Security News
![Russian crook made $90M exploiting stolen info on Tesla, Roku, Avnet, Snap, more](/static/build/img/news/russian-crook-made-90m-exploiting-stolen-info-on-tesla-roku-avnet-snap-more-small.jpg)
A US federal jury in Boston on Tuesday found Vladislav Klyushin - who owned an IT biz based in Moscow called M-13 - guilty of wire and securities fraud and conspiracy after two weeks of testimony and ten hours of deliberations. Prosecutors in the case argued that Klyushin and four others broke into the networks of Donnelley Financial Solutions and Toppan Merrill, through which publicly traded entities electronically file their quarterly earnings reports with America's financial watchdog, the Securities and Exchange Commission.
![U.K. and U.S. Sanction 7 Russians for TrickBot, Ryuk, and Conti Ransomware Attacks](/static/build/img/news/u-k-and-u-s-sanction-7-russians-for-trickbot-ryuk-and-conti-ransomware-attacks-small.jpg)
"Current members of the TrickBot group are associated with Russian Intelligence Services," the U.S. Treasury Department noted. "The TrickBot group's preparations in 2020 aligned them to Russian state objectives and targeting previously conducted by Russian Intelligence Services."
![US, UK slap sanctions on Russians linked to Conti, Ryuk, Trickbot malware](/static/build/img/news/us-uk-slap-sanctions-on-russians-linked-to-conti-ryuk-trickbot-malware-small.jpg)
The US and UK have sanctioned seven Russians for their alleged roles in disseminating Conti and Ryuk ransomware and the Trickbot banking trojan. Conti and Ryuk ransomware extorted at least £27 million from 149 UK individuals and businesses, according to the government's estimate.
![Russian Hackers Using Graphiron Malware to Steal Data from Ukraine](/static/build/img/news/russian-hackers-using-graphiron-malware-to-steal-data-from-ukraine-small.jpg)
A Russia-linked threat actor has been observed deploying a new information-stealing malware in cyber attacks targeting Ukraine. Dubbed Graphiron by Broadcom-owned Symantec, the malware is the handiwork of an espionage group known as Nodaria, which is tracked by the Computer Emergency Response Team of Ukraine as UAC-0056.
![Russian hackers using new Graphiron information stealer in Ukraine](/static/build/img/news/russian-hackers-using-new-graphiron-information-stealer-in-ukraine-small.jpg)
The Russian hacking group known as 'Nodaria' is using a new information-stealing malware called 'Graphiron' to steal data from Ukrainian organizations. Symantec's threat research team discovered that Nodaria has been using Graphiron in attacks since at least October 2022 through mid-January 2023.
![Russian Hacker Pleads Guilty to Money Laundering Linked to Ryuk Ransomware](/static/build/img/news/russian-hacker-pleads-guilty-to-money-laundering-linked-to-ryuk-ransomware-small.jpg)
A Russian national on February 7, 2023, pleaded guilty in the U.S. to money laundering charges and for attempting to conceal the source of funds obtained in connection with Ryuk ransomware attacks. "Between at least August 2018 and August 2021, Dubnikov and his co-conspirators laundered the proceeds of Ryuk ransomware attacks on individuals and organizations throughout the United States and abroad," the Department of Justice said.
![Russian man pleads guilty to laundering Ryuk ransomware money](/static/build/img/news/russian-man-pleads-guilty-to-laundering-ryuk-ransomware-money-small.jpg)
Russian citizen Denis Mihaqlovic Dubnikov pleaded guilty on Tuesday to laundering money for the notorious Ryuk ransomware group for over three years. The guilty plea comes after Dubnikov was arrested in Amsterdam in November 2021 and extradited to the United States in August 2022.
![New Russian-Backed Gamaredon's Spyware Variants Targeting Ukrainian Authorities](/static/build/img/news/new-russian-backed-gamaredon-s-spyware-variants-targeting-ukrainian-authorities-small.jpg)
The State Cyber Protection Centre of Ukraine has called out the Russian state-sponsored threat actor known as Gamaredon for its targeted cyber attacks on public authorities and critical information infrastructure in the country. All the analyzed VBScript droppers and PowerShell scripts, per SCPC, are variants of GammaLoad and GammaSteel malware, respectively, effectively permitting the adversary to exfiltrate sensitive information.
![Gee, tanks: Russian hackers DDoS Germany for aiding Ukraine](/static/build/img/news/gee-tanks-russian-hackers-ddos-germany-for-aiding-ukraine-small.jpg)
In brief Russian hackers have proved yet again how quickly cyber attacks can be used to respond to global events with a series of DDoS attacks on German infrastructure and government websites in response to the country's plan to send tanks to Ukraine. Germany announced the transfer of 14 Leopard 2 A6 tanks to Ukraine on Wednesday, jointly with the US saying it would send 31 M1 Abrams tanks to the besieged nation.
![British Cyber Agency Warns of Russian and Iranian Hackers Targeting Key Industries](/static/build/img/news/british-cyber-agency-warns-of-russian-and-iranian-hackers-targeting-key-industries-small.jpg)
The U.K. National Cyber Security Centre on Thursday warned of spear-phishing attacks mounted by Russian and Iranian state-sponsored actors for information-gathering operations. The activity is typical of spear-phishing campaigns, where the threat actors send messages tailored to the targets, while also taking enough time to research their interests and identify their social and professional circles.