May 4, 2023, 12:18 a.m. |

BankInfoSecurity.com RSS Syndication www.bankinfosecurity.com

Ukraine Links Attacks to Russian Intelligence Sandworm Hackers
Ukrainian cyber defenders say they spotted a malicious script used to activate the delete option on a Windows file archiving utility likely planted by the Russian intelligence agency unit Sandworm. CERT-UA says attackers likely used a compromised VPN credential to gain access.

access agency archiving attackers attacks cert cert-ua compromised credential cyber defenders delete file intelligence intelligence agency links malicious public public sector russian sandworm script sector ukraine ukrainian utility vpn windows winrar

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Cybersecurity Triage Analyst

@ Peraton | Linthicum, MD, United States

Associate DevSecOps Engineer

@ LinQuest | Los Angeles, California, United States

DORA Compliance Program Manager

@ Resillion | Brussels, Belgium

Head of Workplace Risk and Compliance

@ Wise | London, United Kingdom