More

    Amazon says Russian hackers behind major cyber campaign to target Western energy sector



    • AWS says Russian GRU‑linked groups have spent years exploiting misconfigured edge devices to persist inside Western critical infrastructure
    • Activity overlaps with Curly COMrades, whose tooling abuses Hyper‑V and Linux VMs for stealthy persistence
    • Amazon urges urgent audits of edge gear, credential‑reuse checks, and monitoring for suspicious admin‑portal access

    For almost half a decade, Russian state-sponsored threat actors have been abusing misconfigurations in network gear, as well as different vulnerabilities, to establish persistence in key infrastructure organizations in the west, experts have warned.

    In a new threat report (va The Register), CJ Moses, Chief Information Security Officer (CISO) at Amazon Integrated Security, highlighted the scale of the campaign, which has been ongoing for several years.


    https://cdn.mos.cms.futurecdn.net/bLTg6GBXmrv6c5v7AJFPsT-1980-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img