Yoroi-ZLAb cyber security experts analyzed attack attempts to some italian companies and learned the new actor’s TTPs. Included the use of a LokiBot varian as delivered malware.
Kaspersky cyber security experts: The APT is about to begin the final stage of it’s operation and cash out the funds. Many elements confirm that is the work of the russian-speaking hackers.
The cyber security experts analyzed Operation Woocao, that targeted business and governments in 10 countries, to understand Chinese state-sponsored hackers modus operandi.
The cyber security experts: The North Korea’s APT malicious code has a very low detection rate. It’s hosted in a cryptocurrency trading platform. The campaign is similar to Operation AppleJeus.
Kaspersky cyber security experts: The malware is disguised as security solutions, sound drivers, or software commonly used to create DVDs. Furthermore is hard to detect.
Kaspersky cyber security experts dubbed the campaign as Operation WizardOpium. The profile of the targeted website is in line with earlier DarkHotel attacks.
Link11 cyber security experts: The crooks claim to be the APT and blackmail organizations for a 2 Bitcoin ransom. But, they don’t bluff warning attacks of up to 60 Gbps.
The BIS: It’s part of an operation that involves other European countries. One of the APT that attacks the country is Turla, responsible for the last false flag involving Iran.
Green Leakers spread info on MuddyWater and Tehran’s ministry of Intelligence cyber espionage operations via RANA Institute. In last leak, Lab Dookhtegan revealed source code of APT34 malware.