Interview #4 GhostSec – attacks on Macedonian targets
ID: b20c5037-352a-5917-bc91-fd94246d251a
STIX ID: report--b20c5037-352a-5917-bc91-fd94246d251a
Feed Name: deepdarkCTI
**GhostSec announced on June 3 that an Italian private company contracted them to carry out attacks against North Macedonian government and Sardinian targets but then refused payment, prompting GhostSec to threaten public disclosure; shared screenshots show target IPs with port 502 (ModBus), implying potential industrial/OT targeting.** The included interview with GhostSec's founder details the engagement, payment arrangements, and intent to expose communications, but the report provides no verified indicators of compromise or evidence of successful intrusions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
