Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

FBI Warns of Hacktivist DDoS Attacks in “Operation New Son”

FBI Sends Warning to InfraGard Members of Possible Memorial Day Attacks

On Thursday, the FBI issued an alert to InfraGard members, warning them about an alleged plot to launch a series of DDoS attacks against high profile corporations. The campaign, titled OpNewSon (Operation NewSon), was initially proposed in April by a group of Anonymous supporters using the name TheWikiBoat.

FBI Sends Warning to InfraGard Members of Possible Memorial Day Attacks

On Thursday, the FBI issued an alert to InfraGard members, warning them about an alleged plot to launch a series of DDoS attacks against high profile corporations. The campaign, titled OpNewSon (Operation NewSon), was initially proposed in April by a group of Anonymous supporters using the name TheWikiBoat.

The FBI’s warning, which was sent from the Public/Private Alliance Unite (PPAU) appeared on Friday in a report published by ThreatPost. The PPAU is the FBI unit responsible for managing InfraGard. 

The letter lists 46 proposed targets including Apple, HP, Toyota, Wal-Mart, Wells Fargo, Bank of America, KPMG, Cargill, and IBM, just to name a few. The warning, as the letter explains, is sourced from public reports, but is relevant to the FBI’s ongoing investigations into hacktivist groups associated with Anonymous.

One of the public reports is a Pastebin post from April. In it, a group calling itself “TheWikiBoat” says that OpNewSon’s intended goals are cyber protest – such as DDoS – and the release of “precious classified data.”

“Those targets are none other then the ones who ultimately rule: the high revenue making companies of the world. While attacking the major companies of this planet may seem lulzy, we also wish that this operation make a difference. We are “sticking it to the man” so to speak. Our hopes are set out on this being a major operation because after all, we will be hitting major corporate/incorporate associations,” the notice explains.

While the list of proposed targets mentioned by the FBI consist of the usual suspects, such as banks and large corporate powers, others on the list are questionable, such as Kroger – a grocery store chain in the Midwest, McDonalds, BestBuy, and organizations in China and Japan.

While targeting technology giants, banks and related financial firms would be expected when “sticking it to the man,” it isn’t clear how a grocer, retail outlet, or fast food chain fit into the mix.

Advertisement. Scroll to continue reading.

Two separate sources speaking on the condition that they remain anonymous (ironic no?) as they were not authorized to speak on record to the media, confirmed the letter as authentic. One of them, who happens to work within the IT department of an organization proposed as a target, said that the intent of the letter is clear; it’s just a basic heads up.

However, the Memorial Day holiday means that some IT departments will be running skeleton crews.

“If you’re already understaffed, holidays and summer vacations can add additional strain. The PPAU knows this, so the letter is a warning to remain vigilant and keep your eyes open,” the InfraGard member explained.

“In a situation like this, we’ll monitor the servers and tune the heads-up to look spikes in traffic that doesn’t follow the norm. Otherwise, we have to trust in our current defenses and our IR [Incident Response] plans.”

OpNewSon is slated to start later this afternoon. We’ll update this story if there is anything further to report.

Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.