It appears you have not yet registered with our community. To register please click here...

 
Go Back [M] > Madshrimps > WebNews
ESET researchers find more clues about Fancy Bear ESET researchers find more clues about Fancy Bear
FAQ Members List Calendar Search Today's Posts Mark Forums Read


ESET researchers find more clues about Fancy Bear
Reply
 
Thread Tools
Old 27th May 2019, 11:58   #1
[M] Reviewer
 
Stefan Mileschin's Avatar
 
Join Date: May 2010
Location: Romania
Posts: 148,769
Stefan Mileschin Freshly Registered
Default ESET researchers find more clues about Fancy Bear

Working out the outfits strange moves

Boffins at the ESET R&D centre in Montreal have just published findings on their latest investigation into the infamous Sednit Group.

For several years, the Advanced Persistent Threat (APT) group Sednit - also known as APT28, Fancy Bear, Sofacy or STRONTIUM - has been attacking targets in Europe, Central Asia and the Middle East. Since then, the number and diversity of component tools have increased drastically. As part of this discovery, ESET looked at Sednit’s backdoor Zebrocy, the capabilities of which have now expanded, thanks to the ability to issue more than 30 different commands to compromised computers and gathered considerable amounts of information about the target.

Zebrocy is quick to do its job. Once the backdoor sends information about its newly compromised system, the operators take control of the backdoor and start to send commands right away. Hence, the time between the victim running the downloader and the operators' first commands spans only a few minutes.

At the end of August 2018, the Sednit group launched a spear-phishing email campaign, in which it distributed shortened URLs that delivered first-stage Zebrocy components.

Alexis Dorais-Joncas, Security Intelligence Team Lead at ESET R&D centre in Montreal, said that it was unusual for the group to use this technique to deliver one of its malware components directly.

“Previously, it had used exploits to deliver and execute the first-stage malware, while in this campaign the group relied entirely on social engineering to lure victims into running the first part of the chain”, he said.

ESET has recorded at least 20 clicks on the malicious link. However, the overall number of victims is impossible to estimate.

https://fudzilla.com/news/48739-eset...out-fancy-bear
Stefan Mileschin is offline   Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
Researchers find 36 security flaws in LTE Stefan Mileschin WebNews 0 28th March 2019 10:15
Researchers find hundreds of easily-breached messaging apps Stefan Mileschin WebNews 0 12th November 2017 05:28
Purdue researchers find a groovy method for cooling stacked chips Stefan Mileschin WebNews 0 1st November 2017 05:34
Researchers find a new way to convert heat into electricity Stefan Mileschin WebNews 0 17th November 2016 19:41
Researchers can find your deepest secrets by scanning your brain Stefan Mileschin WebNews 0 13th September 2016 07:06
Researchers find that people with epilepsy process music differently Stefan Mileschin WebNews 0 11th August 2015 15:07
Researchers find Android factory reset faulty and reversible Stefan Mileschin WebNews 0 26th May 2015 10:27
Researchers find new 'most distant' galaxy in the universe Stefan Mileschin WebNews 0 6th May 2015 10:49
Researchers find another terrifying iOS flaw Stefan Mileschin WebNews 0 23rd April 2015 13:16
Researchers find 12 easily captured near-Earth asteroids Stefan Mileschin WebNews 0 14th August 2013 10:49

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


All times are GMT +1. The time now is 21:01.


Powered by vBulletin® - Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO