{"id":10240,"date":"2017-01-29T07:30:44","date_gmt":"2017-01-29T07:30:44","guid":{"rendered":"https:\/\/informnapalm.org\/en\/?p=10240"},"modified":"2017-01-29T07:30:44","modified_gmt":"2017-01-29T07:30:44","slug":"cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks","status":"publish","type":"post","link":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/","title":{"rendered":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks"},"content":{"rendered":"<p><strong>A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities. Layoffs and high treason criminal cases against senior FSB officials could be related to the recent successes of Ukrainian hacktivists.<\/strong><\/p>\n<p>In recent days, Russian media have been reporting on the arrest of Sergey Mikhailov, deputy head of the FSB Center for Information Security. He was arrested in December 2016 in a high treason case, but the hype in the press has started only now. Along with this story, Interfax reported the arrest of Ruslan Stoyanov, a top manager at Kaspersky Lab, also in December 2016 in the framework of the same proceedings.<\/p>\n<p>The experts of InformNapalm volunteer intelligence community wondered, why was there this month-long pause in reporting these events? Why is the Russian press pushing the version about the alleged connection of the arrested senior FSB officer with the Shaltai Boltai (Russian name for Humpty Dumpty) or Anonymous International hacker group?<\/p>\n<p>After analyzing numerous media reports, we noticed that another significant event was obscured by these reports. Alexander Pavlov, the head of the reception office of the Russian presidential aide Vladislav Surkov was dismissed, also in December 2016. However, only on January 20, 2017 <a href=\"http:\/\/www.vedomosti.ru\/politics\/articles\/2017\/01\/20\/673790-surkov-lishilsya\">Vedomosti<\/a> , a popular Russian business journal, reported that the Russian presidential aide had lost his chief of staff, and that his dismissal may be linked to a series of publications of the hacked correspondence of his reception office released by Ukrainian hackers in late 2016.<\/p>\n<p>The publication of Surkov&#8217;s office mail dump (#SurkovLeaks <a href=\"https:\/\/informnapalm.org\/en\/surkovleaks\/\">part 1<\/a> &amp; <a href=\"https:\/\/informnapalm.org\/en\/surkovleaks-part2\/\">part 2)<\/a> made a serious stir in the Western press. Its contents were verified and its authenticity confirmed by international OSINT and analytical organizations such as InformNapalm, Bellingcat, and Atlantic Council. Articles about the hacking of Surkov&#8217;s office appeared in the international media, including the BBC, <a href=\"http:\/\/time.com\/4558167\/cyberwar-us-russia-vladislav-surkov\/\">TIME<\/a>, The Daily Mail, The Times, Radio Free Europe \/ Radio Liberty, The Guardian and others. It was a severe blow to the image of the chief architect of the Russian Spring and Novorossia projects.<\/p>\n<p><iframe loading=\"lazy\" width=\"978\" height=\"550\" src=\"https:\/\/www.youtube.com\/embed\/IgAQauIrvp0?feature=oembed\" frameborder=\"0\" allowfullscreen><\/iframe><\/p>\n<p>The mail dumps from the office of Surkov contained references to the Russian billionaire Konstantin Malofeev. He is one of the primary financial sources for the Russian militants in Donbas and the founder of many informational projects, think tanks and <a href=\"https:\/\/informnapalm.org\/32361-katehon-i-novorosinform-kak-my-lovili-rossijskih-propagandistov-v-promyshlennyh-masshtabah\/\">analytical centers,<\/a> where he sits on supervisory boards together with the prominent Russian nationalist ideologue Alexander Dugin.<\/p>\n<p>On January 25, 2017 <a href=\"http:\/\/archive.is\/zcyAh\">the first report<\/a> about the connection of the deputy head of the FSB Center for Information Security Sergey Mikhailov with the hackers of the Shaltai Boltai group was published by Tsargrad.tv. \u201cCoincidentally\u201d, Tsargrads&#8217;s general producer is Konstantin Malofeev, and its editor is Alexander Dugin. Tsargrad referred to unnamed &#8220;own sources in law enforcement agencies&#8221;. The news quickly spread in the Russian media. Journalists jumped on the story, although the tone and content of it sounded rather like a conspiracy theory that had included \u201cCIA involvement&#8221; and other juicy details just to make it more exciting for the Russian audience.<\/p>\n<p>At the same time, Shaltai Boltai (Anonymous International) hacker group had been inactive for quite a while. Some of the most high-profile &#8220;CIA conspiracy&#8221; operations listed by Tsargrad for more dramatic effect were the hacks of Russian PM Dmitry Medvedev&#8217;s Twitter account in 2014 and Alexander Dugin(!) <a href=\"https:\/\/informnapalm.org\/3592-dugin-war\/\">e-mail account<\/a>, also in 2014.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft\" src=\"https:\/\/informnapalm.org\/wp-content\/uploads\/2017\/01\/16244120_1857937141151159_242089864_n.jpg\" width=\"235\" height=\"143\" \/><\/p>\n<p>We asked a representative of the <a href=\"https:\/\/informnapalm.org\/uca\/\">Ukrainian Cyber Alliance (UCA)<\/a> to explain the dismissals and arrests in the Russian cybersecurity community in December 2016.<\/p>\n<div class=\"su-quote su-quote-style-default\">\n<div class=\"su-quote-inner su-u-clearfix su-u-trim\">&#8220;These arrests look rather like an &#8220;exemplary flogging&#8221;. After getting into Surkov&#8217;s system, we made a small mistake, which exposed our traces to Kaspersky Lab&#8217;s people. They sniffed some outside interference, and we had to change our tactics quickly, so we could remain unnoticed and continue to monitor the mailboxes of Surkov&#8217;s office. Perhaps, heads started to roll, because they were unable to prevent the hack and the subsequent leak of the mail dumps. Thus a senior Kaspersky Lab employee and an FSB information security officer were arrested for &#8220;high treason&#8221;. It is strange that Surkov&#8217;s chief of staff got away with just a dismissal&#8221; <\/div>\n<\/div>\n<p>\u2013 the UCA hacktivist said<em>.<\/em><\/p>\n<p>Perhaps we can expect more media reports about the high-profile arrests and mysterious deaths of Russian security officers and civil servants. Apparently, it is not a coincidence that last week a number of Russian news agencies announced the impending major reshuffle at the FSB department dealing with cybersecurity. In particular, <a href=\"http:\/\/kommersant.ru\/doc\/3189312\">Kommersant<\/a> reported that Andrei Gerasimov, head of the FSB Center for Information Security, who has been in charge since 2009, may soon be fired. Gerasimov also served as FSB&#8217;s deputy director for counterintelligence. The publication stresses that his dismissal may mean the beginning of &#8220;great purges&#8221;. Russian companies in the field of information security will have to rebuild their relationship with the state, which effectively steers the industry through the FSB Center for Information Security.<\/p>\n<p>Who else will be jailed for high treason or be fired for a series of inexcusable blunders, including #SurkovLeaks, in the field of information security? We may not need to wait long to find out. The cyberwar is escalating, and Russia is continuing its attacks against Ukraine and NATO countries. However, Ukrainian hacktivists are doing their part by responding with their offensives against Russian targets. And the success in cyber warfare against the Russian intervention and propaganda is no less important for deterring the aggressor, than battle orders and modern weaponry.<em>\u00a0<\/em><\/p>\n<p><em>Material prepared by<\/em> <a href=\"https:\/\/twitter.com\/dewhitelist\"><strong><em>Andrew Lysytskiy<\/em><\/strong><\/a> <em>and<\/em> <strong><em><a href=\"https:\/\/www.facebook.com\/burkonews\">Roman Burko<\/a>,\u00a0<\/em><\/strong><em>translated by Artem Velichko, edited by Max Alginin<\/em><\/p>\n<p><em>\u00a0<a href=\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2016\/08\/InformNapalm_logo_05.png\"><img loading=\"lazy\" decoding=\"async\" class=\" wp-image-8997 alignleft\" src=\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2016\/08\/InformNapalm_logo_05.png\" alt=\"\" width=\"143\" height=\"63\" \/><\/a><\/em>(CC BY 4.0) This information has been specially prepared for\u00a0InformNapalm.org, an active link to the authors and our project is obligatory for any reprint or further public use of the material.<br \/>\nWe call on our readers to actively share our publications on social networks. Broad public awareness of these investigations is a major factor in the information and actual warfare.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A series of staff purges has begun in Russian security services responsible for cybersecurity of the state&#8230;<\/p>\n","protected":false},"author":106,"featured_media":10242,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"om_disable_all_campaigns":false,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[528,641,532],"tags":[714],"class_list":["post-10240","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-uca","category-world","tag-surkovleaks"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.9 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)<\/title>\n<meta name=\"description\" content=\"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)\" \/>\n<meta property=\"og:description\" content=\"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)\" \/>\n<meta property=\"og:url\" content=\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\" \/>\n<meta property=\"og:site_name\" content=\"InformNapalm.org (English)\" \/>\n<meta property=\"article:published_time\" content=\"2017-01-29T07:30:44+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"642\" \/>\n\t<meta property=\"og:image:height\" content=\"336\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"vasgri\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"vasgri\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\"},\"author\":{\"name\":\"vasgri\",\"@id\":\"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf\"},\"headline\":\"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks\",\"datePublished\":\"2017-01-29T07:30:44+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\"},\"wordCount\":991,\"commentCount\":1,\"image\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg\",\"keywords\":[\"SurkovLeaks\"],\"articleSection\":[\"News\",\"UCA\",\"World\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\",\"url\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\",\"name\":\"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)\",\"isPartOf\":{\"@id\":\"https:\/\/informnapalm.org\/en\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg\",\"datePublished\":\"2017-01-29T07:30:44+00:00\",\"author\":{\"@id\":\"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf\"},\"description\":\"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)\",\"breadcrumb\":{\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage\",\"url\":\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg\",\"contentUrl\":\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg\",\"width\":642,\"height\":336},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/informnapalm.org\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/informnapalm.org\/en\/#website\",\"url\":\"https:\/\/informnapalm.org\/en\/\",\"name\":\"InformNapalm.org (English)\",\"description\":\"Latest News from Ukraine\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/informnapalm.org\/en\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf\",\"name\":\"vasgri\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/informnapalm.org\/en\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/5851afa9a0b73acb616f1433ce0c88213f283b6c8f0d65289e0763ccd1703343?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/5851afa9a0b73acb616f1433ce0c88213f283b6c8f0d65289e0763ccd1703343?s=96&d=mm&r=g\",\"caption\":\"vasgri\"},\"url\":\"https:\/\/informnapalm.org\/en\/author\/vasgri\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)","description":"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/","og_locale":"en_US","og_type":"article","og_title":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)","og_description":"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)","og_url":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/","og_site_name":"InformNapalm.org (English)","article_published_time":"2017-01-29T07:30:44+00:00","og_image":[{"width":642,"height":336,"url":"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg","type":"image\/jpeg"}],"author":"vasgri","twitter_misc":{"Written by":"vasgri","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#article","isPartOf":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/"},"author":{"name":"vasgri","@id":"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf"},"headline":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks","datePublished":"2017-01-29T07:30:44+00:00","mainEntityOfPage":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/"},"wordCount":991,"commentCount":1,"image":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage"},"thumbnailUrl":"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg","keywords":["SurkovLeaks"],"articleSection":["News","UCA","World"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/","url":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/","name":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks - InformNapalm.org (English)","isPartOf":{"@id":"https:\/\/informnapalm.org\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage"},"image":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage"},"thumbnailUrl":"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg","datePublished":"2017-01-29T07:30:44+00:00","author":{"@id":"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf"},"description":"A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities (SurkovLeaks)","breadcrumb":{"@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#primaryimage","url":"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg","contentUrl":"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2017\/01\/cybercl.jpg","width":642,"height":336},{"@type":"BreadcrumbList","@id":"https:\/\/informnapalm.org\/en\/cyberwar-purges-in-russian-cybersecurity-could-be-connected-to-surkovleaks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/informnapalm.org\/en\/"},{"@type":"ListItem","position":2,"name":"Cyberwar: