SPECTR Malware Targets Ukraine Defense Forces in SickSync Campaign

June 7, 2024 at 03:54AM Ukraine’s CERT-UA warns of cyber attacks targeting defense forces with SPECTR malware, part of espionage campaign SickSync. Attacks attributed to UAC-0020 (Vermin), associated with Luhansk People’s Republic. SPECTR steals information by grabbing screenshots, harvesting files, and stealing credentials. Vermin group observed previously orchestrating phishing campaigns using SPECTR. CERT-UA also warned … Read more

Ukraine says hackers abuse SyncThing tool to steal data

June 7, 2024 at 03:36AM The Computer Emergency Response Team of Ukraine (CERT-UA) warns of the “SickSync” campaign by UAC-0020 (Vermin), a hacker group associated with the Russian-occupied Luhansk region. The attack uses SyncThing and SPECTR malware to steal military data. Vermin modified SyncThing and used SPECTR to exfiltrate data, posing a serious security threat. … Read more

Ukraine says hackers abuse SyncThing data sync tool to steal data

June 6, 2024 at 04:48PM The “SickSync” campaign, attributed to the UAC-0020 hacking group linked to the Luhansk People’s Republic, targets Ukrainian defense forces. The attack uses SyncThing and SPECTR malware to steal sensitive military data. SPECTR’s capabilities include taking screenshots, copying files, and stealing data from various applications and browsers. CERT-UA urges investigating any … Read more