Cybersecurity experts: The malware core infrastructure was originally located in Ukraine. After the Russian invasion, it has moved “at home” or in Belarus.
ESET cybersecurity experts: The targets are primarily government entities. The APT, until now undetected, exploits the XDDown malware and spear phishing.
Atlas VPN cyber security experts: The country in the last 31 days suffered 2.1 million aggressions. Part are for cyber espionage purpose, other for cybercrime.
ESET cyber security experts: Before that, it performed click fraud, ad injection, social network fraud and password stealing attacks. It targets Russia, Ukraine, Belarus and Kazakhstan.