* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, December 6, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

    Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

    Why Caesars Entertainment (CZR) Stock Is Down Today – Markets Financial Content

    Why Caesars Entertainment (CZR) Stock Took a Hit Today

    12TH ANNUAL WOMEN IN ENTERTAINMENT RETURNS TO DIGNITY HEALTH SPORTS PARK ON DECEMBER 11 – Dignity Health Sports Park

    12th Annual Women in Entertainment Event Makes a Grand Return to Dignity Health Sports Park on December 11

    Gwyneth Paltrow Gives Red Hot Stiletto Trend a Contrast Twist at Women in Entertainment Gala – WWD

    Gwyneth Paltrow Turns Up the Heat with Bold Stiletto Twist at Women in Entertainment Gala

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    ComNav unveils innovative products ‘From Earth to Ocean’ – GPS World

    ComNav Launches Revolutionary ‘From Earth to Ocean’ Product Line

    Gorilla Technology (NASDAQ: GRRR) gets 2025 Nobel Sustainability Trust nod for Leadership in Implementation – Stock Titan

    Gorilla Technology (NASDAQ: GRRR) gets 2025 Nobel Sustainability Trust nod for Leadership in Implementation – Stock Titan

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    Hospitals Under Pressure: How Technology Can Transform Operations – MedCity News

    Hospitals Under Pressure: How Technology Is Transforming Healthcare Operations

    Novidea Global Survey Reveals 73% of Insurance Executives Plan to Change Core Insurance Management Technology Over the Next Three Years – markets.businessinsider.com

    Nearly Three-Quarters of Insurance Executives Plan Major Overhaul of Core Management Technology Within Three Years

    Senator Schmitt Emphasizes Need to Strengthen, Update Cybersecurity Technology – Senator Schmitt (.gov)

    Senator Schmitt Urges Immediate Action to Strengthen Cybersecurity Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

    Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

    Why Caesars Entertainment (CZR) Stock Is Down Today – Markets Financial Content

    Why Caesars Entertainment (CZR) Stock Took a Hit Today

    12TH ANNUAL WOMEN IN ENTERTAINMENT RETURNS TO DIGNITY HEALTH SPORTS PARK ON DECEMBER 11 – Dignity Health Sports Park

    12th Annual Women in Entertainment Event Makes a Grand Return to Dignity Health Sports Park on December 11

    Gwyneth Paltrow Gives Red Hot Stiletto Trend a Contrast Twist at Women in Entertainment Gala – WWD

    Gwyneth Paltrow Turns Up the Heat with Bold Stiletto Twist at Women in Entertainment Gala

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    ComNav unveils innovative products ‘From Earth to Ocean’ – GPS World

    ComNav Launches Revolutionary ‘From Earth to Ocean’ Product Line

    Gorilla Technology (NASDAQ: GRRR) gets 2025 Nobel Sustainability Trust nod for Leadership in Implementation – Stock Titan

    Gorilla Technology (NASDAQ: GRRR) gets 2025 Nobel Sustainability Trust nod for Leadership in Implementation – Stock Titan

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    Hospitals Under Pressure: How Technology Can Transform Operations – MedCity News

    Hospitals Under Pressure: How Technology Is Transforming Healthcare Operations

    Novidea Global Survey Reveals 73% of Insurance Executives Plan to Change Core Insurance Management Technology Over the Next Three Years – markets.businessinsider.com

    Nearly Three-Quarters of Insurance Executives Plan Major Overhaul of Core Management Technology Within Three Years

    Senator Schmitt Emphasizes Need to Strengthen, Update Cybersecurity Technology – Senator Schmitt (.gov)

    Senator Schmitt Urges Immediate Action to Strengthen Cybersecurity Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Russia’s Cozy Bear caught phishing German politicos with phony dinner invites

March 23, 2024
in Technology
Russia’s Cozy Bear caught phishing German politicos with phony dinner invites
Share on FacebookShare on Twitter

The Kremlin’s cyberspies targeted German political parties in a phishing campaign that used emails disguised as dinner party invitations, according to Mandiant.

Russia’s Cozy Bear, also known as APT29 and Midnight Blizzard, engineered the messages to infect marks’ Windows PCs with a backdoor first observed in January and dubbed WINELOADER. These were intended to provide long-term access to the political parties’ networks and data, the Google-backed security biz asserted on Friday.

This is the first time that the cyberespionage group, which has been linked to the Russian Foreign Intelligence Service (SVR), has targeted political parties, according to the report.

“Western political parties and their associated bodies from across the political spectrum are likely also possible targets for future SVR-linked cyber espionage activity given Moscow’s vital interest in understanding changing Western political dynamics related to Ukraine and other flashpoint foreign policy issues,” Mandiant’s Luke Jenkins and Dan Black wrote in an alert.

This is the same crew that infamously backdoored SolarWinds’ network monitoring software and then used that access to spy on customers such as the US Treasury, Justice, and Energy departments, and the Pentagon.

