Microsoft's digital crimes unit says cyber crime attacks by nation-state actors are expected to increase in the coming years. Getty Images
Microsoft's digital crimes unit says cyber crime attacks by nation-state actors are expected to increase in the coming years. Getty Images
Microsoft's digital crimes unit says cyber crime attacks by nation-state actors are expected to increase in the coming years. Getty Images
Microsoft's digital crimes unit says cyber crime attacks by nation-state actors are expected to increase in the coming years. Getty Images

Iran Mint Sandstorm: how hackers and cyber criminals are nicknamed


Cody Combs
  • English
  • Arabic

Keeping track of people determined to wreak havoc through computer hacks and cyber crime isn’t easy, but Microsoft officials say naming the groups is a small but important step in stopping them.

Microsoft explained its naming system for nation-state-affiliated threat entities during The National's exclusive tour of the company's cyber crime centre in Redmond, Washington.

Microsoft's cyber crime centre uses cyber security experts from across the company to help protect, detect and respond to threats in real-time. Cody Combs / The National
Microsoft's cyber crime centre uses cyber security experts from across the company to help protect, detect and respond to threats in real-time. Cody Combs / The National

Mint Sandstorm, Storm-2035, Sefid Flood, Salt Typhoon, Cotton Sandstorm and Taizi Flood are just a few of the many names given to groups operating out of Iran, China, Russia and North Korea, which Microsoft told The National are home to some of the most active actors in the nation-state cyber crime space.

“We used to track everything as an element from the periodic table − like barium, strontium and phosphorus,” said Steven Masada, assistant general counsel of Microsoft's digital crimes unit, which leads the company's efforts to combat cyber crime around the world.

Mr Masada, who also served as assistant US attorney for the western district of Washington state, said that due to the sheer number of hacker and cyber crime groups around the world, Microsoft ran out of elements from the periodic table.

Microsoft said for the purposes of organising an increasing number of threats, it uses a naming taxonomy for threat actors based on weather.
Microsoft said for the purposes of organising an increasing number of threats, it uses a naming taxonomy for threat actors based on weather.

“So, we switched to the storm system, which despite some naysayers, has really caught on,” he added.

“Sleet is North Korea, Typhoon is China, Sandstorm is Iran and Blizzard is Russia,” Mr Masada continued, saying that once Microsoft researches the cyber criminals from various countries and their differing techniques, they add more details to the name, such as Mint Sandstorm, which was given to a nation-state nefarious computer cyber crime actor originating out of Iran.

Microsoft says its cybercrime defense operations centre is staffed 24 hours each day, seven days a week. Photo: Cody Combs
Microsoft says its cybercrime defense operations centre is staffed 24 hours each day, seven days a week. Photo: Cody Combs

For groups that aren't necessarily nation-state affiliated, Mr Masada said that other names are given.

“We use the word 'tempest' for financially motivated groups … there's one called Vanilla Tempest, which is an incredibly active ransomware group.

He added that any group with the word “flood” included in the name, is likely a disinformation or influence operation group.

Mr Masada said around the world there has been a significant increase in nation-state actor cyber crime activity. The 2024 US presidential election, coupled with the Israel-Gaza war, saw an uptick in cyber crime efforts based out of Iran.

Although Microsoft's cybercrimes centre is based in the company's headquarters of Redmond, Washington, it has branches and employees around the world. Cody Combs / The National
Although Microsoft's cybercrimes centre is based in the company's headquarters of Redmond, Washington, it has branches and employees around the world. Cody Combs / The National

“One example is Mint Sandstorm, it's an Iranian actor that we've taken action against … Mint Sandstorm targeted Donald Trump's campaign leading up to the most recent US election and hacked some senior advisers,” said Mr Masada.

In addition to sharing information with the hack victims and the US government, Mr Masada said Microsoft's digital crimes unit provided a criminal referral to the US Department of Justice, which later indicted three Iranians accused of the nefarious cyber activity.

The three men were allegedly employed by Iran’s Islamic Revolutionary Guard Corps, and their activities included a range of targets − including government officials, members of the media and non-governmental organisations, according to Justice Department.

Iran denied any involvement in Mint Sandstorm, yet the name, which originated from Microsoft, largely caught on.

“We do this purely to make it easy for professionals in the [cyber security] field to understand it all,” said Andrew Conway, vice president of security marketing at Microsoft.

“We associated a certain type of weather with a particular threat actor and then we made up modifiers for the types of weather,” he explained. One Russian group was given the name Midnight Blizzard.'

