ZeroFox Cyber Intelligence Daily Brief - October 19, 2024
|by Alpha Team

ZeroFox Cyber Intelligence Daily Brief - October 19, 2024
ZeroFox Intelligence collects, curates, and analyzes information derived from open and proprietary sources. Here is today’s daily roundup to give you and your clients an advantage over the adversary.
Brief Highlights
- Over 5,100 Arrests in Illegal Football Gambling Crackdown
- Solidarity Surges Among Pro-Palestine Hacktivists with Anonymous Sudan Arrests
- Constant GPS Jamming in Northeastern Norway Poses Major Risk to Pilots and Industries
Over 5,100 Arrests in Illegal Football Gambling Crackdown
What happened: A major international crackdown on illegal football gambling resulted in over 5,100 arrests and the recovery of more than USD 59 million in illicit funds. This unprecedented operation, code-named SOGA X, was carried out by INTERPOL in collaboration with 28 countries during the UEFA 2024 European Football Championship.
Why it matters: SOGA X was specifically designed to address illegal online football gambling during the UEFA 2024 European Championship, a period anticipated to see a significant increase in betting activity and profits for criminal organizations. This initiative is crucial in tackling a global illegal gambling market reportedly valued at an astounding USD 1.7 trillion, which is often intertwined with other criminal enterprises. Beyond shutting down tens of thousands of illegal websites, the investigations under SOGA X also resulted in the rescue of trafficked workers and the exposure of money laundering syndicates. This multifaceted approach not only disrupts financial crime but also safeguards vulnerable individuals, demonstrating the effectiveness of international collaboration in promoting safety and justice.
Solidarity Surges Among Pro-Palestine Hacktivists with Anonymous Sudan Arrests
Source: https://cloud.zerofox.com/intelligence/advanced_dark_web/72549
What happened: Following the arrest of Anonymous Sudan operatives, several pro-Palestine hacktivist groups—including Sylhet Gang, Mysterious Team Bangladesh, and UserSec—have claimed to team up as a pledge of solidarity for their “ally.” Operating under campaigns like #FreeAnonSudan, these groups announced plans to target U.S. sectors such as telecommunications, chemistry, and shipbuilding.
Why it matters: Anonymous Sudan has often cited its pro-Palestinian and pro-Russian stances as motivation behind its attacks. Sylhet Gang, Mysterious Team Bangladesh, and UserSec are ideologically aligned with Anonymous Sudan “against Western military and political influence.” Even though hacktivist attacks are often unsophisticated and relatively easy to mitigate, they can still cause disruptions, divert cybersecurity resources, and create reputational or operational issues for targeted industries, especially critical infrastructure.
Constant GPS Jamming in Northeastern Norway Poses Major Risk to Pilots and Industries
Source: https://www.wired.com/story/gps-jamming-is-screwing-with-norwegian-planes/
What happened: In northeastern Norway, constant GPS jamming, particularly in Finnmark, has become a major hazard for pilots and industries relying on accurate positioning. The jamming incidents, often attributed to Russian-Ukraine war, disrupt flight navigation systems, causing safety concerns as planes lose access to crucial terrain-avoidance data at high altitudes.
Why it matters: This persistent interference also impacts other sectors, such as construction and maritime operations. The situation has worsened since Russia’s 2022 invasion of Ukraine, leading to widespread disruptions across Europe’s eastern regions, with no clear solution in sight. This likely poses significant safety risks, since pilots rely on GPS, among other tools, for navigation and collision avoidance, especially in remote and mountainous areas. The disruption endangers flights, making airports without backup ground-based systems potentially inaccessible, which can affect both commercial and emergency operations. The jamming also affects other industries, including fishing, construction, and automated farming, leading to likely broader economic and operational disruptions.
VULNERABILITY AND EXPLOIT INTELLIGENCE
CVE-2024-49398: This critical severity bug makes the affected product vulnerable to unrestricted file uploads, which may allow an attacker to remotely execute code.
Affected products: CMe3100 Version 1.12.1
Tags: DIB, tlp:green