Skip to content

News

Russian Turla Cyberspies Leveraged Other Hackers' USB-Delivered Malware

Russian Turla Cyberspies Leveraged Other Hackers' USB-Delivered Malware

In September 2022, Mandiant discovered a suspected Turla Team operation distributing the Kopiluwak reconnaissance utility and Quietcanary backdoor to Andromeda malware victims in Ukraine. Active since at least 2006 and linked to the Russian government, the cyberespionage group is also tracked as Snake, Venomous Bear, Krypton, and Waterbug, and has

Members Public
Raspberry Robin Detected ITW Targeting Insurance & Financial Institutes In Europe

Raspberry Robin Detected ITW Targeting Insurance & Financial Institutes In Europe

Recent attacks documented in previous months seem to be orchestrated by hacking groups using a framework called Raspberry Robin. This well-designed automated framework allows attackers post-infection capabilities to evade detection, move laterally and leverage trusted cloud infrastructures of known data hosting providers such as Discord, Azure & Github, among rest.

Members Public
Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 11. 07 - 11. 13.)

Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 11. 07 - 11. 13.)

Az orosz-ukrán háborúhoz kapcsolódó hacker csoportok állapota a Cyberknow  okt. 12-i frissítése szerint: * összesen 84 aktív csoport - az összlétszám a legutóbbi, szept. 7-i frissítéshez képest nem változott, az összetételben ugyanakkor történtek változások * 36 ukránbarát - ami eggyel több a szept. 7-i állapothoz képest * 42 oroszbarát - itt pedig eggyel

Members Public
Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 10. 31 - 11. 06.)

Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 10. 31 - 11. 06.)

Az orosz-ukrán háborúhoz kapcsolódó hacker csoportok állapota a Cyberknow  okt. 12-i frissítése szerint: * összesen 84 aktív csoport - az összlétszám a legutóbbi, szept. 7-i frissítéshez képest nem változott, az összetételben ugyanakkor történtek változások * 36 ukránbarát - ami eggyel több a szept. 7-i állapothoz képest * 42 oroszbarát - itt pedig eggyel

Members Public
Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 10. 24 - 10. 30.)

Heti összefoglaló az ukrán-orosz kiberfrontról (2022. 10. 24 - 10. 30.)

Az orosz-ukrán háborúhoz kapcsolódó hacker csoportok állapota a Cyberknow  okt. 12-i frissítése szerint: * összesen 84 aktív csoport - az összlétszám a legutóbbi, szept. 7-i frissítéshez képest nem változott, az összetételben ugyanakkor történtek változások * 36 ukránbarát - ami eggyel több a szept. 7-i állapothoz képest * 42 oroszbarát - itt pedig eggyel

Members Public
North Korean Hackers Created 70 Fake Bank, Venture Capital Firm Domains

North Korean Hackers Created 70 Fake Bank, Venture Capital Firm Domains

North Korea’s BlueNoroff hackers have updated their arsenal and delivery techniques in a new wave of attacks targeting banks and venture capital firms, cybersecurity firm Kaspersky reports. Part of Lazarus, a hacking group linked to the North Korean government, BlueNoroff is financially motivated and has been blamed for numerous

Members Public
Russian Hackers Targeted Petroleum Refinery in NATO Country During Ukraine War

Russian Hackers Targeted Petroleum Refinery in NATO Country During Ukraine War

The Russia-linked Gamaredon group attempted to unsuccessfully break into a large petroleum refining company within a NATO member state earlier this year amid the ongoing Russo-Ukrainian war. The attack, which took place on August 30, 2022, is just one of multiple attacks orchestrated by the advanced persistent threat (APT) that&

Members Public
Ukraine's DELTA military system users targeted by info-stealing malware

Ukraine's DELTA military system users targeted by info-stealing malware

A compromised Ukrainian Ministry of Defense email account was found sending phishing emails and instant messages to users of the 'DELTA' situational awareness program to infect systems with information-stealing malware. The campaign was highlighted in a report today by CERT-UA (Computer Emergency Response Team of Ukraine), which warned

Members Public
New Agenda Ransomware Variant Targets Critical Sectors

New Agenda Ransomware Variant Targets Critical Sectors

This year, various ransomware-as-a-service groups have developed versions of their ransomware in Rust, including Agenda. Agenda's Rust variant has targeted vital industries like its Go counterpart. In this blog, we will discuss how the Rust variant works. This year, ransomware-as-a-service (RaaS) groups like BlackCat, Hive, and RansomExx have

Members Public
Ukrainian govt networks breached via trojanized Windows 10 installers

Ukrainian govt networks breached via trojanized Windows 10 installers

Ukrainian government entities were hacked in targeted attacks after their networks were first compromised via trojanized ISO files posing as legitimate Windows 10 installers. These malicious installers delivered malware capable of collecting data from compromised computers, deploying additional malicious tools, and exfiltrating stolen data to attacker-controlled servers. One of the

Members Public
Meta-Phish: Facebook Infrastructure Used in Phishing Attack Chain

Meta-Phish: Facebook Infrastructure Used in Phishing Attack Chain

Researchers at Trustwave Holdings Inc.’s SpiderLabs detailed a new campaign that leverages Facebook infrastructure for phishing attacks and the theft of personally identifiable information. Users are advised to be extra careful when receiving false violation notifications and not to be fooled by the apparent legitimacy of the initial links.

Members Public
GPS Signals Are Being Disrupted in Russian Cities

GPS Signals Are Being Disrupted in Russian Cities

Navigation system monitors have seen a recent uptick in interruptions since Ukraine began launching long-range drone attacks. EVERY DAY, BILLIONS of people use the GPS satellite system to find their way around the world—but GPS signals are vulnerable. Jamming and spoofing attacks can cripple GPS connections entirely or make

Members Public