Cozy Bear’s latest phishing emails, sent out last month, were designed to give to the impression they were sent by Germany’s Christian Democratic Union (CDU), and included the major political party’s logo, inviting recipients to a March 1 dinner reception.

Victims, looking forward to confirming they were up for cocktails and canapes, were directed to click on a link to a hijacked, Cozy Bear-controlled website – waterforvoiceless[.]org/invite.php – which would download a .zip file. Marks who opened the archive and then its contents would end up executing a program called ROOTSAW, which would infect the PC with the WINELOADER backdoor, fetched from waterforvoiceless[.]org/util.php.

WINELOADER is quite a clever piece of code that uses various obfuscation techniques to hide the fact that it allows the machine to be secretly remotely controlled by its masterminds, allowing those miscreants to potentially do all sorts of things on infected PCs, such as running commands and snooping on user applications.

Russia’s Cozy Bear dives into cloud environments with a new bag of tricks

Microsoft confirms Russian spies stole source code, accessed internal systems

US nuke agency hacked by suspected Russian SolarWinds spies, Microsoft also installed backdoor

Truck-to-truck worm could infect – and disrupt – entire US commercial fleet

The backdoor program was spotted by Zscaler’s ThreatLabz on January 30, and it was used in phishing campaigns targeting diplomatic entities in Europe, India, and Peru. 

Ambassador, with this malware you are spoiling us!

The Zscaler team said WINELOADER was delivered onto targets’ personal computers from a bogus invite to a wine-tasting event purportedly from an ambassador of India also in February 2024.

According to Mandiant, this backdoor overlaps with several other strains of malicious software used by Cozy Bear but is “considerably more customized than the previous variants, as it no longer uses publicly available loaders like DONUT or DAVESHELL and implements a unique C2 mechanism,” we’re told.

In a statement to the media, the CDU said it “received very prompt information about the attack … There was no official CDU dinner on 1 March, the event was fictitious.” We’ve asked for further details.

In addition to expanding its targets and techniques, Cozy Bear has also been lurking around Microsoft’s networks — an old favorite of the Russian crew — stealing source code, gaining access to internal systems, and snooping around in executives’ email inboxes. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/03/23/russia_cozy_bear_german_politicians_phishing/

Tags: CaughtRussia'stechnology
Previous Post

Apple iPhone AI to be powered by Baidu in China, maybe

Next Post

Flox rocks the Nix box by conquering code chaos

What If the Economy Was Modeled After Ecology? – atmos.earth

What If Our Economy Thrived Like a Flourishing Ecosystem?

December 6, 2025
Mass. museum evacuated after reported bomb threat – WCVB

Massachusetts Museum Evacuated Amid Bomb Threat Scare

December 6, 2025
Sardine-inspired washing machine filter removes 99% of microplastics – Popular Science

Revolutionary Sardine-Inspired Washing Machine Filter Removes 99% of Microplastics

December 6, 2025
Comedian Jody White to perform at Indianapolis’ Mad Hatter Shows and Events Center – WISH-TV

Comedian Jody White to perform at Indianapolis’ Mad Hatter Shows and Events Center – WISH-TV

December 6, 2025
ComNav unveils innovative products ‘From Earth to Ocean’ – GPS World

ComNav Launches Revolutionary ‘From Earth to Ocean’ Product Line

December 6, 2025
Tanner Pearson with a Goal vs. Buffalo Sabres – Yahoo Sports

Tanner Pearson Ignites the Ice with a Spectacular Goal Against the Buffalo Sabres

December 6, 2025
World Cup Draw: Seattle will host USA-Australia on June 19 – Sounder at Heart

Seattle Gears Up for an Epic USA vs. Australia Showdown on June 19

December 5, 2025
Copper and Oil: Two Ways to Win if the Economy Runs Hot – Barron’s

Copper and Oil: Two Ways to Win if the Economy Runs Hot – Barron’s

December 5, 2025
Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

Discussing Netflix’s deal to buy Warner Bros. – Spectrum News

December 5, 2025
UCHealth’s $150 million behavioral health investment transforms care for more than 188,000 patients – UCHealth

UCHealth’s $150 million behavioral health investment transforms care for more than 188,000 patients – UCHealth

December 5, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (955)
  • Economy (974)
  • Entertainment (21,849)
  • General (18,580)
  • Health (10,013)
  • Lifestyle (985)
  • News (22,149)
  • People (979)
  • Politics (986)
  • Science (16,188)
  • Sports (21,474)
  • Technology (15,955)
  • World (961)

Recent News

What If the Economy Was Modeled After Ecology? – atmos.earth

What If Our Economy Thrived Like a Flourishing Ecosystem?

December 6, 2025
Mass. museum evacuated after reported bomb threat – WCVB

Massachusetts Museum Evacuated Amid Bomb Threat Scare

December 6, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version