Ukraine’s Cyber Showdown: SickSync Strikes Again with SPECTR Espionage Campaign

CERT-UA has alerted Ukrainian defense forces about cyber attacks using SPECTR malware in a campaign called SickSync. The threat actor, UAC-0020 or Vermin, is linked to the Luhansk People’s Republic. Attackers use spear-phishing emails to deploy the SPECTR payload, which steals data and credentials.

Hot Take:

***No one likes a nosy neighbor, especially when that neighbor is a malware lurking in your defense force’s inbox! The SPECTR malware is the digital equivalent of having a Peeping Tom who also steals your keys.***

Key Points:

– CERT-UA warns of cyber attacks targeting Ukrainian defense forces with SPECTR malware.
– Attackers, identified as UAC-0020 or Vermin, are linked to the Luhansk People’s Republic.
– Attack method involves spear-phishing emails with a trojanized SyncThing application.
– SPECTR malware steals information, screenshots, files, and credentials from various applications.
– CERT-UA also highlights ongoing cyber threats from other groups, including GhostWriter.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here