Security News

Ukrainian Institutions Targeted Using HATVIBE and CHERRYSPY Malware
2024-07-23 09:03

The Computer Emergency Response Team of Ukraine has alerted of a spear-phishing campaign targeting a scientific research institution in the country with malware known as HATVIBE and CHERRYSPY. The agency attributed the attack to a threat actor it tracks under the name UAC-0063, which was previously observed targeting various government entities to gather sensitive information using keyloggers and backdoors. Opening the document and enabling macros results in the execution of an encoded HTML Application named HATVIBE, which sets up persistence on the host using a scheduled task and paves the way for a Python backdoor codenamed CHERRYSPY, which is capable of running commands issued by a remote server.

Ukrainian cops collar Kyiv programmer believed to be Conti, LockBit linchpin
2024-06-13 16:27

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Ukrainian REvil Hacker Sentenced to 13 Years and Ordered to Pay $16 Million
2024-05-02 12:26

A Ukrainian national has been sentenced to more than 13 years in prison and ordered to pay $16 million in restitution for carrying out thousands of ransomware attacks and extorting victims....

Russian Hackers May Have Targeted Ukrainian Telecoms with Upgraded 'AcidPour' Malware
2024-03-22 03:06

The data wiping malware called AcidPour may have been deployed in attacks targeting four telecom providers in Ukraine, new findings from SentinelOne show. The cybersecurity firm also confirmed...

Ukrainian police arrest father and son in suspected LockBit affiliate double act
2024-02-22 15:30

Today's edition of the week-long LockBit leaks reveals a father-son duo was apprehended in Ukraine as part of the series of takedown-related arrests this week. The National Police of Ukraine confirmed the relationship of the pair after they were arrested at the request of the French government.

DirtyMoe Malware Infects 2,000+ Ukrainian Computers for DDoS and Cryptojacking
2024-02-02 13:17

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned that more than 2,000 computers in the country have been infected by a strain of malware called DirtyMoe. The...

29-Year-Old Ukrainian Cryptojacking Kingpin Arrested for Exploiting Cloud Services
2024-01-13 10:01

A 29-year-old Ukrainian national has been arrested in connection with running a “sophisticated cryptojacking scheme,” netting them over $2 million (€1.8 million) in illicit profits. The person was...

Secret multimillion-dollar cryptojacker snared by Ukrainian police
2024-01-12 17:22

Supported by the National Police of Ukraine, Europol arrested a 29-year-old, whose identity is being withheld, this week in Mykolaiv, Ukraine. An unnamed cloud provider worked with Europol et al to bring the crook into custody - an effort that also saw three properties raided as authorities built up their portfolio of evidence against them.

UAC-0099 Using WinRAR Exploit to Target Ukrainian Firms with LONEPAGE Malware
2023-12-22 07:46

The threat actor known as UAC-0099 has been linked to continued attacks aimed at Ukraine, some of which leverage a high-severity flaw in the WinRAR software to deliver a malware strain called...

Ukrainian military says it hacked Russia's federal tax agency
2023-12-12 20:39

The Ukrainian government's military intelligence service says it hacked the Russian Federal Taxation Service, wiping the agency's database and backup copies. Following this operation, carried out by cyber units within Ukraine's Defense Intelligence, military intelligence officers breached Russia's federal taxation service central servers and 2,300 regional servers across Russia and occupied Ukrainian territories.