks, a wireless technology provider in Stockholm, said that it is working with telecom operators to provide wireless network connectivity for Olympic venues, transportation hubs, beaches and cafes. Brazilian telecommunications company Linktel stated that they are working with Aptilo and are working with international Wi-Fi operators such as Boingo and AT&T to enable their customers to use the Linktel local network.

Pathway 5, Botnet (target group: all of you)

Some aggressive hackers or evildoers may disrupt this world event by attacking the Olympic Games' network infrastructure.

The biggest attack that hackers can do is "a denial of service attack ." Disturb the tight schedule by disrupting the networks used by the referees to communicate their scores or other data. One type of attack is to block the official wireless network, or to embed malicious packets to force the network to disconnect continuously, making data difficult to pass through.

Denial-of-service attacks often rely on "botnets," and hackers use a large number of servers to generate massive data requests to attack target servers, causing them to crash. According to the 2016 Symantec Internet Security Report, Brazil is one of the top 10 botnets in the world.

Fischer said: "If hackers initiate a denial of service attack, the game process will be interrupted. This is worse than any other attack."

Ideally, Olympic Games organizers will be able to record these types of attacks and use signal detection equipment to find the source of the attack.

France’s Atos SE, the official IOC partner of the International Olympic Committee, said in a statement to Bloomberg that cyber security is very important and they have “adopted the latest technology to protect the IT facilities and systems of the competition. Not attacked."

The Olympics have been fortunate and hope that God will protect Rio.

Via Fastcompany

25MM Metal Switches

25MM Metal Switches

25MM Metal Switches are fashion in appearance and excellent in quality with IP67 dust-proof and waterproof grade. The Power start control system has always enjoy the sound reputation in the long-term international transaction. 25MM mounting hole metal Anti-Vandal Switch could equip with LED light, it can be two-color LED light bead, such as red and green, or red and blue color.


Anti-Vandal Switch

This series Metal Push Button Switch has obtained relevant quality certifications in Europe and the United States, and can be used for dust-proof, oil-proof and waterproof stains in harsh working environments. All the material has passed the strict customs declaration to ensure that this metal switches could meets the requirements of green environmental protection in Europe and America. REACH contains Substances High Concern SVHS, also could offer our customers PPAP reports. We are paying very close attention to Green environmental protection project, which is not only our requirements on products, but also our company's attitude towards the international environmental project.


Stainless Steel Switch


The research and development department of Taiwan's head office has put much more emphasize on research and development on the existing basis, innovate the Illuminated Push Button Switch to achieve 50,000 electrical life under 16A125VC and 16A250VAC conditions. And could have 10,000 electrical life up under 26A125VC and 26A250VAC condition, offering our customers reliable quality guarantee.

25Mm Metal Switches,25Mm Anti-Vandal Switch,Waterproof Metal Switch,Metal Push Button Switch

YESWITCH ELECTRONICS CO., LTD. , https://www.yeswitches.com