Russian hackers Killnet, notorious for crippling DDoS attacks, claimed responsibility for cyber attacks that shut down multiple state government websites.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Russian hackers stole 50 million passwords from popular online services such as PayPal, Amazon, Roblox, Steam and crypto wallets by deploying infostealer malware on users’ devices.
The stolen passwords are for a MoD portal specifically designed to be used safely from home via member personal devices, but it appears the Russian hackers have been targeting the devices themselves and intercepting the credentials.
State-sponsored Russian hackers are targeting German political parties with fake dinner invites to deploy WINELOADER backdoors, establish persistence, and exfiltrate data.
Russian hackers targeted five US nuclear scientists from Lawrence Livermore National Laboratories, Brookhaven, and Argonne nuclear labs as Vladimir Putin issued nuclear threats.
Health authorities warned that Russian hacktivists were actively targeting US hospitals with DDoS attacks in a widespread campaign also targeting other Ukraine's allies.
Report found that Russian intelligence agencies FSB and SVR collaborated with ransomware gangs to compromise US government-affiliated organizations using cybercriminals tools and infrastructure.
Yandex warded off the largest DDoS attack in history recorded at 22 million requests per second and attributed to a new botnet Meris that exploits MikroTik devices.
A new Russia-based family of malware has been observed using a large language model (LLM) to issue commands on compromised systems in real time, which can potentially improve attacker capability by allowing them to shift tactics during an attack without having to introduce new payloads.
Microsoft has warned of an ongoing spear phishing campaign for intelligence gathering by the Russian state-linked threat actor Midnight Blizzard.










