logo

Russian government hackers found using exploits made by spyware companies NSO and Intellexa

ID: 14d7c0d7-8732-5f95-8ab2-9c149d35cd9b

STIX ID: report--14d7c0d7-8732-5f95-8ab2-9c149d35cd9b

Feed Name: TechCrunch Security News

Threat Score
88/100

Date Published: 2024-08-29

Date Updated: 2026-04-23

Author: Zack Whittaker

...
...

Google’s Threat Analysis Group discovered a watering hole campaign (Nov 2023–Jul 2024) that served exploits on Mongolian government websites to compromise iPhone (Safari) and Android (Chrome) users and steal browser-stored cookies, enabling account access. Google links the activity to APT29 and notes the exploit code matches or closely resembles exploits previously developed by commercial spyware vendors Intellexa and NSO Group; unpatched devices were at risk while Lockdown Mode and timely patching mitigated impact.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.