China-linked cyber-spies infect Russian govt, IT sector

United Kingdom News News

China-linked cyber-spies infect Russian govt, IT sector
United Kingdom Latest News,United Kingdom Headlines
  • 📰 TheRegister
  • ⏱ Reading Time:
  • 42 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 20%
  • Publisher: 61%

No, no, go ahead, don't let us stop you, Xi

Cyber-spies suspected of connections with China have infected"dozens" of computers belonging to Russian government agencies and IT providers with backdoors and trojans since late July, according to Kaspersky.

After gaining initial access to their victims' devices via phishing emails, the attackers used various cloud services and sites including GitHub, Dropbox, Quora, LiveJournal, and Yandex.Disk to direct their remote-control malware to download additional payloads onto compromised computers. Those services were effectively used as command-and-control servers.

Once it establishes contact with the cloud storage service, the backdoor fetches instructions from its masters, executes commands, conducts reconnaissance, and downloads additional malware. The malware includes a trojan – previouslyThis particular version of GrewApacha uses the same loader spotted in 2023, but now uses two C2 servers. It also uses a GitHub profile bio to obfuscate the C2 server address, which is stored in a Base64-encoded string.

We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

TheRegister /  🏆 67. in UK

United Kingdom Latest News, United Kingdom Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Europe and China Remain the Biggest Buyers of Russian Pipeline GasEurope and China Remain the Biggest Buyers of Russian Pipeline GasDespite cutting off most gas supplies to Europe, Russia continues to send significant volumes of pipeline gas to the continent, while struggling to increase exports to China.
Read more »

Ukraine ‘shoots down £28m SU-34 bomber inside Russia’ during Kursk attackUkraine ‘shoots down £28m SU-34 bomber inside Russia’ during Kursk attackUkraine's military claims to have 'destroyed' a Russian Su-34 fighter-bomber inside Russian territory
Read more »

Russian cyber snoops linked to massive credential-stealing campaignRussian cyber snoops linked to massive credential-stealing campaignCitizen Lab also spots a COLDWASTREL swimming in the Rivers of Phish
Read more »

Cyber hackers who stole NHS patients' private data linked to Russian governmentCyber hackers who stole NHS patients' private data linked to Russian governmentCriminals calling themselves Inc Ransom published 3TB of stolen data – around 43million emails worth – on the dark web after accessing NHS Dumfries and Galloway’s IT network.
Read more »

Hungary’s visa move opens door to Russian spies, warns largest EU partyHungary’s visa move opens door to Russian spies, warns largest EU partyBudapest’s decision to loosen restrictions for visitors from Russia is ‘national security’ risk, says European People’s party
Read more »

Nato fighter jets intercept Russian nuclear bombersNato fighter jets intercept Russian nuclear bombersTwo Tu-95MS strategic nuclear missile carriers buzzed the north of Britain by flying over the Norwegian Sea escorted by MiG-31 combat warplanes.
Read more »



Render Time: 2025-02-12 07:22:44