Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Categorie: geopolitics

New PathWiper Data Wiper Malware Disrupts Ukrainian Critical Infrastructure in 2025 Attack

post, juni 6, 2025

A critical infrastructure entity within Ukraine was targeted by a previously unseen data wiper malware named PathWiper, according to new findings from Cisco Talos. “The attack was instrumented via a legitimate endpoint administration framework, indicating that the attackers likely had access to the administrative console, that was then used to…

Continue Reading

Noord-Koreaanse dreigingsactoren richten zich op Oekraïense overheidsinstanties

post, mei 26, 2025

In februari 2025 begon TA406, een door Noord-Korea gesponsorde dreigingsactor, zich te richten op overheidsinstanties in Oekraïne.  Zowel credential harvesting als malware werden ingezet in phishingcampagnes. Het vermoedelijke doel van deze campagnes is het verzamelen van inlichtingen over het verloop van de Russische invasie. TA406 overlapt met activiteiten die door…

Continue Reading

Six Governments Likely Use Israeli Paragon Spyware to Hack IM Apps and Harvest Data

post, maart 20, 2025augustus 21, 2025

The governments of Australia, Canada, Cyprus, Denmark, Israel, and Singapore are likely customers of spyware developed by Israeli company Paragon Solutions, according to a new report from The Citizen Lab. Paragon, founded in 2019 by Ehud Barak and Ehud Schneorson, is the maker of a surveillance tool called Graphite that’s capable of…

Continue Reading

Undocumented commands found in Bluetooth chip used by a billion devices

post, maart 8, 2025maart 10, 2025

The ubiquitous ESP32 microchip made by Chinese manufacturer Espressif and used by over 1 billion units as of 2023 contains undocumented commands that could be leveraged for attacks. The undocumented commands allow spoofing of trusted devices, unauthorized data access, pivoting to other devices on the network, and potentially establishing long-term persistence.

Continue Reading

Sticky Werewolf Uses Undocumented Implant to Deploy Lumma Stealer in Russia and Belarus

post, februari 28, 2025

The threat actor known as Sticky Werewolf has been linked to targeted attacks primarily in Russia and Belarus with the aim of delivering the Lumma Stealer malware by means of a previously undocumented implant. Cybersecurity company Kaspersky is tracking the activity under the name Angry Likho, which it said bears a “strong…

Continue Reading

Belgium probes if Chinese hackers breached its intelligence service

post, februari 27, 2025februari 28, 2025

The Belgian federal prosecutor’s office is investigating whether Chinese hackers were behind a breach of the country’s State Security Service (VSSE). Chinese state-backed attackers reportedly gained access to VSSE’s external email server between 2021 and May 2023, siphoning around 10% of all emails sent and received by the agency’s staff.

Continue Reading

Bybit Confirms Record-Breaking $1.5 Billion Crypto Heist in Sophisticated Cold Wallet Attack

post, februari 22, 2025februari 24, 2025

Cryptocurrency exchange Bybit on Friday revealed that a “sophisticated” attack led to the theft of over $1.5 billion worth of cryptocurrency from one of its Ethereum cold (offline) wallets, making it the largest ever single crypto heist in history. “The incident occurred when our ETH multisig cold wallet executed a transfer to…

Continue Reading

Australian Critical Infrastructure Faces ‘Acute’ Foreign Threats

post, februari 20, 2025

Australian intelligence is projecting that foreign nations will increasingly attempt to sabotage its country’s critical infrastructure. On Feb. 19, Mike Burgess, director-general of security in charge of the Australian Security Intelligence Organisation (ASIO), delivered an annual threat assessment encompassing the many national security threats facing Australia. Among the most important, he…

Continue Reading

A Signal Update Fends Off a Phishing Technique Used in Russian Espionage

post, februari 19, 2025februari 20, 2025

Google warns that hackers tied to Russia are tricking Ukrainian soldiers with fake QR codes for Signal group invites that let spies steal their messages. Signal has pushed out new safeguards. For more than a decade now, Russian cyberwarfare has used Ukraine as a test lab for its latest hacking techniques, methods…

Continue Reading

Hackers Exploit Signal’s Linked Devices Feature to Hijack Accounts via Malicious QR Codes

post, februari 19, 2025februari 24, 2025

Multiple Russia-aligned threat actors have been observed targeting individuals of interest via the privacy-focused messaging app Signal to gain unauthorized access to their accounts. “The most novel and widely used technique underpinning Russian-aligned attempts to compromise Signal accounts is the abuse of the app’s legitimate ‘linked devices’ feature that enables…

Continue Reading
  • Previous
  • 1
  • 2
  • 3
  • 4
  • …
  • 8
  • Next

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes