• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

Global APT Groups Use Ukraine War for Phishing Lures

You are here: Home / General Cyber Security News / Global APT Groups Use Ukraine War for Phishing Lures
April 5, 2022

Security scientists have detected multiple APT campaigns leveraging Ukraine war-themed files and news resources to entice victims into clicking on spear-phishing links.

Check out Position Investigation stated target areas ranged from South The united states to the Center East, with malware downloads built to conduct keylogging and screenshotting and execute commands.

The risk groups in problem consist of El Machete, which is concentrating on the money and federal government sectors in Nicaragua and Venezuela with malicious macro-laden Term paperwork containing articles on the war.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


1 of the docs was an post composed by the Russian ambassador to Nicaragua titled: “Dark plans of the neo-Nazi regime in Ukraine.”

Yet another is Lyceum, an Iranian state-linked group concentrating on the electricity sector with email messages about war crimes in Ukraine that website link to a malicious document hosted somewhere else. Its victims so significantly have been in Israel and Saudi Arabia, according to Check Point.

Just one email contained a connection to an report from The Guardian hosted on the news-spot[.]are living domain, alongside many malicious docs about the war.

The previous of the 3 groups is SideWinder, which has been linked to India in the past. Concentrating on Pakistani victims, its entice is a purported document from the Nationwide Institute of Maritime Affairs of Bahria University in Islamabad, titled “Focused Talk on Russian Ukraine Conflict Effect on Pakistan.”

Sergey Shykevich, danger intelligence group manager at Check Level Software, argued that cyber-espionage is the probably stop objective for the APT teams.

“Our findings expose a obvious development, that collateral all around the war between Russia and Ukraine has develop into a entice of choice for threat teams globally,” he extra.

“I strongly suggest governments, banking institutions and electrical power organizations to reiterate cyber-awareness and instruction to workforce, and to put into action cybersecurity remedies that protect the network on all concentrations.”

In related news, Look at Point claimed to have seen an improve in cyber-attacks globally of 16% since the commence of the war, such as a increase of 10% in Russia and 17% in Ukraine.


Some components of this report are sourced from:
www.infosecurity-journal.com

Previous Post: «uk retailer the works calls in cyber experts after security UK retailer The Works calls in cyber experts after security breach
Next Post: Is API Security on Your Radar? is api security on your radar?»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • CISA Unveils Ransomware Notification Initiative
  • WooCommerce Patches Critical Plugin Flaw Affecting Half a Million Sites
  • GitHub Updates Security Protocol For Operations Over SSH
  • Malicious Python Package Uses Unicode Trickery to Evade Detection and Steal Data
  • Some GitHub users must take action after RSA SSH host key exposed
  • THN Webinar: Inside the High Risk of 3rd-Party SaaS Apps
  • Pension Protection Fund confirms employee data exposed in GoAnywhere breach
  • GitHub Swiftly Replaces Exposed RSA SSH Key to Protect Git Operations
  • Now UK Parliament Bans TikTok from its Network and Devices
  • IRS Phishing Emails Used to Distribute Emotet

Copyright © TheCyberSecurity.News, All Rights Reserved.