プロのハッカーであるアリスは、ある組織のクラウドサービスを標的にしました。彼女はスピアフィッシングメールを送信することで標的のMSPプロバイダーに侵入し、カスタムメイドのマルウェアを配布してユーザーアカウントを侵害し、クラウドサービスへのリモートアクセスを取得しました。さらに、彼女は自身のMSPアカウントを使用して標的の顧客プロファイルにアクセスし、顧客データを圧縮してMSPに保存しました。そして、この情報を利用して、標的の組織へのさらなる攻撃を開始しました。上記のシナリオにおいて、アリスが実行したクラウド攻撃は次のどれですか?
正解:A
Operation Cloud Hopper was an in depth attack and theft of data in 2017 directed at MSP within the uk (U.
K).), us (U.S.), Japan, Canada, Brazil, France, Switzerland, Norway, Finland, Sweden, South Africa , India, Thailand, South Korea and Australia. The group used MSP as intermediaries to accumulate assets and trade secrets from MSP client engineering, MSP industrial manufacturing, retail, energy, pharmaceuticals, telecommunications, and government agencies.
Operation Cloud Hopper used over 70 variants of backdoors, malware and trojans. These were delivered through spear-phishing emails. The attacks scheduled tasks or leveraged services/utilities to continue Microsoft Windows systems albeit the pc system was rebooted. It installed malware and hacking tools to access systems and steal data.