USD
41.26 UAH ▲0.1%
EUR
48.13 UAH ▲0.31%
GBP
55.77 UAH ▲0.54%
PLN
11.29 UAH ▲0.05%
CZK
1.96 UAH ▲0.17%
Representatives of 22 embassies could be the victim of a fake announcement from ...

Hackers from the Russian Federation attacked diplomats in Kiev using "euro": what came out of this

Representatives of 22 embassies could be the victim of a fake announcement from a real diplomat from Poland. The desire of the ordinary Polish diplomat serving in Kiev, to sell the old BMW has turned into a cybertetet, Reuters reports. The APT29 Hacker Group, which is associated with the United States and Great Britain with the main reconnaissance department of Russia, was able to intercept the announcement and introduce a harmful code into it to infect its colleagues in the diplomatic service.

The ATP29 group (also known as Cozy Bear) is known for their attacks on Western state institutions. These hackers are attributed to attacks against NATO member countries, the European Union and Africa. The Polish diplomat simply wanted to sell his used BMW, and to reduce the risks and avoid the flow of buyers - sent his announcement for the sale of colleagues to various embassies in Kiev. But the desire of a man to place advertising "among his" probably led to a hacker breaking of diplomas.

According to the media, the Hackers of the APT29 group intercepted a letter with the announcement, introduced a harmful code into it and then sent to the foreseeable recipients. The Embassy employee in Kiev, who did not suspect anything, was alert only after calling from colleagues who focused on the low cost of the car began to receive him. The hackers changed the price tag to the lower to attract the victims and make them open the "infected" photo album with the image of BMW.

Cyber ​​-diplomat from APT29 has introduced a harmful code, which is activated as soon as the victim has opened a photo album attached to the letter. Hackers can then get full control over the victim's computer. Cybercrime belongs to the APT29 was determined by the analysis of infected files in the photo album. Unit 42 experts who have cybersecurity have identified a hacking group by methods and tools used when contamination of files.

They explained that each group of hackers has a kind of unique "handwriting" that cannot be hidden, at least as they try. "Diplomatic missions have always been and will be an important purpose of espionage," - said in the UNIT 42 report. "Sixteen months after the Russian invasion of Ukraine, intelligence around Ukraine and diplomatic efforts of the Allies are almost certainly a high priority for Russian special services.

" Unfortunately, none of the 22 embassies, to which the Reuters commented, did not respond - whether the Russian hacker managed to access their diplomat computers, whether the cybersecurity system was able to cope with attacks. But the US State Department representative stated that they knew about this attack and, on the basis of an analysis of the Cybersecurity and Technological Security Department, they concluded that it did not affect the systems or accounts of the department.