It'd be useful if someone at State could inform CISA of the meaning of the term "nation-state", unless CISA is very subtly trying to signal which particular countries these attacks are coming from, since nation-states are a small subset of all countries.
Nation-state has a few different uses, the most common of which seems to be exactly what is correctly used here, the principal soveriegn subjects of international law under the Westphalian system (these are typically know in international law as simply “states” but outside of documents of a clearly international-law character, that is easily conflated with other meanings of “state”, especially in places like the US w…
Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
11–20 of 24 posts
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#12Earlier quoted context omitted.
Nation-state has a few different uses, the most common of which seems to be exactly what is correctly used here, the principal soveriegn subjects of international law under the Westphalian system (these are typically know in international law as simply “states” but outside of documents of a clearly international-law character, that is easily conflated with other meanings of “state”, especially in places like the US w…
Whatever else is going on with terms like "nation-state", there's some creepy politics behind the notion that countries are generally nations. I'm fine with the idea that "nation-states" don't generally exist. The word "state" in "state-level actor" is unambiguous.
If you mean a “major regional power”-level actor, or a “global superpower”-level actor, then say that, but a category that includes both the United States of America and Tuvalu isn't communicating a coherent capability level in any domain.
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#13Earlier quoted context omitted.
Whatever else is going on with terms like "nation-state", there's some creepy politics behind the notion that countries are generally nations. I'm fine with the idea that "nation-states" don't generally exist. The word "state" in "state-level actor" is unambiguous.
Honestly, with or without “nation-”, “state-level actor” is a useless phrase, because (other than juridically ), “state” isn't a level of an actor (particularly, it isn’t a capability level.) If you mean a “major regional power”-level actor, or a “global superpower”-level actor, then say that, but a category that includes both the United States of America and Tuvalu isn't communicating a coherent capability level in…
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#14It'd be useful if someone at State could inform CISA of the meaning of the term "nation-state", unless CISA is very subtly trying to signal which particular countries these attacks are coming from, since nation-states are a small subset of all countries.
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#150.0.0[.]0 instead of 0.0.0.0
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#16Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#17Context for people reading the comments: CVE-2022-47966 is a Zoho vulnerability, while the other is a fortigate one, both are RCEs Both have had public PoCs published at least early this year, there's a bunch more of publicly known RCEs that are still unpatched and used by some tens of thousands of machines, according to Shodan
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#18It'd be useful if someone at State could inform CISA of the meaning of the term "nation-state", unless CISA is very subtly trying to signal which particular countries these attacks are coming from, since nation-states are a small subset of all countries.
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#19Can we just eliminate bad actor nation states like China and Israel from the Internet? Filter all packets coming from or going to there, have the backbone spyware sever proxy connections, etc? One year the first time, forever with repeat offenders.
FAANG is located in USA. /s
Re: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
#20It'd be useful if someone at State could inform CISA of the meaning of the term "nation-state", unless CISA is very subtly trying to signal which particular countries these attacks are coming from, since nation-states are a small subset of all countries.