US charges Russian GRU hackers behind WhisperGate intrusions

US charges Russian GRU hackers behind WhisperGate intrusions

September 5, 2024 at 03:49PM

The US charged five Russian military intelligence officers and one civilian for involvement in the WhisperGate cyberattack against Ukraine, offering a $10 million bounty for their whereabouts. The cyberattack, conducted by Russian GRU officers, targeted Ukrainian government computers and non-military agencies. The US and international partners issued a joint cybersecurity advisory regarding the cyber intrusion efforts.

From the meeting notes, I have compiled the following key takeaways:

– The US has charged five Russian military intelligence officers and one civilian for their involvement in the data-wiping WhisperGate campaign conducted against Ukraine in January 2022.
– The feds have offered a $10 million bounty for information on each of the six men’s whereabouts and released a 36-page cybersecurity advisory about the Russians’ network intrusion efforts.
– The indicted individuals are not on American soil, and steps are being taken to bring the indictment to fruition with the partnership of Interpol.
– The cyberattack, known as WhisperGate, targeted Ukrainian government computers before the Russian ground invasion and sought to appear as a ransomware infection.
– The Kremlin-backed group stole and leaked personal data of thousands of Ukrainian citizens to sap the morale of the Ukrainian public.
– The GRU also targeted computer systems in the US and 25 other NATO countries providing support to Ukraine.
– The GRU’s Unit 29155 has been involved in cyber espionage and is responsible for domain scanning and exploitation of vulnerabilities using publicly available tools, as well as targeting IoT devices.
– Recommendations have been provided to avoid becoming a victim organization, including prioritizing routine system updates, segmenting networks, and enabling phishing-resistant multifactor authentication.
– These actions follow the US’s efforts to counter Russia’s attempts to influence the upcoming presidential election, including seizing websites and charging employees of a state-owned media outlet connected to a pro-Kremlin propaganda scheme.

Please let me know if you need further details or if there are additional points you would like me to address.

Full Article