Breaking 07:02 Brookfield set to acquire World Freight Company in $1.2 billion logistics deal 07:02 Volkswagen deepens Rivian alliance as software venture gains momentum 16:19 Morocco takes a formal step toward joining TV5MONDE governance as first African state 15:55 European Central Bank official warns of early stagflation signals in eurozone 15:37 Mazda delays in-house EV launch to 2029 and cuts investment 15:25 Hansi Flick says Yamal decision over palestine flag gesture 15:21 British startup Humanoid to deploy 2,000 robots in factories 14:58 Trump arrives in Beijing for high stakes talks with Xi 14:34 Dollar climbs past 157 yen after inflation shocks markets 14:05 Pressure shapes resilience and determines psychological outcomes 13:52 Former BOJ chief warns Iran war could force faster rate hikes 13:40 SpaceX targets May 19 launch for Starship Version 3 debut 13:16 US and China oppose Iranian transit fees in Strait of Hormuz 13:03 Iran conflict accelerates residential solar boom across Asia 12:45 Tata Motors warns of near-term cost pressures despite surge in quarterly profit 12:30 India approves $4 billion plan to boost gas production from coal 12:15 Alibaba revenue rises on strong cloud computing and e-commerce growth 12:00 Japan PM Takaichi to visit the UK and Italy ahead of G7 summit 11:45 Volvo Cars open to US partnerships as it expands American production 11:30 Fuel allowance simulator launched to help commuters check eligibility 11:29 Copper surges past 14,000 dollars as global smelting output declines 11:15 Rights groups call on Poland to suspend cooperation on U.S. deportation flights to Ukraine 11:00 Alibaba misses revenue forecasts as AI spending weighs profits 11:00 Oum to headline Europe Day 2026 concert celebrating Morocco–Europe cultural ties 10:59 France minimum wage (SMIC) to rise by 2.4% on June 1 10:48 German cabinet agrees to replace green heating law amid policy shift 10:45 Beijing welcomes Donald Trump’s upcoming visit and calls for stronger cooperation 10:44 Pandemic experts demand full review of hantavirus outbreak response 10:32 First brain histamine map links molecule to major psychiatric disorders 10:30 Dangote Cement explores potential London Stock Exchange listing 10:28 Exclusive: Pemex CEO and ally of Sheinbaum faces uncertain future amid mounting challenges 10:15 BYD in talks to expand in Europe through potential factory acquisitions 10:12 US SEC and Elon Musk to argue Twitter settlement before Washington judge 10:06 Iran conflict shifts summer travel toward trains and nearby destinations 10:00 Nissan reports narrow annual profit driven by regulatory gains and cost improvements 09:59 Hantavirus case contact hospitalized in Marseille as vigilance grows 09:45 Turkey and Armenia move toward direct commercial relations amid normalization efforts 09:40 Morocco housing aid surpasses 101000 beneficiaries milestone 09:30 Japanese investors turn to selling foreign stocks amid rising energy costs 09:15 Morocco and EU discuss visa rules for truck drivers 09:15 Taiwan ruling party nominates sanctioned lawmaker for Taipei mayoral race 09:02 Panasonic shifts toward AI infrastructure with major new investment plan 09:00 Spain advances AI and social media regulation despite pressure from Big Tech 08:56 Morocco launches digital Hajj platform for 34,000 pilgrims 08:45 Morocco becomes the first African country to join TV5MONDE governance 08:39 Sami Yusuf to perform two spiritual concerts at Fès festival 08:30 Adecco says temporary jobs continue to grow faster than permanent hiring 08:15 Anduril doubles valuation after raising $5 billion in new funding round 08:12 Moroccan banks expand across Africa to strengthen regional financial links 08:00 SK Innovation reports strong quarterly profit but warns of slow refining recovery 07:54 Morocco forecasts growth above 5.3% despite global energy pressures 07:45 Intertek moves closer to major takeover deal with EQT 07:39 Altman tells court Musk sought control of OpenAI before departure 07:30 Moderate earthquake shakes Tehran without immediate reports of damage 07:18 Kuwait accuses Iran of failed commando raid near Chinese funded port 07:15 Portugal’s forests face growing wildfire threat after winter storms

Russian Cyberspies Elevate Their Game: Sophisticated Phishing Targets US, European, and Russian Civil Society

Wednesday 14 August 2024 - 14:00
Russian Cyberspies Elevate Their Game: Sophisticated Phishing Targets US, European, and Russian Civil Society

A recent report has unveiled increasingly sophisticated phishing attacks originating from Russia's state security agency. These attacks, targeting members of US, European, and Russian civil society, have reached unprecedented levels of complexity, sometimes even impersonating individuals closely associated with the targets.

