Researchers Find More Servers Tied to Russian-Linked Attacks
August 4, 2021 Twitter Get Permission
Researchers at the security firm RiskIQ have uncovered about 35 active command-and-control servers connected with an ongoing malware campaign that has been linked to a Russian-speaking attack group known as APT29 or Cozy Bear.
These servers, which are located in the U.S., Austria, Bulgaria, Switzerland, Germany, Denmark, France, Hong Kong, Japan and nearly a dozen other countries, are used to host custom malware called WellMess and WellMail, RiskIQ says in a report released Friday. These malware strains have previously been deployed to target research organizations developing COVID-19 vaccines, the researchers note.
Russians Hacked Top US Prosecutors, Including Offices Handling Trump, Giuliani Probe
newsweek.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from newsweek.com Daily Mail and Mail on Sunday newspapers.
SolarWinds hack targeted nearly 2 dozen federal prosecutors offices, including some of the most influential in the country like the Eastern District of New York
businessinsider.com.au - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from businessinsider.com.au Daily Mail and Mail on Sunday newspapers.