Ukraine warns Russian hackers are revisiting past breaches to prepare new attacks
ID: cf640540-a2d3-5a33-98f8-63fa8f9ebaad
STIX ID: report--cf640540-a2d3-5a33-98f8-63fa8f9ebaad
Feed Name: The Record from Recorded Future News
Threat Score
CERT‑UA reports that Russian-linked threat actors (including APT28 and Void Blizzard) have shifted from rapid 'steal-and-go' intrusions to operations focused on long-term access and persistence, reusing prior breaches as footholds and employing advanced social engineering (phone/video calls using local numbers and messaging apps) to increase successful delivery of malicious files; the security and defense sector remains the primary target.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
