CISA and Partners join ASD’S ACSC to Release Advisory on PRC State-Sponsored Group, APT 40 post, juli 8, 2024juli 3, 2025 CISA has collaborated with the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) to release an advisory, People’s Republic of China (PRC) Ministry of State Security APT40 Tradecraft in Action outlining a PRC state-sponsored cyber group’s activity. APT 40 has previously targeted organizations in various countries, including Australia and the United… Continue Reading
Chinese Cyber Espionage Targets Telecom Operators in Asia Since 2021 post, juni 20, 2024februari 24, 2025 Cyber espionage groups associated with China have been linked to a long-running campaign that has infiltrated several telecom operators located in a single Asian country at least since 2021. “The attackers placed backdoors on the networks of targeted companies and also attempted to steal credentials,” the Symantec Threat Hunter Team,… Continue Reading
Hackers leggen websites politieke partijen plat op dag van Europese verkiezingen post, juni 6, 2024juni 12, 2024 De websites van CDA, PVV en FVD zijn donderdag een tijdje niet of slechter bereikbaar geweest vanwege ddos-aanvallen. Russische hackers van de groep HackNet hebben de aanval op Telegram opgeëist. Continue Reading
Chinese State-Backed Cyber Espionage Targets Southeast Asian Government post, juni 5, 2024 An unnamed high-profile government organization in Southeast Asia emerged as the target of a “complex, long-running” Chinese state-sponsored cyber espionage operation codenamed Crimson Palace. Continue Reading
Phishing for Gold: Cyber Threats Facing the 2024 Paris Olympics post, juni 5, 2024juni 12, 2024 Mandiant assesses with high confidence that the Paris Olympics faces an elevated risk of cyber threat activity, including cyber espionage, disruptive and destructive operations, financially-motivated activity, hacktivism, and information operations. Continue Reading
‘Cyberwarriors’ prepare against attacks during Paris Olympics post, juni 4, 2024juni 12, 2024 France is expecting an uptick in cyber attacks during the sporting contest, particularly from Russia. Cyber security defenders are preparing for the upcoming Paris Olympic Games. The so-called cyberwarriors have studied and analysed potential hackers’ strengths, tactics and weaknesses. Threats could be anyone from teenage show-offs and ransomware gangs to Russian military… Continue Reading
How Russia is trying to disrupt the 2024 Paris Olympic Games post, juni 2, 2024juni 12, 2024 Russia is ramping up malign disinformation campaigns against France, French President Emmanuel Macron, the International Olympic Committee (IOC), and this summer’s Olympic Games in Paris. While Russia has a decades-long history of targeting the Olympic Games, the Microsoft Threat Analysis Center (MTAC) has observed old tactics blending with artificial intelligence… Continue Reading
Germany points finger at Fancy Bear for widespread 2023 hacks, DDoS attacks post, mei 6, 2024juli 3, 2025 It was just around a year ago that a spate of allegedly Russian-orchestrated cyberattacks hit government agencies in Germany, and now German officials claim to know for a fact who did it: APT28, or Fancy Bear, a Russian threat actor linked to the GRU intelligence service. Continue Reading
Microsoft Outlook Flaw Exploited by Russia’s APT28 to Hack Czech, German Entities post, mei 4, 2024juli 3, 2025 Czechia and Germany on Friday revealed that they were the target of a long-term cyber espionage campaign conducted by the Russia-linked nation-state actor known as APT28, drawing condemnation from the European Union (E.U.), the North Atlantic Treaty Organization (NATO), the U.K., and the U.S. The Czech Republic’s Ministry of Foreign Affairs… Continue Reading
Ukraine Targeted in Cyberattack Exploiting 7-Year-Old Microsoft Office Flaw post, april 27, 2024april 30, 2024 Cybersecurity researchers have discovered a targeted operation against Ukraine that has been found leveraging a nearly seven-year-old flaw in Microsoft Office to deliver Cobalt Strike on compromised systems. The attack chain, which took place at the end of 2023 according to Deep Instinct, employs a PowerPoint slideshow file (“signal-2023-12-20-160512.ppsx”) as… Continue Reading