CyberSecurity news

FlagThis

info@thehackernews.com (The@The Hacker News //
The APT group SideWinder is expanding its attacks, now targeting maritime, nuclear, and IT sectors across Asia, the Middle East, and Africa. Previously focused on government, military, and diplomatic institutions, the group has shifted its attention to maritime infrastructure, logistics companies, nuclear power plants, and energy facilities. The attacks, observed by Kaspersky, have spread across multiple countries including Bangladesh, Cambodia, Djibouti, Egypt, the United Arab Emirates, and Vietnam.

Kaspersky experts have noted an increase in attacks on nuclear power plants and energy generation facilities with the attackers utilizing spear-phishing emails and malicious documents containing industry-specific terminology to gain trust. The group exploits an older Microsoft Office vulnerability (CVE-2017-11882) to bypass detection systems and access operational data, research projects, and personnel data. According to Kaspersky researchers Giampaolo Dedola and Vasily Berdnikov, SideWinder constantly works to improve its toolsets, stay ahead of security software detections, extend persistence on compromised networks, and hide its presence on infected systems.
Original img attribution: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjt45i03trijq-ME83pTZUMFcrtrCMvottwBQkPumCoiyqNw2HX6I32ZLfbIyvE1m4eD7z2dkscqo3FV6v8mhAqe87A2wq4m8-vi5f8HWIEp3kQj6Lnpat6n6e3B_fahf0bDUzfsLHFqplZG3FN-hiL3DE2Mkz8eUpYNWFLBkSl_xATetF7ApwuPGU7t7zC/s728-rw-e365/c-server.png
ImgSrc: blogger.googleu

Share: bluesky twitterx--v2 facebook--v1 threads


References :
Classification: