Breaking 09:00 Love Brand 2025 | Nike ranked 2nd among the favorite international brands of consumers in Morocco 08:50 Global energy crisis deepens as Hormuz disruption enters fourth week 08:20 Saudi Arabia and the UAE open trade corridor bypassing Hormuz 07:50 Oil prices swing as US Iran signals clash over talks 17:50 Dogecoin longs surge raises risk of liquidation cascade 17:30 Morocco strengthens its position in electric vehicles despite European challenges 17:20 World water day highlights UN warning of global water crisis 17:00 TotalEnergies shifts $1 billion from offshore wind to U.S. oil and gas 16:50 Capcom rules out generative AI content in video games 16:45 Czech coalition plans partial defunding of public media 16:30 Air France extends flight suspensions to Dubai, Riyadh, Tel Aviv, and Beirut 16:20 Lyme disease vaccine shows over 70 percent efficacy in phase 3 trial 16:18 XBOW secures $120 million and integrates AI pentesting with Microsoft 16:15 Russia and Vietnam sign agreement to build nuclear power plant 16:00 Ukraine explores gas supplies from Mozambique amid global energy crisis 15:54 Kandou AI raises $225 million to scale AI chip infrastructure 15:50 Morgan Stanley upgrades US LNG exporters after Qatar supply disruption 15:45 Italy’s Meloni narrowly loses justice referendum, exit polls indicate 15:45 Grab expands beyond Southeast Asia with $600 million Taiwan deal 15:30 Marseille murder: eight suspects arrested in Mehdi Kessaci case 15:27 Ancient clay beads reveal children’s role in prehistoric craftsmanship 15:20 Middle East conflict threatens up to 3 percent GDP loss in Asia Pacific 15:15 IndiGo appoints former Air India Express CEO as chief strategy officer 15:06 Love Brand 2025 | Adidas among the most appreciated international brands by consumers in Morocco 15:00 Kenya Airways sees surge in flight demand amid Middle East conflict 14:50 Astronomers map 12 billion years of a spiral galaxy’s evolution 14:45 HSBC appoints first chief AI Officer to drive efficiency and innovation 14:30 DoorDash launches emergency support program as fuel prices surge for gig workers 14:20 US agencies ordered to patch iPhone flaws linked to DarkSword spyware 14:15 Hong Kong expands police powers to access digital devices 14:00 Italy seeks new gas supplies as Meloni visits Algeria amid Qatar disruptions 13:50 Crypto fear index plunges to extreme lows amid market selloff 13:45 19-years-old candidate ends 43-years mayoral era in French municipal election 13:30 Hungary Foreign Minister accused of sharing sensitive EU information with Russia 13:20 Nikkei plunges nearly 5 percent as Middle East tensions rattle Asia 13:15 Red meat prices in Morocco set for temporary decline amid surge in imports 13:00 Itochu and JOGMEC boost investment in South African platinum mine expansion 12:50 Dollar surges as Trump ultimatum to Iran nears deadline 12:20 Goldman Sachs raises oil forecasts as Hormuz crisis disrupts supply 12:15 Pakistan vows to “eradicate terrorist threat” as truce with Afghanistan ends 12:00 London ambulances targeted in anti-semitic attack 11:50 KPMG introduces AI kill switches amid rising autonomous agent risks 11:45 OpenAI offers attractive private equity deals in enterprise AI race 11:30 Reliance Jio prepares for landmark IPO amid telecom and tech expansion 11:20 Berkshire Hathaway buys $1.8 billion stake in Tokio Marine 11:17 Bitcoin rally could trigger $5 billion short squeeze near $75,000 11:15 Vincent Bolloré to testify before public broadcasting inquiry on March 24 11:10 “Like a woman” campaign promotes global recognition of female leadership 11:00 Swiss tourist faces jail for criticizing Bali religious festival 10:50 IAEA chief says war cannot eliminate Iran nuclear program 10:45 US stock futures drop as Middle East tensions shake rate-cut expectations 10:30 Taiwan opposition leader says improving China ties doesn’t mean being anti-US 10:20 Avian flu outbreaks surge globally as spring migration begins 10:15 Elon Musk announces ambitious AI chip manufacturing project 10:00 Danone moves into protein market with huel acquisition 09:55 Laila Benjelloun Touimi drives inclusive leadership and sustainability strategy 09:50 China urged to cut forex reserves and reduce US Treasury holdings 09:45 European stocks drop sharply at Monday opening amid oil and Middle East tensions 09:30 Indian sugar mills boost exports amid weak rupee and rising global prices 09:21 Global energy crisis surpasses 1970s shocks amid Iran standoff 09:20 Nvidia CEO criticizes AI layoffs as lack of vision

