logo

European govt air-gapped systems breached using custom malware

ID: 78dfd58e-f771-5f8d-bc4d-400dd3c92fd4

STIX ID: report--78dfd58e-f771-5f8d-bc4d-400dd3c92fd4

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2024-10-08

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

ESET documents that the GoldenJackal APT successfully breached air-gapped government and diplomatic systems across multiple confirmed incidents (2019, 2021, 2022–2024) using USB-propagated custom malware families (e.g., GoldenDealer, GoldenHowl, GoldenRobo, GoldenAce, GoldenUsbGo) to collect and exfiltrate sensitive files, encryption keys, and emails; the report describes the infection/exfiltration chain, modular toolsets, and points to a published IoC repository.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.