Threat Intelligence Roundup: February
Thumbnail
This recap outlines notable cybersecurity incidents reported in recent articles, emphasizing the evolving landscape of cyber threats and significant actions taken against cybercriminals. Affected: Cybersecurity, Government Entities, Journalists, Organizations, Healthcare

Keypoints :

  • U.K., U.S., and Australia imposed sanctions on Russian cyber entity “Zservers” linked to ransomware attacks.
  • Dutch Police seized 127 servers associated with Zservers/XHost, a bulletproof hosting provider.
  • Russian hacker group Sandworm is deploying malicious Windows activators targeting users in Ukraine.
  • Meta confirmed spyware campaign affecting nearly 100 journalists and activists on WhatsApp.
  • Winnti APT41 launched “RevivalStone” campaign, targeting Japanese firms in manufacturing and energy sectors.
  • The E.U. sanctioned three GRU officers for cyberattacks against Estonia’s government.
  • Spain arrested a hacker known as “Natohub” for attacks against military and government entities.
  • North Korean group Kimusky utilized PowerShell tricks for device hijacking in a new cyberattack.
  • CISA and FBI reported Ghost ransomware breached organizations across 70 countries.

Full Story: https://www.darkowl.com/blog-content/threat-intelligence-roundup-february-3/