Intelligent CISO Issue 94 | Page 35

UPDATES

threat

UPDATES
UK
Britain’ s cybersecurity watchdog has warned that Russian-aligned hacktivist groups are continuing to target UK and international organisations with disruptive cyberattacks.
The National Cyber Security Centre( NCSC) said pro-Russian groups are attempting to take websites offline, disrupt services and interfere with operations across both the public and private sectors, including through repeated distributed denial-of-service( DDoS) attacks on British local government bodies.
One of the groups named in the advisory, NoName057( 16), has been active since the early days of Russia’ s invasion of Ukraine in 2022. The group has repeatedly targeted government agencies and private companies across NATO countries and other European states that Moscow considers hostile to its geopolitical interests.
AFGHANISTAN
Security researchers at Seqrite have uncovered a phishing campaign targeting Afghan government staff, in which attackers pose as officials from the Prime Minister’ s office.
First identified in December, the operation relies on a fake document crafted to look like an authentic government letter distributed to ministries and administrative departments.
The file begins with a religious salutation and features what appear to be formal instructions about financial reporting, complete with a counterfeit signature from a senior figure in the Prime Minister’ s office. This approach is designed to make the message appear credible and encourage recipients to open it.
When opened, the document installs a malware strain known as FalseCub, which is built to harvest and exfiltrate data from compromised systems.
WWW. INTELLIGENTCISO. COM 35