Russian hacker group Cozy Bear (aka #MidnightBlizzard, APT29) is back, using wine-tasting invites to phish EU diplomats. The bait? A new wave of WineLoader malware. 🍷🎣

Read: https://hackread.com/cozy-bear-wine-lure-wineloader-malware-eu-diplomats/

#CyberSecurity #APT29 #WineLoader #Russia #EU

Cozy Bear’s Wine Lure Drops WineLoader Malware on EU Diplomats

Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread

Hackread - Latest Cybersecurity, Hacking News, Tech, AI & Crypto

A wine tasting invite that turns into a covert cyber strike? Russian hackers are targeting European diplomats with a malware hidden in a seemingly harmless "wine.zip." Find out how GrapeLoader slips past security.

https://thedefendopsdiaries.com/grapeloader-malware-a-new-cyber-espionage-threat/

#grapeloader
#cyberespionage
#midnightblizzard
#spearphishing
#cybersecurity

Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

Since October 22, 2024, Microsoft Threat Intelligence has observed Russian threat actor Midnight Blizzard sending a series of highly targeted spear-phishing emails to individuals in government, academia, defense, non-governmental organizations, and other sectors. This activity is ongoing, and Microsoft will continue to investigate and provide updates as available. Based on our investigation of previous Midnight […]

Microsoft Security Blog
Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

Since October 22, 2024, Microsoft Threat Intelligence has observed Russian threat actor Midnight Blizzard sending a series of highly targeted spear-phishing emails to individuals in government, academia, defense, non-governmental organizations, and other sectors. This activity is ongoing, and Microsoft will continue to investigate and provide updates as available. Based on our investigation of previous Midnight […]

Microsoft Security Blog

Microsoft’s breach notification emails end up in spam folder

The Russian nation-state hacker group Midnight Blizzard penetrated Microsoft’s defenses last year

“The notifications aren’t in the portal – they emailed tenant admins instead. The emails can go into spam. They also haven’t informed orgs via account managers”

#Russia #Russian #MidnightBlizzard #Microsoft #email #spam #security #cybersecurity #hackers #hacking

https://cybernews.com/news/microsofts-breach-notification-emails-end-up-in-spam-folder/

Microsoft informiert betroffene Kunden von Midnight-Blizzard-Spionage

Anfang des Jahres entdeckte Microsoft, dass Midnight Blizzard E-Mail-Systeme ausgespäht hat. Jetzt informiert Microsoft betroffene Kunden.

heise online

Microsoft has notified more customers that Russian cybercriminals have stolen their emails in a recent breach. Initially thought to involve only a few executive emails, the breach has now been revealed to affect more customers. The Russian hackers, known as Midnight Blizzard, also accessed sensitive US government data.

#CyberSecurity #DataBreach #MicrosoftHack #RussianHackers #NationalSecurity #MidnightBlizzard #InfoSec #TechNews #EmailSecurity

TeamViewer-Angriff: Die Spur fĂĽhrt nach Russland

Die Eindringlinge von "Cozy Bear" hatten offenbar die Zugangsdaten eines TeamViewer-Angestellten erbeutet, um in die IT-Infrastruktur einzudringen.

heise online

🪆 Microsoft from the 90s is back

「 Some of these clients had already known they were affected by the breach. Others were hearing it for the first time now that Microsoft has had more time to assess the damage, a sign that the hack has had broader repercussions than initially thought. Microsoft declined to say which customers received notices 」

https://www.bloomberg.com/news/articles/2024-06-27/microsoft-tells-some-clients-that-russian-hackers-viewed-emails

#Microsoft #MidnightBlizzard #Russia #Infosec

Hoppla!

#Fernwartungssoftware #TeamViewer kompromittiert

am 27.06.2024 wurde bekannt, dass der Fernwartungs-Anbieter "TeamViewer" am 26.06.2024 Anzeichen für eine Kompromittierung seiner internen IT-Systeme durch einen professionelle Cyber-Angreifer festgestellt hat.  

Nach aktuellen Informationen könnte es sich bei dem Angreifer um die gleiche Gruppierung handeln, die für einen sogenannten "#Lieferkettenangriff" ein US-amerikanisches Unternehmen im Jahr 2020 verantwortlich gemacht wird. Beim damaligen Angriffs sind über eine #Management-Software des Anbieters tausende Kunden des Anbieters kompromittiert wurden.

https://www.golem.de/news/teamviewer-gehackt-cyberangriff-trifft-populaere-fernwartungssoftware-2406-186526.html #Nerdkram #MidnightBlizzard

Teamviewer gehackt: Cyberangriff trifft populäre Fernwartungssoftware - Golem.de

Teamviewer hat bestätigt, dass es einen Sicherheitsvorfall gegeben hat. Erste Hinweise deuten darauf hin, dass die Hackergruppe Midnight Blizzard dahinterstecken könnte.

Golem.de