Russian state-backed hackers linked to APT28 are targeting Ukrainian agencies with malware via Signal messaging. The campaign involves new malware strains BeardShell and SlimAgent, exploiting Signalβs lack of antivirus integration for stealth operations. #APT28 #BeardShell #SlimAgent #Signal #UkraineCyberThreats
Keypoints
- Hackers associated with Russian military intelligence are targeting Ukrainian government agencies.
- The malware strains BeardShell and SlimAgent were recently identified in new campaigns.
- BeardShell functions as a backdoor executing PowerShell scripts, while SlimAgent captures encrypted screenshots.
- Signal messaging app is being exploited to deliver malware due to low detection risks.
- Social engineering tactics, such as posing as officials, are used to deceive victims into opening malicious files.
Read More: https://therecord.media/ukraine-new-russian-malware-social-engineering-signal-chats