Microsoft says Russian hackers are planting fake antivirus software in embassy attacks




  • Microsoft uncovers cyber espionage attacks targeting diplomats
  • Embassies within Russia are being hit with malware
  • The threat actors are using adversary-in-the-middle attacks

Foreign embassies in Moscow are being targeted by Russian state hackers, who are using custom malware tracked as ApolloShadow, disguised as Kaspersky antivirus software, new reports have claimed.

The attacks have the end goal of installing a TLS root certificate which allows the threat actor to ‘cryptographically impersonate’ trusted websites visited by the infected system inside the embassy, Microsoft Threat Intelligence reports.

https://cdn.mos.cms.futurecdn.net/8UGPuf8G5qYJTmRHnqW9DH.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img