Ghostwriter colpisce il governo ucraino con PDF georeferenziati, PicassoLoader e Cobalt Strike

Il gruppo bielorusso Ghostwriter (FrostyNeighbor) ha lanciato una nuova campagna di spear-phishing contro enti governativi e militari ucraini, utilizzando PDF-esca che impersonano Ukrtelecom con geofencing per eludere il rilevamento e distribuire Cobalt Strike tramite PicassoLoader JavaScript.

https://insicurezzadigitale.com/ghostwriter-colpisce-il-governo-ucraino-con-pdf-georeferenziati-picassoloader-e-cobalt-strike/

๐Ÿ‡ท๐Ÿ‡ธGround Station: Nis, Serbia METEOR-M2 4 16-05-2026 14:47 CEST Max Elev: 77ยฐ W Sun Elevation: 52ยฐ Gain: 15 | Northbound

#NOAA #NOAA15 #NOAA18 #NOAA19 #MeteorM2_3 #MeteorM2_4 #weather #weathersats #APT #LRPT #wxtoimg #MeteorDemod #rtlsdr #gpredict #raspberrypi #RN2 #ISS

Can't upgrade Kubuntu 25.10 to 26.04 to new version because of broken build-essentials dependencies #apt #packagemanagement #upgrade #dependencies #gcc

https://askubuntu.com/q/1566786/612

Can't upgrade Kubuntu 25.10 to 26.04 to new version because of broken build-essentials dependencies

$ LANG=C sudo apt full-upgrade Not upgrading: cpp-15 libasan8 libgcc-15-dev libgomp1 liblsan0 libstdc++-15-dev libubsan1 cpp-15-x86-64-linux-gnu

Ask Ubuntu

After adding the repo thopiekar/openrgb, I am getting an Error from Sub-process /usr/bin/dpkg #apt #dpkg

https://askubuntu.com/q/1566843/612

After adding the repo thopiekar/openrgb, I am getting an Error from Sub-process /usr/bin/dpkg

I'm running Pop_os 22.04. I recently tried to install openrgb, which required me to add the thopiekar/openrgb repository. immediately after adding this repository, I started getting the following e...

Ask Ubuntu
Our CTI team identifies elevated activities targeting products by Oracle https://vuldb.com/vendor/oracle #oracle #vendor #cti #apt

๐Ÿ“ฐ Chinese APT Mustang Panda Targets Indian Banks, Korean Policy Experts in Espionage Campaign

๐Ÿ‡จ๐Ÿ‡ณ APT UPDATE: Mustang Panda targets Indian banks & Korean policy experts in a new espionage campaign. The group uses spear-phishing & DLL sideloading to deploy the LotusLite backdoor for intelligence gathering. ๐Ÿ•ต๏ธ #APT #MustangPanda #CyberEspiona...

๐ŸŒ cyber[.]netsecops[.]io

๐Ÿ”— https://cyber.netsecops.io/articles/chinese-apt-mustang-panda-targets-indian-banks-and-korean-pโ€ฆ

๐Ÿ“ฐ Chinese APT FamousSparrow Hits Azerbaijan Energy Sector with Deed RAT

๐Ÿ‡จ๐Ÿ‡ณ Chinese APT FamousSparrow targets Azerbaijan's energy sector. Campaign used Exchange exploits to deploy an updated Deed RAT for cyber-espionage, signaling new geopolitical targeting. ๐Ÿ‡ฆ๐Ÿ‡ฟ #APT #China #CyberSecurity #EnergySector #FamousSparrow

๐ŸŒ cyber[.]netsecops[.]io

๐Ÿ”— https://cyber.netsecops.io/articles/chinese-apt-famoussparrow-targets-azerbaijan-energy-sector-with-deed-rat/?utm_source=mโ€ฆ

๐Ÿ“ฐ Belarus-Aligned APT 'FrostyNeighbor' Deploys New JavaScript Loader in Attacks on Poland & Ukraine

Belarusian APT 'FrostyNeighbor' (Ghostwriter) targets Poland & Ukraine with an evolved toolkit. New campaign uses PDF lures to deliver a JavaScript 'PicassoLoader', ultimately deploying Cobalt Strike for espionage. ๐Ÿ‡ต๐Ÿ‡ฑ๐Ÿ‡บ๐Ÿ‡ฆ #APT #CyberWarfare #Threat...

๐ŸŒ cyber[.]netsecops[.]io

๐Ÿ”— https://cyber.netsecops.io/articles/belarusian-apt-frostyneighbor-targets-poland-and-ukraโ€ฆ

Added indicators for: Nim-based Backdoor (+2), UAT-8616 (+3), Peach Sandstorm (+1), Pioneer Kitten (+1), Cyber Av3ngers (+1), BladedFeline (+1) and APT42 (+1). https://vuldb.com/actor #apt #cti #ioc
Actors

Predictive activity analysis of APT actors in social media, private forums, chat rooms, and darknet markets.

Vulnerability Database

๐Ÿ‡ท๐Ÿ‡ธGround Station: Nis, Serbia METEOR-M2 4 15-05-2026 15:08 CEST Max Elev: 50ยฐ W Sun Elevation: 48ยฐ Gain: 15 | Northbound

#NOAA #NOAA15 #NOAA18 #NOAA19 #MeteorM2_3 #MeteorM2_4 #weather #weathersats #APT #LRPT #wxtoimg #MeteorDemod #rtlsdr #gpredict #raspberrypi #RN2 #ISS