purges in Russian cybersecurity could be connected to #SurkovLeaks"}]},{"@type":"WebSite","@id":"https:\/\/informnapalm.org\/en\/#website","url":"https:\/\/informnapalm.org\/en\/","name":"InformNapalm.org (English)","description":"Latest News from Ukraine","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/informnapalm.org\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/informnapalm.org\/en\/#\/schema\/person\/d9ac22904157eeb67f0b60921e87d8bf","name":"vasgri","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/informnapalm.org\/en\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/5851afa9a0b73acb616f1433ce0c88213f283b6c8f0d65289e0763ccd1703343?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/5851afa9a0b73acb616f1433ce0c88213f283b6c8f0d65289e0763ccd1703343?s=96&d=mm&r=g","caption":"vasgri"},"url":"https:\/\/informnapalm.org\/en\/author\/vasgri\/"}]}},"post_src":"<strong>A series of staff purges has begun in Russian security services responsible for cybersecurity of the state authorities. Layoffs and high treason criminal cases against senior FSB officials could be related to the recent successes of Ukrainian hacktivists.<\/strong>\r\n\r\nIn recent days, Russian media have been reporting on the arrest of Sergey Mikhailov, deputy head of the FSB Center for Information Security. He was arrested in December 2016 in a high treason case, but the hype in the press has started only now. Along with this story, Interfax reported the arrest of Ruslan Stoyanov, a top manager at Kaspersky Lab, also in December 2016 in the framework of the same proceedings.\r\n\r\nThe experts of InformNapalm volunteer intelligence community wondered, why was there this month-long pause in reporting these events? Why is the Russian press pushing the version about the alleged connection of the arrested senior FSB officer with the Shaltai Boltai (Russian name for Humpty Dumpty) or Anonymous International hacker group?\r\n\r\nAfter analyzing numerous media reports, we noticed that another significant event was obscured by these reports. Alexander Pavlov, the head of the reception office of the Russian presidential aide Vladislav Surkov was dismissed, also in December 2016. However, only on January 20, 2017 <a href=\"http:\/\/www.vedomosti.ru\/politics\/articles\/2017\/01\/20\/673790-surkov-lishilsya\">Vedomosti<\/a> , a popular Russian business journal, reported that the Russian presidential aide had lost his chief of staff, and that his dismissal may be linked to a series of publications of the hacked correspondence of his reception office released by Ukrainian hackers in late 2016.\r\n\r\nThe publication of Surkov's office mail dump (#SurkovLeaks <a href=\"https:\/\/informnapalm.org\/en\/surkovleaks\/\">part 1<\/a> &amp; <a href=\"https:\/\/informnapalm.org\/en\/surkovleaks-part2\/\">part 2)<\/a> made a serious stir in the Western press. Its contents were verified and its authenticity confirmed by international OSINT and analytical organizations such as InformNapalm, Bellingcat, and Atlantic Council. Articles about the hacking of Surkov's office appeared in the international media, including the BBC, <a href=\"http:\/\/time.com\/4558167\/cyberwar-us-russia-vladislav-surkov\/\">TIME<\/a>, The Daily Mail, The Times, Radio Free Europe \/ Radio Liberty, The Guardian and others. It was a severe blow to the image of the chief architect of the Russian Spring and Novorossia projects.\r\n\r\nhttps:\/\/youtu.be\/IgAQauIrvp0\r\n\r\nThe mail dumps from the office of Surkov contained references to the Russian billionaire Konstantin Malofeev. He is one of the primary financial sources for the Russian militants in Donbas and the founder of many informational projects, think tanks and <a href=\"https:\/\/informnapalm.org\/32361-katehon-i-novorosinform-kak-my-lovili-rossijskih-propagandistov-v-promyshlennyh-masshtabah\/\">analytical centers,<\/a> where he sits on supervisory boards together with the prominent Russian nationalist ideologue Alexander Dugin.\r\n\r\nOn January 25, 2017 <a href=\"http:\/\/archive.is\/zcyAh\">the first report<\/a> about the connection of the deputy head of the FSB Center for Information Security Sergey Mikhailov with the hackers of the Shaltai Boltai group was published by Tsargrad.tv. \u201cCoincidentally\u201d, Tsargrads's general producer is Konstantin Malofeev, and its editor is Alexander Dugin. Tsargrad referred to unnamed \"own sources in law enforcement agencies\". The news quickly spread in the Russian media. Journalists jumped on the story, although the tone and content of it sounded rather like a conspiracy theory that had included \u201cCIA involvement\" and other juicy details just to make it more exciting for the Russian audience.\r\n\r\nAt the same time, Shaltai Boltai (Anonymous International) hacker group had been inactive for quite a while. Some of the most high-profile \"CIA conspiracy\" operations listed by Tsargrad for more dramatic effect were the hacks of Russian PM Dmitry Medvedev's Twitter account in 2014 and Alexander Dugin(!) <a href=\"https:\/\/informnapalm.org\/3592-dugin-war\/\">e-mail account<\/a>, also in 2014.\r\n\r\n<img class=\"alignleft\" src=\"https:\/\/informnapalm.org\/wp-content\/uploads\/2017\/01\/16244120_1857937141151159_242089864_n.jpg\" width=\"235\" height=\"143\" \/>\r\n\r\nWe asked a representative of the <a href=\"https:\/\/informnapalm.org\/uca\/\">Ukrainian Cyber Alliance (UCA)<\/a> to explain the dismissals and arrests in the Russian cybersecurity community in December 2016.\r\n\r\n[su_quote]\"These arrests look rather like an \"exemplary flogging\". After getting into Surkov's system, we made a small mistake, which exposed our traces to Kaspersky Lab's people. They sniffed some outside interference, and we had to change our tactics quickly, so we could remain unnoticed and continue to monitor the mailboxes of Surkov's office. Perhaps, heads started to roll, because they were unable to prevent the hack and the subsequent leak of the mail dumps. Thus a senior Kaspersky Lab employee and an FSB information security officer were arrested for \"high treason\". It is strange that Surkov's chief of staff got away with just a dismissal\" [\/su_quote]\u2013 the UCA hacktivist said<em>.<\/em>\r\n\r\nPerhaps we can expect more media reports about the high-profile arrests and mysterious deaths of Russian security officers and civil servants. Apparently, it is not a coincidence that last week a number of Russian news agencies announced the impending major reshuffle at the FSB department dealing with cybersecurity. In particular, <a href=\"http:\/\/kommersant.ru\/doc\/3189312\">Kommersant<\/a> reported that Andrei Gerasimov, head of the FSB Center for Information Security, who has been in charge since 2009, may soon be fired. Gerasimov also served as FSB's deputy director for counterintelligence. The publication stresses that his dismissal may mean the beginning of \"great purges\". Russian companies in the field of information security will have to rebuild their relationship with the state, which effectively steers the industry through the FSB Center for Information Security.\r\n\r\nWho else will be jailed for high treason or be fired for a series of inexcusable blunders, including #SurkovLeaks, in the field of information security? We may not need to wait long to find out. The cyberwar is escalating, and Russia is continuing its attacks against Ukraine and NATO countries. However, Ukrainian hacktivists are doing their part by responding with their offensives against Russian targets. And the success in cyber warfare against the Russian intervention and propaganda is no less important for deterring the aggressor, than battle orders and modern weaponry.<em>\u00a0<\/em>\r\n\r\n<em>Material prepared by<\/em> <a href=\"https:\/\/twitter.com\/dewhitelist\"><strong><em>Andrew Lysytskiy<\/em><\/strong><\/a> <em>and<\/em> <strong><em><a href=\"https:\/\/www.facebook.com\/burkonews\">Roman Burko<\/a>,\u00a0<\/em><\/strong><em>translated by Artem Velichko, edited by Max Alginin<\/em>\r\n\r\n<em>\u00a0<a href=\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2016\/08\/InformNapalm_logo_05.png\"><img class=\" wp-image-8997 alignleft\" src=\"https:\/\/informnapalm.org\/en\/wp-content\/uploads\/sites\/14\/2016\/08\/InformNapalm_logo_05.png\" alt=\"\" width=\"143\" height=\"63\" \/><\/a><\/em>(CC BY 4.0) This information has been specially prepared for\u00a0InformNapalm.org, an active link to the authors and our project is obligatory for any reprint or further public use of the material.\r\nWe call on our readers to actively share our publications on social networks. Broad public awareness of these investigations is a major factor in the information and actual warfare.","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/posts\/10240","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/users\/106"}],"replies":[{"embeddable":true,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/comments?post=10240"}],"version-history":[{"count":2,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/posts\/10240\/revisions"}],"predecessor-version":[{"id":10244,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/posts\/10240\/revisions\/10244"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/media\/10242"}],"wp:attachment":[{"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/media?parent=10240"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/categories?post=10240"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/informnapalm.org\/en\/wp-json\/wp\/v2\/tags?post=10240"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}