Russian Cyberspies Elevate Their Game: Sophisticated Phishing Targets US, European, and Russian Civil Society

Wednesday 14 August 2024 - 14:00
Russian Cyberspies Elevate Their Game: Sophisticated Phishing Targets US, European, and Russian Civil Society

A recent report has unveiled increasingly sophisticated phishing attacks originating from Russia's state security agency. These attacks, targeting members of US, European, and Russian civil society, have reached unprecedented levels of complexity, sometimes even impersonating individuals closely associated with the targets.

The groundbreaking investigation, conducted jointly by the Citizen Lab at the University of Toronto and Access Now, sheds light on the intricate methods employed by Russian state-sponsored hackers. This revelation comes as the FBI is separately probing suspected Iranian hacking attempts against a Donald Trump adviser and members of the Harris-Walz campaign team.

While state-sponsored hacking campaigns aimed at influencing political processes are not new—as evidenced by the Russian-linked cyber attacks on Hillary Clinton's campaign in 2016—researchers assert that the latest Russian efforts demonstrate a significant leap in both social engineering strategies and technical sophistication.

Among the high-profile targets of these recent attacks were Steven Pifer, former US ambassador to Ukraine, and Polina Machold, an exiled Russian publisher whose news organization, Proekt Media, had conducted notable investigations into Russian President Vladimir Putin and Chechen head Ramzan Kadyrov.

In Pifer's case, the attack was initiated through what researchers described as a "highly credible" exchange involving an impersonator posing as another former US ambassador known to Pifer. Machold's experience was equally cunning. The publisher, who relocated to Germany after being expelled from Russia in 2021, was contacted via email by a purported professional acquaintance. The exchange, which began innocuously, eventually led to a sophisticated phishing attempt using Proton Mail, a secure email service favored by journalists.

Machold recounted the incident: "I had not seen anything like this before. They knew I had contacts with this person. I didn't have a clue even though I consider myself to be on high alert," she stated, adding, "It's clear that anyone connected to the Russian opposition could be a target. They need as much information as they can get."

The researchers identified two primary threat actors behind these campaigns: Coldriver, attributed to Russia's Federal Security Service (FSB) by multiple governments, and Coldwastrel, which demonstrated similar targeting patterns and interests aligned with Russian objectives.

Natalia Krapiva, senior tech legal counsel at Access Now, emphasized the gravity of the situation: "This investigation shows that Russian independent media and human rights groups in exile face the same type of advanced phishing attacks that target current and former US officials. Yet they have many fewer resources to protect themselves, and the risks of compromise are much more severe."

The majority of the targets who cooperated with the researchers chose to remain anonymous for safety reasons. However, they were described as prominent Russian opposition figures in exile, non-governmental staff in the US and Europe, funders, and media organizations. A common thread among most targets was their "extensive networks among sensitive communities."

The modus operandi of these attacks typically involves the threat actor initiating an email exchange with the target while masquerading as a known contact. The attacker then requests the target to review a document, often a PDF purportedly encrypted using a privacy-focused service like Proton Drive. The login page may even be pre-populated with the target's email address to enhance credibility. If the target enters their password and a two-factor code, the attacker gains access to crucial information, potentially compromising the target's email account.

Rebekah Brown, a senior researcher at the Citizen Lab, warned of the immediate consequences of such breaches: "As soon as these attackers get credentials, we think they will work immediately to access email accounts and any online storage, like Google Drive, to pull as much sensitive information as they can. There are immediate risks to life and safety, especially if information concerning people still in Russia is in those accounts."

This report serves as a stark reminder of the ongoing cyber warfare being waged in the shadows of global politics. As state-sponsored hackers continue to refine their techniques, the need for robust cybersecurity measures and increased awareness among potential targets has never been more critical. The implications of these sophisticated attacks extend far beyond individual compromises, potentially influencing geopolitical dynamics and threatening the safety of vulnerable individuals and organizations worldwide.

As the cyber landscape continues to evolve, it is clear that the battle against state-sponsored hacking will require constant vigilance, innovative security measures, and international cooperation to safeguard the integrity of civil society and democratic institutions.


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

Read more

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.