Russian government hackers found using exploits made by spyware companies NSO and Intellexa
ID: 14d7c0d7-8732-5f95-8ab2-9c149d35cd9b
STIX ID: report--14d7c0d7-8732-5f95-8ab2-9c149d35cd9b
Feed Name: TechCrunch Security News
Google’s Threat Analysis Group discovered a watering hole campaign (Nov 2023–Jul 2024) that served exploits on Mongolian government websites to compromise iPhone (Safari) and Android (Chrome) users and steal browser-stored cookies, enabling account access. Google links the activity to APT29 and notes the exploit code matches or closely resembles exploits previously developed by commercial spyware vendors Intellexa and NSO Group; unpatched devices were at risk while Lockdown Mode and timely patching mitigated impact.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
