Hackers sent malicious software to the Armed Forces under the guise of recruiting in 3 Armed Forces and the IDF – CERT-UA

Specialists of the government emergency response team of Ukraine CERT-UA, with the help of Trendmicro, investigated a series of cyber attacks aimed at servicemen of the Armed Forces of Ukraine.

Suspicious activity was detected by Trendmicro specialists at the end of 2023 and reported to CERT-UA. During these attacks, attackers, under the guise of recruiting for the 3rd Separate Assault Brigade and the Israel Defense Forces (IDF), sent messages with malware on the Signal messenger. Such messages contain archive files, the launch of whose contents leads to the infection of the computer with REMCOSRAT and REVERSESSH malware. At the same time, the attackers try to make the names and content of the archives interesting for the military – interrogation of a prisoner, geolocation, coding commands, callsigns, etc. Detailed information on the technical side of the attack is presented on the CERT-UA website.

Hackers sent malicious software to the Armed Forces under the guise of recruiting in 3 Armed Forces and the IDF – CERT-UA

Despite the use of publicly available tools (which may lead to the identification of similarities with other attacks), the described activity by other specific features is a separate cluster of cyber threats and is tracked by the identifier UAC-0184.

CERT-UA reminds that in case of detection of suspicious activity on the computers and information and communication systems of the Armed Forces, it is necessary to immediately inform the Cyber ​​Security Center of the ITS (unit A0334; email: [email protected]).

Related Posts

UK to regulate cryptocurrency memes: illegal advertising

Britain’s financial services regulator has issued guidance to financial services companies and social media influencers who create memes about cryptocurrencies and other investments to regulate them amid…

unofficial renders of the Google Pixel 9 and information about the Pixel 9 Pro XL

The whistleblower @OnLeaks and the site 91mobiles presented the renders of the Google Pixel 9 phone. Four images and a 360° video show a black smartphone with…

Embracer to sell Gearbox (Borderlands) to Take-Two (Rockstar and 2K) for $460 million

Embracer continues to sell off assets – the Swedish gaming holding has just confirmed the sale of The Gearbox Entertainment studio to Take-Two Interactive. The sum is…

photo of the new Xbox X console

The eXputer site managed to get a photo of a new modification of the Microsoft Xbox game console. The source reports that it is a white Xbox…

Israel Deploys Massive Facial Recognition Program in Gaza, – The New York Times

The Technology section is powered by Favbet Tech The images are matched against a database of Palestinians with ties to Hamas. According to The New York Times,…

Twitch has banned chest and buttock broadcasts of gameplay

Twitch has updated its community rules and banned the focus of streams on breasts and buttocks. According to the update, starting March 29, “content that focuses on…

Leave a Reply

Your email address will not be published. Required fields are marked *