Hackers target WHO as coronavirus spread surges

Attacks on the organisation have dramatically increased since a pandemic was declared

The World Health Organisation (WHO) revealed it had been the target of an unsuccessful hacking attempt that occurred at the start of March, as the coronavirus went from outbreak to pandemic.

The organisation's CISO, Flavia Aggio, told Reuters that it wasn't clear who had attempted to breach the WHO's security, but hacking attempts against the agency and its partners have doubled since the outbreak. 

This latest attempt was first spotted by Alexander Urbelis, a cyber security expert and attorney with New York-based Blackstone Law Group. Urbeils had been following a group of hackers and spotted a malicious site mimicking the WHO's internal email system around 13 March. 

Urbelis couldn't confirm who was behind the attack, but another unnamed source told Reuters they suspected an elite group known as DarkHotel. 

There is very little detail on DarkHotel, but according to Securelist it's been operating since at least 2007 and has an alarming success rate with phishing campaigns.

The timing of this latest attack could not come at a worse time for the WHO, as COVID-19 spreads around the world, but this is just one of a number of attempts to breach its security.

"Criminals are disguising themselves as WHO to steal money or sensitive information," the organisation wrote in a blog post. "If you are contacted by a person or organisation that appears to be from WHO, verify their authenticity before responding.

"The only call for donations WHO has issued is the COVID-19 Solidarity Response Fund, which is linked to below. Any other appeal for funding or donations that appears to be from WHO is a scam." 

Despite the global pandemic, cyber criminals are showing no ethical boundaries and will continue to attack wherever there could be a vulnerability, according to cyber security expert Jake Moore. 

"What the cyber security industry needs to do now is come together and support each other," he said. "There is no better time to work collaboratively and share best practice. If the WHO is taken down, this pandemic could last longer than it needs to, so it is vital to help protect this organisation from attack."

Featured Resources

B2B under quarantine

Key B2C e-commerce features B2B need to adopt to survive

Download now

The top three IT pains of the new reality and how to solve them

Driving more resiliency with unified operations and service management

Download now

The five essentials from your endpoint security partner

Empower your MSP business to operate efficiently

Download now

How fashion retailers are redesigning their digital future

Fashion retail guide

Download now

Recommended

X-rated phishing attacks just keep growing
phishing

X-rated phishing attacks just keep growing

4 Jun 2021
Nigerian cyber criminals target Texas unemployment system
cyber security

Nigerian cyber criminals target Texas unemployment system

27 May 2021
Hackers use open source Microsoft dev platform to deliver trojans
Security

Hackers use open source Microsoft dev platform to deliver trojans

14 May 2021
eBay, Apple, Microsoft, Facebook, and Google were phishers’ top targets in 2020
phishing

eBay, Apple, Microsoft, Facebook, and Google were phishers’ top targets in 2020

20 Apr 2021

Most Popular

Salesforce's $28bn Slack acquisition: What's next for workplace collaboration?
collaboration

Salesforce's $28bn Slack acquisition: What's next for workplace collaboration?

22 Jul 2021
UK gun owners urged to be ‘vigilant’ after Guntrader data breach
data breaches

UK gun owners urged to be ‘vigilant’ after Guntrader data breach

23 Jul 2021
Samsung Galaxy S21 5G review: A rose-tinted experience
Mobile Phones

Samsung Galaxy S21 5G review: A rose-tinted experience

14 Jul 2021