Cybersecurity firm Symantec has discovered an attack targeting a military mission in Ukraine, which it suggests came from a Russian hacking group known as Shuckworm or Gamaredon. The malware, “GammaSteel”, was delivered to targeted PCs through an “infected removable drive”, and could identify and steal files, sending them to a hacker-controlled server. The Ukrainian government alleges the hacking group works for Russia’s Federal Security Service.

Leaked KeyPlug Malware Infrastructure Contains Exploit Scripts to Hack Fortinet Firewall and VPN
A server linked to the KeyPlug malware exposed various exploitation tools targeting Fortinet firewalls and VPNs, attributed to the RedGolf threat group. The server revealed