Russian's sophisticated phishing attacks- what you need to know

Russia’s New Wave of Phishing Attacks Targets Civil Society with Unseen Sophistication

Russia’s state-sponsored hackers are at it again, but this time, they’ve taken phishing to a whole new level. According to a fresh report by the Citizen Lab and Access Now, recent attacks have shown an alarming increase in both the complexity of social engineering tactics and the technical execution.

What’s happening?
* Russian state actors, known as Coldriver and Coldwastrel, are using advanced phishing techniques to target US, European, and Russian civil society members.
* They’re impersonating people close to their targets, making their attacks incredibly convincing.

Who’s been targeted?
* Former US Ambassador to Ukraine Steven Pifer was hit by a highly credible phishing attempt.
* Exiled Russian publisher Polina Machold fell victim to a similar attack, which alarmingly exploited her professional connections.

Why it matters?
* These attacks highlight the increasing risks facing anyone connected to the Russian opposition or sensitive communities. The sophistication of these campaigns makes them harder to detect and defend against.
* The goal? To extract as much sensitive information as possible, which could have dire consequences for the safety of those involved.
For anyone working in sensitive fields or connected to high-risk communities, now’s the time to double down on cybersecurity measures. These threats are not just technical but personal.
Thoughts? Have you seen similar tactics in your field?

 

Read the full report.