“We don't do this to glorify or try to make things cool, it's done for information design … we were expanding the number of threat actors that we tracked and we needed a hierarchy in which to refer to them,” said Mr Conway.

Microsoft recently released a threat intelligence report which it says shows an increased effort from hackers and cyber-influence group to impact the 2024 US presidential election. Photo: Microsoft
Microsoft recently released a threat intelligence report which it says shows an increased effort from hackers and cyber-influence group to impact the 2024 US presidential election. Photo: Microsoft

Microsoft has gone from tracking approximately 300 nefarious cyber crime groups to more than 1,500, he said.

Mr Conway said that although this naming convention seems to be catching on outside of Microsoft to some extent, not all companies, governments and organisations use the same naming system.

“There's no global standard for it,” he said.

Meanwhile, according to Microsoft, by 2028, estimates show that approximately $13 trillion could be lost to cyber crime tactics.

To blunt such cyber attacks, the Microsoft's cyber crime centre seeks to utilise security response experts from across the company to help protect, detect and respond to threats around the world.

It also uses AI to quicken the process of identifying potential threats or vulnerabilities as they come in.

Inside the cyber crime facility, there are specific offices occasionally used by the FBI, Secret Service and Department of Homeland Security to expedite investigations and collaboration efforts, depending on the cyber crime threats.

“We're increasingly seeing the blurring of lines where nation-state threat actors are becoming more sophisticated,” Mr Masada said.

“Microsoft, effectively, is a security company at this point in time,” he added, noting that besides ample technical and cyber security experts, the company also uses lawyers, investigators, data analysts and business professionals to blunt and prevent cyber crime.

According to the company, its digital crimes unit has disrupted 30 malware families, nation-state threat actors and distributors of malicious tools through civil actions resulting in the “rescue of more than 500 million victim devices”.

How to come clean about financial infidelity
  • Be honest and transparent: It is always better to own up than be found out. Tell your partner everything they want to know. Show remorse. Inform them of the extent of the situation so they know what they are dealing with.
  • Work on yourself: Be honest with yourself and your partner and figure out why you did it. Don’t be ashamed to ask for professional help. 
  • Give it time: Like any breach of trust, it requires time to rebuild. So be consistent, communicate often and be patient with your partner and yourself.
  • Discuss your financial situation regularly: Ensure your spouse is involved in financial matters and decisions. Your ability to consistently follow through with what you say you are going to do when it comes to money can make all the difference in your partner’s willingness to trust you again.
  • Work on a plan to resolve the problem together: If there is a lot of debt, for example, create a budget and financial plan together and ensure your partner is fully informed, involved and supported. 

Carol Glynn, founder of Conscious Finance Coaching

Classification of skills

A worker is categorised as skilled by the MOHRE based on nine levels given in the International Standard Classification of Occupations (ISCO) issued by the International Labour Organisation. 

A skilled worker would be someone at a professional level (levels 1 – 5) which includes managers, professionals, technicians and associate professionals, clerical support workers, and service and sales workers.

The worker must also have an attested educational certificate higher than secondary or an equivalent certification, and earn a monthly salary of at least Dh4,000. 

How to play the stock market recovery in 2021?

If you are looking to build your long-term wealth in 2021 and beyond, the stock market is still the best place to do it as equities powered on despite the pandemic.

Investing in individual stocks is not for everyone and most private investors should stick to mutual funds and ETFs, but there are some thrilling opportunities for those who understand the risks.

Peter Garnry, head of equity strategy at Saxo Bank, says the 20 best-performing US and European stocks have delivered an average return year-to-date of 148 per cent, measured in local currency terms.

Online marketplace Etsy was the best performer with a return of 330.6 per cent, followed by communications software company Sinch (315.4 per cent), online supermarket HelloFresh (232.8 per cent) and fuel cells specialist NEL (191.7 per cent).

Mr Garnry says digital companies benefited from the lockdown, while green energy firms flew as efforts to combat climate change were ramped up, helped in part by the European Union’s green deal. 

Electric car company Tesla would be on the list if it had been part of the S&P 500 Index, but it only joined on December 21. “Tesla has become one of the most valuable companies in the world this year as demand for electric vehicles has grown dramatically,” Mr Garnry says.

By contrast, the 20 worst-performing European stocks fell 54 per cent on average, with European banks hit by the economic fallout from the pandemic, while cruise liners and airline stocks suffered due to travel restrictions.

As demand for energy fell, the oil and gas industry had a tough year, too.

Mr Garnry says the biggest story this year was the “absolute crunch” in so-called value stocks, companies that trade at low valuations compared to their earnings and growth potential.

