Security News > 2023 > April > Google: Ukraine targeted by 60% of Russian phishing attacks in 2023
Google's Threat Analysis Group has been monitoring and disrupting Russian state-backed cyberattacks targeting Ukraine's critical infrastructure in 2023.
Google reports that from January to March 2023, Ukraine received roughly 60% of the phishing attacks originating from Russia, making it the most prominent target.
The first is Sandworm, tracked by Google as "FrozenBarents," which has focused its attacks on the energy sector across Europe since November 2022, with a highlighted case involving the Caspian Pipeline Consortium.
Another highly-active Russian threat actor is APT28, tracked by Google as "FrozenLake."
"In the first quarter of 2023, TAG observed a coordinated IO campaign from actors affiliated with the Internet Research Agency creating content on Google products such as YouTube, including commenting and upvoting each other's videos," reads the Google TAG report.
Google reports that it has been observing and blocking IRA-linked accounts creating content on YouTube Shorts to promote specific "News-like" narratives about the war in Ukraine to Russian domestic audiences.
News URL
Related news
- Free Sniper Dz Phishing Tools Fuel 140,000+ Cyber Attacks Targeting User Credentials (source)
- DOJ, Microsoft seize 107 domains used in Russia's Star Blizzard phishing attacks (source)
- Google Adds New Pixel Security Features to Block 2G Exploits and Baseband Attacks (source)
- Microsoft and DOJ disrupt Russian FSB hackers' attack infrastructure (source)
- GitHub, Telegram Bots, and ASCII QR Codes Abused in New Wave of Phishing Attacks (source)
- Astaroth Banking Malware Resurfaces in Brazil via Spear-Phishing Attack (source)
- Russian RomCom Attacks Target Ukrainian Government with New SingleCamper RAT Variant (source)
- Crypt Ghouls Targets Russian Firms with LockBit 3.0 and Babuk Ransomware Attacks (source)
- Samsung phone users under attack, Google warns (source)
- Russian spies use remote desktop protocol files in unusual mass phishing drive (source)