The groundbreaking investigation, conducted jointly by the Citizen Lab at the University of Toronto and Access Now, sheds light on the intricate methods employed by Russian state-sponsored hackers. This revelation comes as the FBI is separately probing suspected Iranian hacking attempts against a Donald Trump adviser and members of the Harris-Walz campaign team.

While state-sponsored hacking campaigns aimed at influencing political processes are not new—as evidenced by the Russian-linked cyber attacks on Hillary Clinton's campaign in 2016—researchers assert that the latest Russian efforts demonstrate a significant leap in both social engineering strategies and technical sophistication.

Among the high-profile targets of these recent attacks were Steven Pifer, former US ambassador to Ukraine, and Polina Machold, an exiled Russian publisher whose news organization, Proekt Media, had conducted notable investigations into Russian President Vladimir Putin and Chechen head Ramzan Kadyrov.

In Pifer's case, the attack was initiated through what researchers described as a "highly credible" exchange involving an impersonator posing as another former US ambassador known to Pifer. Machold's experience was equally cunning. The publisher, who relocated to Germany after being expelled from Russia in 2021, was contacted via email by a purported professional acquaintance. The exchange, which began innocuously, eventually led to a sophisticated phishing attempt using Proton Mail, a secure email service favored by journalists.

Machold recounted the incident: "I had not seen anything like this before. They knew I had contacts with this person. I didn't have a clue even though I consider myself to be on high alert," she stated, adding, "It's clear that anyone connected to the Russian opposition could be a target. They need as much information as they can get."

The researchers identified two primary threat actors behind these campaigns: Coldriver, attributed to Russia's Federal Security Service (FSB) by multiple governments, and Coldwastrel, which demonstrated similar targeting patterns and interests aligned with Russian objectives.

Natalia Krapiva, senior tech legal counsel at Access Now, emphasized the gravity of the situation: "This investigation shows that Russian independent media and human rights groups in exile face the same type of advanced phishing attacks that target current and former US officials. Yet they have many fewer resources to protect themselves, and the risks of compromise are much more severe."

The majority of the targets who cooperated with the researchers chose to remain anonymous for safety reasons. However, they were described as prominent Russian opposition figures in exile, non-governmental staff in the US and Europe, funders, and media organizations. A common thread among most targets was their "extensive networks among sensitive communities."

The modus operandi of these attacks typically involves the threat actor initiating an email exchange with the target while masquerading as a known contact. The attacker then requests the target to review a document, often a PDF purportedly encrypted using a privacy-focused service like Proton Drive. The login page may even be pre-populated with the target's email address to enhance credibility. If the target enters their password and a two-factor code, the attacker gains access to crucial information, potentially compromising the target's email account.

Rebekah Brown, a senior researcher at the Citizen Lab, warned of the immediate consequences of such breaches: "As soon as these attackers get credentials, we think they will work immediately to access email accounts and any online storage, like Google Drive, to pull as much sensitive information as they can. There are immediate risks to life and safety, especially if information concerning people still in Russia is in those accounts."

This report serves as a stark reminder of the ongoing cyber warfare being waged in the shadows of global politics. As state-sponsored hackers continue to refine their techniques, the need for robust cybersecurity measures and increased awareness among potential targets has never been more critical. The implications of these sophisticated attacks extend far beyond individual compromises, potentially influencing geopolitical dynamics and threatening the safety of vulnerable individuals and organizations worldwide.

As the cyber landscape continues to evolve, it is clear that the battle against state-sponsored hacking will require constant vigilance, innovative security measures, and international cooperation to safeguard the integrity of civil society and democratic institutions.


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

Read more

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.