He says they are “heavily tilted towards financials, miners, energy, utilities and industrials, which have all been hit hard by the Covid-19 pandemic”. “The last year saw these cheap stocks become cheaper and expensive stocks have become more expensive.” 

This has triggered excited talk about the “great value rotation” but Mr Garnry remains sceptical. “We need to see a breakout of interest rates combined with higher inflation before we join the crowd.”

Always remember that past performance is not a guarantee of future returns. Last year’s winners often turn out to be this year’s losers, and vice-versa.

Results

5pm: Maiden (PA) Dh 80,000 (Turf) 1,400m. Winner: Al Ajeeb W’Rsan, Pat Dobbs (jockey), Jaci Wickham (trainer).

5.30pm: Maiden (PA) Dh 80,000 (T) 1,400m racing. Winner: Mujeeb, Fabrice Veron, Eric Lemartinel.

6pm: Handicap (PA) Dh 90,000 (T) 2,200m. Winner: Onward, Connor Beasley, Abdallah Al Hammadi.

6.30pm: Sheikh Zayed bin Sultan Al Nahyan Jewel Crown Prep Rated Conditions (PA) Dh 125,000 (T) 2,200m. Winner: Somoud, Richard Mullen, Jean de Roualle.

7pm: Wathba Stallions Cup Handicap (PA) Dh 70,000 (T) 1,600m. Winner: AF Arrab, Tadhg O’Shea, Ernst Oertel.

7.30pm: Handicap (TB) Dh 90,000 (T) 1,400m. Winner: Irish Freedom, Richard Mullen, Satish Seemar.

The smuggler

Eldarir had arrived at JFK in January 2020 with three suitcases, containing goods he valued at $300, when he was directed to a search area.
Officers found 41 gold artefacts among the bags, including amulets from a funerary set which prepared the deceased for the afterlife.
Also found was a cartouche of a Ptolemaic king on a relief that was originally part of a royal building or temple. 
The largest single group of items found in Eldarir’s cases were 400 shabtis, or figurines.

Khouli conviction

Khouli smuggled items into the US by making false declarations to customs about the country of origin and value of the items.
According to Immigration and Customs Enforcement, he provided “false provenances which stated that [two] Egyptian antiquities were part of a collection assembled by Khouli's father in Israel in the 1960s” when in fact “Khouli acquired the Egyptian antiquities from other dealers”.
He was sentenced to one year of probation, six months of home confinement and 200 hours of community service in 2012 after admitting buying and smuggling Egyptian antiquities, including coffins, funerary boats and limestone figures.

For sale

A number of other items said to come from the collection of Ezeldeen Taha Eldarir are currently or recently for sale.
Their provenance is described in near identical terms as the British Museum shabti: bought from Salahaddin Sirmali, "authenticated and appraised" by Hossen Rashed, then imported to the US in 1948.

- An Egyptian Mummy mask dating from 700BC-30BC, is on offer for £11,807 ($15,275) online by a seller in Mexico

- A coffin lid dating back to 664BC-332BC was offered for sale by a Colorado-based art dealer, with a starting price of $65,000

- A shabti that was on sale through a Chicago-based coin dealer, dating from 1567BC-1085BC, is up for $1,950

UAE currency: the story behind the money in your pockets
JOKE'S%20ON%20YOU
%3Cp%3EGoogle%20wasn't%20new%20to%20busting%20out%20April%20Fool's%20jokes%3A%20before%20the%20Gmail%20%22prank%22%2C%20it%20tricked%20users%20with%20%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fmentalplex%2F%22%20target%3D%22_blank%22%3Emind-reading%20MentalPlex%20responses%3C%2Fa%3E%20and%20said%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fpigeonrank%2F%22%20target%3D%22_blank%22%3E%20well-fed%20pigeons%20were%20running%20its%20search%20engine%20operations%3C%2Fa%3E%20.%3C%2Fp%3E%0A%3Cp%3EIn%20subsequent%20years%2C%20they%20announced%20home%20internet%20services%20through%20your%20toilet%20with%20its%20%22%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Ftisp%2Finstall.html%22%20target%3D%22_blank%22%3Epatented%20GFlush%20system%3C%2Fa%3E%22%2C%20made%20us%20believe%20the%20Moon's%20surface%20was%20made%20of%20cheese%20and%20unveiled%20a%20dating%20service%20in%20which%20they%20called%20founders%20Sergey%20Brin%20and%20Larry%20Page%20%22%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fromance%2Fpress.html%22%20target%3D%22_blank%22%3EStanford%20PhD%20wannabes%3C%2Fa%3E%20%22.%3C%2Fp%3E%0A%3Cp%3EBut%20Gmail%20was%20all%20too%20real%2C%20purportedly%20inspired%20by%20one%20%E2%80%93%20a%20single%20%E2%80%93%20Google%20user%20complaining%20about%20the%20%22poor%20quality%20of%20existing%20email%20services%22%20and%20born%20%22%3Ca%20href%3D%22https%3A%2F%2Fgooglepress.blogspot.com%2F2004%2F04%2Fgoogle-gets-message-launches-gmail.html%22%20target%3D%22_blank%22%3Emillions%20of%20M%26amp%3BMs%20later%3C%2Fa%3E%22.%3C%2Fp%3E%0A
Desert Warrior

