home.social

#fancybear — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #fancybear, aggregated by home.social.

  1. 📢 Russian-linked #ForestBlizzard hackers hijack home routers for global surveillance, as Microsoft warns that thousands of devices are compromised to intercept traffic and sensitive data.

    Read: hackread.com/russian-forest-bl

    #CyberSecurity #Hacking #Russia #FancyBear #Routers

  2. Russian BlueDelta (Fancy Bear) uses PDFs to steal logins in just 2 seconds, targeting energy and research professionals globally.

    Read: hackread.com/russian-bluedelta

    #BlueDelta #FancyBear #Phishing #CyberSecurity #Russia

  3. ⚠️ Critical #XSS flaw actively exploited in Zimbra Collaboration Suite, putting over 129,000 servers at risk. Researchers suspect involvement of #Sednit (aka Fancy Bear).

    Read: hackread.com/zimbra-cve-2024-2

    #CyberSecurity #Vulnerability #FancyBear #Zimbra

  4. Hatte euch das mit #datarade und #datastream schon beunruhigt? Dann solltet ihr evt. die kleine "Bären-Doku" doch nicht anschauen. Das könnte Teile der Bevölkerung ...

    y.lab.nrw/bthack [ard mediathek]

    Aber #NIS2 kommt ja... schon bald...

    \__
    #simplicissimus #bthack #vsc #xtunnel #fancybear #voodoobear #cyberwar #38c3 #cyberwehr #nohackback #hackback #apt28 #bsi

  5. Microsoft reported that APT28 (Fancy Bear, Forest Blizzard) used a custom tool to elevate privileges and steal credentials in compromised networks. This GooseEgg tool leveraged CVE-2022-38028 (7.8 high, disclosed 11 October 2022 by Microsoft; Windows Print Spooler Elevation of Privilege Vulnerability) as a zero-day since at least June 2020 (possibly as early as April 2019) which was 2 years 4 months. APT28 is publicly attributed to Russian General Staff Main Intelligence Directorate (GRU). IOC provided. 🔗 microsoft.com/en-us/security/b

    cc: @serghei @campuscodi @briankrebs @jwarminsky

    #APT28 #cyberespionage #Russia #FancyBear #ForestBlizzard #CVE_2022_38028 #eitw #activeexploitation #GooseEgg

  6. #FBI Dismantles #Ubiquiti Router Botnet Controlled by #Russia
    “Non-GRU cybercriminals installed the Moobot malware on Ubiquiti #EdgeOS routers that still used publicly known default administrator #passwords. #GRU hackers then used the #Moobot #malware to install their own bespoke scripts and files that repurposed the botnet, turning it into a global cyber #espionage platform,” agency said
    securityweek.com/fbi-dismantle #ForestBlizzard #Sofacy #FancyBear #APT28

    Please patch and change #defaultpasswords