Security News

Clop ransomware suspects busted in Ukraine, money and motors seized
2021-06-16 18:44

You don't need to be fluent in Ukrainian to understand the shouted command: "Open up, Police!". At which point the door opens outwards, slowly and tentatively, and the raid is ON! According to the Ukrainian police, law enforcement officers conducted 21 searches in the capital and Kyiv region.

Cuffed: Ukraine police collar six Clop ransomware gang suspects in joint raids with South Korean cops
2021-06-16 13:37

Ukrainian police have arrested six people, alleged to be members of the notorious Clop* ransomware gang, seizing cash, cars - and a number of Apple Mac laptops and desktops. The six suspects were arrested in joint raids carried out with South Korean law enforcement authorities earlier today, cops in Ukraine said.

Ukraine arrests Clop ransomware gang members, seizes servers
2021-06-16 12:59

Ukrainian law enforcement arrested cybercriminals associated with the Clop ransomware gang and shut down infrastructure used in attacks targeting victims worldwide since at least 2019. Cybersecurity company Intel 471 told BleepingComputer that the Ukrainian authorities arrested only individuals involved in laundering money for the Clop gang since its core members are likely out of harm's way in Russia.

Ukraine Says Russian Cyberspies Targeted Gov Agencies in Supply Chain Attack
2021-02-25 14:37

The agency said it had linked the attack to "One of the hacker spy groups from the Russian Federation." The incident was described as a supply chain attack and compared to the NotPetya attack of 2017 and the recently disclosed SolarWinds incident. Another press release, issued on Monday, said the NCCC had been seeing "Massive DDoS attacks" since February 18.

Russian Hackers Targeted Ukraine Authorities With Supply-Chain Malware Attack
2021-02-25 08:58

Ukraine is formally pointing fingers at Russian hackers for hacking into one of its government systems and attempting to plant and distribute malicious documents that would install malware on target systems of public authorities. "The purpose of the attack was the mass contamination of information resources of public authorities, as this system is used for the circulation of documents in most public authorities," the National Security and Defense Council of Ukraine said in a statement published on Wednesday.

Ukraine: DDoS attacks on govt sites originated from Russia
2021-02-23 13:56

The National Security and Defense Council of Ukraine is accusing threat actors located on Russia networks of performing DDoS attacks on Ukrainian government websites since February 18th. The National Coordination Center for Cybersecurity at the NSDC state that these DDoS attacks have been massive and have targeted government websites in the defense and security sector. While Ukraine did not directly accuse Russia of the denial of service attacks, they stated that the attackers' IP addresses were located on Russian networks.

Egregor ransomware criminals allegedly busted in Ukraine
2021-02-15 18:40

According to a report from radio station France Inter, numerous cybercriminals connected to the Egregor ransomware gang have recently been arrested. Since Tuesday [last week], police in the two countries have been working together in an effort to dismantle a cybercrime group suspected of initiating hundreds of ransomware attacks dating back to September 2020.[] Police arrested a number of hackers suspected of working with the Egregor cybercrime gang, providing hacking, logistical, and financial support.

Ukraine Nabs Suspect in 773M Password ‘Megabreach’
2020-05-19 16:46

"Sanixer said Collection#1 consists of data pulled from a huge number of hacked sites, and was not exactly his 'freshest' offering. Rather, he sort of steered me away from that archive, suggesting that - unlike most of his other wares - Collection #1 was at least 2-3 years old. His other password packages, which he said are not all pictured in the above screen shot and total more than 4 terabytes in size, are less than a year old, Sanixer explained." That's because in nearly all cases, the person who is in control of that email address can reset the password of any services or accounts tied to that email address - merely by requesting a password reset link via email.

Gamaredon APT Improves Toolset to Target Ukraine Government, Military
2020-02-05 11:00

The Gamaredon advanced persistent threat group has been supercharging its operations lately, improving its toolset and ramping up attacks on Ukrainian national security targets. Vitali Kremez, head of SentinelLabs, said in research released on Wednesday that he has been tracking an uptick in Gamaredon cyberattacks on Ukrainian military and security institutions that started in December.

Russian 'Gamaredon' Hackers Back at Targeting Ukraine Officials
2019-12-06 17:56

The Russian state-sponsored hacking group known as Gamaredon has been targeting various Ukrainian diplomats, government and military officials, and law enforcement since mid-October 2019, threat...