Starring: Anthony Mackie, Aiysha Hart, Ben Kingsley

Director: Rupert Wyatt

Rating: 3/5

The specs

Engine: 2.0-litre 4-cyl turbo

Power: 247hp at 6,500rpm

Torque: 370Nm from 1,500-3,500rpm

Transmission: 10-speed auto

Fuel consumption: 7.8L/100km

Price: from Dh94,900

On sale: now

LIKELY TEAMS

South Africa
Faf du Plessis (captain), Dean Elgar, Aiden Markram, Hashim Amla, AB de Villiers, Quinton de Kock (wkt), Vernon Philander, Keshav Maharaj, Kagiso Rabada, Morne Morkel, Lungi Ngidi.

India (from)
Virat Kohli (captain), Murali Vijay, Lokesh Rahul, Cheteshwar Pujara, Rohit Sharma, Ajinkya Rahane, Hardik Pandya, Dinesh Karthik (wkt), Ravichandran Ashwin, Bhuvneshwar Kumar, Ishant Sharma, Mohammad Shami, Jasprit Bumrah.

Who's who in Yemen conflict

Houthis: Iran-backed rebels who occupy Sanaa and run unrecognised government

Yemeni government: Exiled government in Aden led by eight-member Presidential Leadership Council

Southern Transitional Council: Faction in Yemeni government that seeks autonomy for the south

Habrish 'rebels': Tribal-backed forces feuding with STC over control of oil in government territory

Where to donate in the UAE

The Emirates Charity Portal

You can donate to several registered charities through a “donation catalogue”. The use of the donation is quite specific, such as buying a fan for a poor family in Niger for Dh130.

The General Authority of Islamic Affairs & Endowments

The site has an e-donation service accepting debit card, credit card or e-Dirham, an electronic payment tool developed by the Ministry of Finance and First Abu Dhabi Bank.

Al Noor Special Needs Centre

You can donate online or order Smiles n’ Stuff products handcrafted by Al Noor students. The centre publishes a wish list of extras needed, starting at Dh500.

Beit Al Khair Society

Beit Al Khair Society has the motto “From – and to – the UAE,” with donations going towards the neediest in the country. Its website has a list of physical donation sites, but people can also contribute money by SMS, bank transfer and through the hotline 800-22554.

Dar Al Ber Society

Dar Al Ber Society, which has charity projects in 39 countries, accept cash payments, money transfers or SMS donations. Its donation hotline is 800-79.

Dubai Cares

Dubai Cares provides several options for individuals and companies to donate, including online, through banks, at retail outlets, via phone and by purchasing Dubai Cares branded merchandise. It is currently running a campaign called Bookings 2030, which allows people to help change the future of six underprivileged children and young people.

Emirates Airline Foundation

Those who travel on Emirates have undoubtedly seen the little donation envelopes in the seat pockets. But the foundation also accepts donations online and in the form of Skywards Miles. Donated miles are used to sponsor travel for doctors, surgeons, engineers and other professionals volunteering on humanitarian missions around the world.

Emirates Red Crescent

On the Emirates Red Crescent website you can choose between 35 different purposes for your donation, such as providing food for fasters, supporting debtors and contributing to a refugee women fund. It also has a list of bank accounts for each donation type.

Gulf for Good

Gulf for Good raises funds for partner charity projects through challenges, like climbing Kilimanjaro and cycling through Thailand. This year’s projects are in partnership with Street Child Nepal, Larchfield Kids, the Foundation for African Empowerment and SOS Children's Villages. Since 2001, the organisation has raised more than $3.5 million (Dh12.8m) in support of over 50 children’s charities.

Noor Dubai Foundation

Sheikh Mohammed bin Rashid Al Maktoum launched the Noor Dubai Foundation a decade ago with the aim of eliminating all forms of preventable blindness globally. You can donate Dh50 to support mobile eye camps by texting the word “Noor” to 4565 (Etisalat) or 4849 (du).

