CloudSorcerer Strikes: New APT Group Hijacks Public Cloud to Pilfer Russian Government Data

CloudSorcerer, a new APT group, is hijacking public cloud services to steal data from Russian government organizations. Discovered by Kaspersky in May 2024, this cyberespionage group uses custom malware with legitimate cloud services for command and control operations. It’s like CloudWizard, but with a unique…

Hot Take:

CloudSorcerer? More like Cloud-Who-Invited-You! This new APT group is so sneaky, they could probably steal your lunch and make you thank them for it. Someone call cybersecurity Ghostbusters because this cloud menace is out of control!

Key Points:

  • New APT group named CloudSorcerer targets Russian government organizations.
  • Discovered by Kaspersky in May 2024, using custom malware.
  • Malware uses public cloud services for command and control (C2) operations.
  • Similar tactics to CloudWizard APT but with distinct malware.
  • Indicators of compromise (IoC) and Yara rules available for detection.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here