★ ANNUAL REVIEW 2027 SPONSORSHIPS NOW OPEN   Learn more →

Log In  |  Become a Member  |  Sponsor  |  ⌕ Search

News/Cyber & Privacy/SolarWinds Hackers Developing New Infrastructure, Using Established Tricks
Free SampleYou’re reading a free sample of the Cyber & Privacy Brief. Members get every case digest like this, six days a week.See Membership Options
News·Cyber & Privacy Brief

SolarWinds Hackers Developing New Infrastructure, Using Established Tricks

An analysis of Nobelium/APT29/CobyBear indicates that the Russian hackers responsible for the SolarWinds attack, are setting up new infrastructure for launching attacks. For example, the group has registered “typosquatting” domains to trick phishing targets into thinking they are dealing with legitimate web sites, with an emphasis on impersonating news and media organizations. The group has been trying to phish diplomats and international aid groups, with a recent focus on Ukraine and NATO targets. Last May the groups posed as the U.S. Agency for International Development using domains that the DOJ eventually seized.

Source:

Not ready to join? Take the free Pub K Weekly digest.One email. Free. Top industry articles, the community calendar, and the latest job postings.