RACE CARD

6.30pm Maiden (TB) Dh82.500 (Dirt) 1,400m

7.05pm Handicap (TB) Dh87,500 (D) 1,400m

7.40pm Handicap (TB) Dh92,500 (Turf) 2,410m

8.15pm Handicap (TB) Dh105,000 (D) 1,900m

8.50pm UAE 2000 Guineas Trial (TB) Conditions Dh183,650 (D) 1,600m

9.25pm Dubai Trophy (TB) Conditions Dh183,650 (T) 1,200m

10pm Handicap (TB) Dh102,500 (T) 1,400m

Gertrude Bell's life in focus

A feature film

At one point, two feature films were in the works, but only German director Werner Herzog’s project starring Nicole Kidman would be made. While there were high hopes he would do a worthy job of directing the biopic, when Queen of the Desert arrived in 2015 it was a disappointment. Critics panned the film, in which Herzog largely glossed over Bell’s political work in favour of her ill-fated romances.

A documentary

A project that did do justice to Bell arrived the next year: Sabine Krayenbuhl and Zeva Oelbaum’s Letters from Baghdad: The Extraordinary Life and Times of Gertrude Bell. Drawing on more than 1,000 pieces of archival footage, 1,700 documents and 1,600 letters, the filmmakers painstakingly pieced together a compelling narrative that managed to convey both the depth of Bell’s experience and her tortured love life.

Books, letters and archives

Two biographies have been written about Bell, and both are worth reading: Georgina Howell’s 2006 book Queen of the Desert and Janet Wallach’s 1996 effort Desert Queen. Bell published several books documenting her travels and there are also several volumes of her letters, although they are hard to find in print. Original documents are housed at the Gertrude Bell Archive at the University of Newcastle, which has an online catalogue.
 

Defence review at a glance

• Increase defence spending to 2.5% of GDP by 2027 but given “turbulent times it may be necessary to go faster”

• Prioritise a shift towards working with AI and autonomous systems

• Invest in the resilience of military space systems.

• Number of active reserves should be increased by 20%

• More F-35 fighter jets required in the next decade

• New “hybrid Navy” with AUKUS submarines and autonomous vessels

Know your Camel lingo

The bairaq is a competition for the best herd of 50 camels, named for the banner its winner takes home

Namoos - a word of congratulations reserved for falconry competitions, camel races and camel pageants. It best translates as 'the pride of victory' - and for competitors, it is priceless

Asayel camels - sleek, short-haired hound-like racers

Majahim - chocolate-brown camels that can grow to weigh two tonnes. They were only valued for milk until camel pageantry took off in the 1990s

Millions Street - the thoroughfare where camels are led and where white 4x4s throng throughout the festival

WE%20NO%20LONGER%20PREFER%20MOUNTAINS
%3Cp%3E%3Cstrong%3EDirector%3A%3C%2Fstrong%3E%20Inas%20Halabi%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarring%3A%20%3C%2Fstrong%3ENijmeh%20Hamdan%2C%20Kamal%20Kayouf%2C%20Sheikh%20Najib%20Alou%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%3C%2Fstrong%3E%204%2F5%3C%2Fp%3E%0A
WHAT%20MACRO%20FACTORS%20ARE%20IMPACTING%20META%20TECH%20MARKETS%3F
%3Cp%3E%E2%80%A2%20Looming%20global%20slowdown%20and%20recession%20in%20key%20economies%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Russia-Ukraine%20war%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Interest%20rate%20hikes%20and%20the%20rising%20cost%20of%20debt%20servicing%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Oil%20price%20volatility%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Persisting%20inflationary%20pressures%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Exchange%20rate%20fluctuations%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20Shortage%20of%20labour%2Fskills%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20A%20resurgence%20of%20Covid%3F%3C%2Fp%3E%0A
BUNDESLIGA FIXTURES

Friday (UAE kick-off times)

Borussia Dortmund v Paderborn (11.30pm)

Saturday 

Bayer Leverkusen v SC Freiburg (6.30pm)

Werder Bremen v Schalke (6.30pm)

Union Berlin v Borussia Monchengladbach (6.30pm)

Eintracht Frankfurt v Wolfsburg (6.30pm)

Fortuna Dusseldof v  Bayern Munich (6.30pm)

RB Leipzig v Cologne (9.30pm)

Sunday

Augsburg v Hertha Berlin (6.30pm)

Hoffenheim v Mainz (9pm)

 

 

 

 

 

Updated: January 24, 2025, 7:53 AM