Event 1c8c4d47-8584-4ba0-9753-60c49f190279

Approved event from Hybrid War Tracker

Status: Approved Confidence: Low Category: Cyber Country: Poland Country: Russia Country: Unknown Attack Type: Cyberattack
🕐
Event Time
1y ago
Created
1mo ago
✏️
Updated
1mo ago

Summary

Headline: Russian hackers target Polish government bodies

Short Summary: Russian state-backed hackers targeted Polish government institutions with a sophisticated spear-phishing and malware campaign, according to official sources.

Description

Polish government bodies were targeted this week by a Russian cyber-espionage group APT28, which launched a malware campaign exploiting Polish government institutions. The attack involved spear-phishing emails referencing an alleged 'mysterious Ukrainian woman in Warsaw,' which, when clicked, downloaded malware.

Evidence

Quotes

Polish government bodies have been targeted this week by Fancy Bear (also known as APT28), a Russian cyber espionage group working on behalf of the Kremlin, according to NASK, a Polish state research institute.
NASK’s computer emergency response team said the cyberattack targeting Polish government response team 'observed a large-scale malware campaign exploiting Polish government institutions this week,' announced NASK on Wednesday.
The attack involved the similarity to previous actions by Russian criminal entities, the emails claimed to be about an alleged 'mysterious Ukrainian woman in Warsaw' who has connections to the highest-ranking authorities in Poland and Ukraine.
It then encouraged the reader to click a link to receive more information about her but which in fact downloaded malware onto their device.
Earlier this week, Poland’s digital affairs minister, Krzysztof Gawkowski, declared that 'Poland is in a cyber cold war with Russia' and 'has been subject to very similar attacks in these heavily Ukraine-focused circumstances.'

Related URLs

Subscribe via Weekly Briefs RSS or Approved Events RSS.