APT28

US Gov dismantled the Moobot botnet controlled by Russia-linked APT28US Gov dismantled the Moobot botnet controlled by Russia-linked APT28

US Gov dismantled the Moobot botnet controlled by Russia-linked APT28

The US authorities dismantled the Moobot botnet, which was controlled by the Russia-linked cyberespionage group APT28. A court order allowed…

1 year ago
Russia-linked APT28 used new malware in a recent phishing campaignRussia-linked APT28 used new malware in a recent phishing campaign

Russia-linked APT28 used new malware in a recent phishing campaign

Ukraine's CERT (CERT-UA) warned of a new phishing campaign by the APT28 group to deploy previously undocumented malware strains. The…

1 year ago
Russia-linked APT8 exploited Outlook zero-day to target European NATO membersRussia-linked APT8 exploited Outlook zero-day to target European NATO members

Russia-linked APT8 exploited Outlook zero-day to target European NATO members

Russia-linked group APT28 exploited Microsoft Outlook zero-day to target European NATO members, including a NATO Rapid Deployable Corps. Palo Alto…

1 year ago
Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accountsRussia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accounts

Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accounts

Microsoft warns that the Russia-linked APT28 group is actively exploiting the CVE-2023-23397 Outlook flaw to hijack Microsoft Exchange accounts. Microsoft's…

1 year ago
France agency ANSSI warns of Russia-linked APT28 attacks on French entitiesFrance agency ANSSI warns of Russia-linked APT28 attacks on French entities

France agency ANSSI warns of Russia-linked APT28 attacks on French entities

France National Agency for the Security of Information Systems warns that the Russia-linked APT28 group has breached several critical networks.…

2 years ago
Multiple APT groups exploited WinRAR flaw CVE-2023-38831Multiple APT groups exploited WinRAR flaw CVE-2023-38831

Multiple APT groups exploited WinRAR flaw CVE-2023-38831

Google TAG reported that both Russia and China-linked threat actors are weaponizing the a high-severity vulnerability in WinRAR. Google's Threat…

2 years ago
Russia-linked APT28 hacked Roundcube email servers of Ukrainian entitiesRussia-linked APT28 hacked Roundcube email servers of Ukrainian entities

Russia-linked APT28 hacked Roundcube email servers of Ukrainian entities

Russia-linked APT28 group hacked into Roundcube email servers belonging to multiple Ukrainian organizations. A joint investigation conducted by Ukraine's Computer…

2 years ago
Russia-linked APT28 uses fake Windows Update instructions to target Ukraine govt bodiesRussia-linked APT28 uses fake Windows Update instructions to target Ukraine govt bodies

Russia-linked APT28 uses fake Windows Update instructions to target Ukraine govt bodies

CERT-UA warns of a spear-phishing campaign conducted by APT28 group targeting Ukrainian government bodies with fake ‘Windows Update’ guides. Russia-linked…

2 years ago
US and UK agencies warn of Russia-linked APT28 exploiting Cisco router flawsUS and UK agencies warn of Russia-linked APT28 exploiting Cisco router flaws

US and UK agencies warn of Russia-linked APT28 exploiting Cisco router flaws

UK and US agencies are warning of Russia-linked APT28 group exploiting vulnerabilities in Cisco networking equipment. Russia-linked APT28 group accesses unpatched Cisco…

2 years ago
APT28 relies on PowerPoint Mouseover to deliver Graphite malwareAPT28 relies on PowerPoint Mouseover to deliver Graphite malware

APT28 relies on PowerPoint Mouseover to deliver Graphite malware

The Russia-linked APT28 group is using mouse movement in decoy Microsoft PowerPoint documents to distribute malware. The Russia-linked APT28 employed a technique…

3 years ago