Security News > 2023 > January > UK Cyber Security Centre's scary new story: One phish, two phish, Russia phish, Iran phish

UK Cyber Security Centre's scary new story: One phish, two phish, Russia phish, Iran phish
2023-01-27 05:32

The NSCS has attributed the campaigns to a Russia-based group called SEABORGIUM and the Iran-based TA453 group, also known as APT42.

The threat groups target individuals working in academia, defence, government, non-government organisations, and think-tanks.

"These campaigns by threat actors based in Russia and Iran continue to ruthlessly pursue their targets in an attempt to steal online credentials and compromise potentially sensitive systems," warned NCSC director of operations Paul Chichester.

The groups typically groom targets with emails or on platforms like LinkedIn, where the attackers create personalities with plausible back stories.

The target could then be led to a server controlled by the threat group that prompts the input of credentials.

The usual mitigation tactics are also recommended: strong passwords used only for email accounts, MFA, enabling built-in email scanning features, and ongoing vigilance.


News URL

https://go.theregister.com/feed/www.theregister.com/2023/01/27/uk_warns_against_russian_and/