Russian state-sponsored advanced persistent threat operation Turla, also known as Secret Blizzard, Snake, Waterbug, and Venomous Bear, has been found to be targeting Ukrainian military personnel using the infrastructure and tools of other cybercrime groups shortly after it was found to have used the payloads of a Pakistani threat group to compromise South Asian organizations, according to media reports.
In January, Turla used the backdoor of Russian threat operation Storm-1837 to hack the Tavdig loader. In March and April, the Microsoft Threat Intelligence team found that Turla then used Storm-1919’s Amadey botnet to spread the XMRig cryptominer. Turla “has been using footholds from third parties—either by surreptitiously stealing or purchasing access—as a specific and deliberate method to establish footholds of espionage value.
Nevertheless, Microsoft assesses that while this approach has some benefits that could lead more threat adversaries to use it, it is of less use against hardened networks, where good endpoint and network defenses enable the detection of activities of multiple threat adversaries for remediation,” said the report.
Also read: Viksit Workforce for a Viksit Bharat
Do Follow: The Mainstream formerly known as CIO News LinkedIn Account | The Mainstream formerly known as CIO News Facebook | The Mainstream formerly known as CIO News Youtube | The Mainstream formerly known as CIO News Twitter
About us:
The Mainstream formerly known as CIO News is the premier platform dedicated to delivering the latest news, updates, and insights from the CIO industry. As a trusted source in the technology and IT sector, we provide a comprehensive resource for executives and professionals seeking to stay informed and ahead of the curve. With a focus on cutting-edge developments and trends, The Mainstream formerly known as CIO News serves as your go-to destination for staying abreast of the rapidly evolving landscape of technology and IT. Founded in June 2020, The Mainstream formerly known as CIO News has rapidly evolved with ambitious growth plans to expand globally, targeting markets in the Middle East & Africa, ASEAN, USA, and the UK