cognitive cybersecurity intelligence

News and Analysis

Search

Trojanized Microsoft activators leveraged in new Sandworm attacks

Russian state-sponsored group Sandworm has been launching malware attacks on Ukrainian Windows users, involving bogus updates and Microsoft Key Management Service activators. As part of the campaign, a fake KMS activation tool with BACKORDER malware loader facilitated DarkCrystal RAT delivery. The malware steals saved credentials, browser histories, keystrokes, and system details. These attacks are a threat to Ukraine’s national security, critical infrastructure, and private sector, warns EclecticIQ.

Source: www.scworld.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts