home.social

#gamaredon — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #gamaredon, aggregated by home.social.

fetched live
  1. The second and third parts of our investigation into the #Gamaredon, the cyberespionage group operated by the Russian #FSB, are live!
    🪆Part 2 — The loaders buff.ly/bBYZSKa
    🪆Part 3 — The stealer & full infrastructure buff.ly/74WHuPd

    #CTI #TDR #Sekoia

  2. The second and third parts of our investigation into the #Gamaredon, the cyberespionage group operated by the Russian #FSB, are live!
    🪆Part 2 — The loaders buff.ly/bBYZSKa
    🪆Part 3 — The stealer & full infrastructure buff.ly/74WHuPd

    #CTI #TDR #Sekoia

  3. Gamaredon sfrutta CVE-2025-8088 in WinRAR per distribuire GammaWorm e GammaSteel contro l’Ucraina

    Sekoia documenta una campagna di gennaio 2026 del gruppo APT russo Gamaredon: sfruttando CVE-2025-8088 in WinRAR, gli operatori dell'FSB distribuiscono GammaPhish, GammaLoad, GammaWorm e GammaSteel contro target governativi e militari ucraini. La catena usa Telegram come dead drop resolver per il C2 e NTFS Alternate Data Streams per l'evasione, con esfiltrazione finale verso AWS S3.

    insicurezzadigitale.com/gamare

  4. Gamaredon sfrutta CVE-2025-8088 in WinRAR per distribuire GammaWorm e GammaSteel contro l’Ucraina

    Sekoia documenta una campagna di gennaio 2026 del gruppo APT russo Gamaredon: sfruttando CVE-2025-8088 in WinRAR, gli operatori dell'FSB distribuiscono GammaPhish, GammaLoad, GammaWorm e GammaSteel contro target governativi e militari ucraini. La catena usa Telegram come dead drop resolver per il C2 e NTFS Alternate Data Streams per l'evasione, con esfiltrazione finale verso AWS S3.

    insicurezzadigitale.com/gamare

  5. Gamaredon Exploits WinRAR Flaw to Deliver GammaWorm, GammaSteel Malware

    Cyber attackers have cleverly exploited a WinRAR flaw to unleash a potent malware duo, GammaWorm and GammaSteel, with the goal of taking control of infected systems and executing malicious scripts. This sneaky tactic, spotted by French cybersecurity firm Sekoia, allows hackers to fingerprint host systems, manipulate network settings, and…

    osintsights.com/gamaredon-expl

    #Gamaredon #Winrar #Cve20258088 #Gammaworm #Gammasteel

  6. Russia's #FSB-linked #Gamaredon has been hammering Ukraine's government, military & critical infrastructure for over a decade. We went behind the scenes.

    Tracked their infrastructure. Recovered artefacts from compromised machines. Here's what we found 🧵 buff.ly/6hR2IMj

  7. Russia's #FSB-linked #Gamaredon has been hammering Ukraine's government, military & critical infrastructure for over a decade. We went behind the scenes.

    Tracked their infrastructure. Recovered artefacts from compromised machines. Here's what we found 🧵 buff.ly/6hR2IMj

  8. Two of the world’s most prolific state-linked #cybercrime groups — #russia’s #Gamaredon and #NKorea’s #Lazarus collective — have been spotted sharing resources.

    Experts found overlapping #tactics and shared #infrastructure between the two groups.

    politico.eu/article/russia-nor

  9. Two of the world’s most prolific state-linked #cybercrime groups — #russia’s #Gamaredon and #NKorea’s #Lazarus collective — have been spotted sharing resources.

    Experts found overlapping #tactics and shared #infrastructure between the two groups.

    politico.eu/article/russia-nor

  10. #Gamaredon : The Turncoat #Spies Relentlessly #Hacking #Ukraine

    For the past decade, this group of #FSB #hackers—including “traitor” #Ukrainian intelligence officers—has used a grinding barrage of #intrusion campaigns to make life hell for their former countrymen and #cybersecurity defenders.
    #security #privacy

    wired.com/story/gamaredon-turn

  11. #Gamaredon : The Turncoat #Spies Relentlessly #Hacking #Ukraine

    For the past decade, this group of #FSB #hackers—including “traitor” #Ukrainian intelligence officers—has used a grinding barrage of #intrusion campaigns to make life hell for their former countrymen and #cybersecurity defenders.
    #security #privacy

    wired.com/story/gamaredon-turn

  12. The russia-backed #Gamaredon group targets Ukraine once again in the ongoing campaign that employs DLL sideloading and exploits LNK files to spread #Remcos backdoor. Detect related #APT attacks with #Sigma rules from SOC Prime Platform.
    socprime.com/blog/gamaredon-ca