Digital Security Lab Ukraine

188 posts

Digital Security Lab Ukraine

Digital Security Lab Ukraine

@DSLab_Ukraine

we help Ukrainian nonprofits with digital safety issues

Se unió Haziran 2018
68 Siguiendo327 Seguidores
Tweet fijado
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
🚨 @SentinelLabs, together with the Digital Security Lab of Ukraine, has uncovered a coordinated spearphishing campaign targeting members of the Red Cross, Norwegian Refugee Council, UNICEF, and other NGOs supporting Ukraine, as well as regional government officials.
Digital Security Lab Ukraine tweet media
English
1
6
13
1.8K
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
IOCs: 🔺Domains: ln[.]run badge-verified0903261[.]vercel[.]app 🔺URLs: hxxps://ln[.]run/badge-verified0903261 hxxps://badge-verified0903261[.]vercel[.]app/index1[.]html Detailed analysis and more IOCs: dslua.org/publications/m…
English
0
0
4
26
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
Large-scale phishing attacks keep evolving, abusing trusted platforms like Google, Cloudflare, Vercel, and Telegram. Pre-built kits enable massive scaling. A new “Meta Verified” tactic steals credentials and bypasses 2FA in real time via Telegram exfiltration.
Digital Security Lab Ukraine tweet mediaDigital Security Lab Ukraine tweet mediaDigital Security Lab Ukraine tweet media
English
1
2
5
121
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
SHA-256: 4362f67ab65cca32fb610e62745aac7d8587a7bac46e5a6c89db8b4a9c7e9458 f78944a2699b21fb34fc9c1c7c0ae7ca16c709bf72cbc15ad0cdaa66bec8d1bd ad8a491018f5c5edecfc75ec3a3627aa04a26019ce87c8f236bb400ec35c3244 a0e709c0df0e38b30a2283dc5c1667c852d212952cc4db18c364d35a70ca0c96
Français
0
0
4
86
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
IOCs: 46.4.92[.]6 64.20.61[.]146 pixeldrain[.]com id[.]remoteutilities[.]com Payload: Remote Utilities rutserv.exe, rfusclient.exe
Français
1
0
4
200
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
Today we observed an active phishing campaign linked to Russia-aligned threat actors. Emails impersonated Ukrainian government institutions and delivered malicious attachments. The campaign is aimed at infecting Windows endpoints and establishing persistent remote access.
Digital Security Lab Ukraine tweet mediaDigital Security Lab Ukraine tweet mediaDigital Security Lab Ukraine tweet mediaDigital Security Lab Ukraine tweet media
English
1
3
10
2.9K
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
Find more domains on @ValidinLLC : CERT_FINGERPRINT-HOST: 1fa3e6f0a65b7429219022eee3a7976f6761aba0 HOST-JARM: 27d27d27d00027d00042d43d00041df04c41293ba84f6efe3a613b22f983e6
Français
0
0
3
43
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
DSLU is tracking a phishing campaign targeting Facebook accounts. Attackers are abusing Meta Business Suite invites and using two attack vectors: a link to a phishing website and a link prompting users to join a fake Facebook page.
Digital Security Lab Ukraine tweet media
English
1
0
3
161
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
👉 IOCs: ukr-one[.]ors-oc[.]info ukr-one[.]connect-all[.]org ukr-one[.]2dotz[.]org ukr-one[.]naturalbd[.]org ukr-one[.]seateur[.]info ukr-one[.]mirrisunkov[.]cyou
English
1
0
1
42
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
⚠️ Attackers are using hacked Telegram accounts to spread fake invitations to “vote for kids in a drawing contest.” The links lead to phishing sites stealing account credentials.
Digital Security Lab Ukraine tweet media
English
1
0
3
273
Digital Security Lab Ukraine retuiteado
SentinelOne
SentinelOne@SentinelOne·
🚨 Six months of prep. One day targeting Ukraine’s humanitarian networks including individuals from the @ICRC, @UNICEF, and @NRC_Norway. New from @LabsSentinel and the @DSLab_Ukraine: A one-day spearphishing operation — PhantomCaptcha — that targeted humanitarian organizations in Ukraine using a fake Cloudflare captcha page to deliver a WebSocket RAT. s1.ai/pcapt
SentinelOne tweet media
English
1
11
16
4.9K
Digital Security Lab Ukraine retuiteado
Virus Bulletin
Virus Bulletin@virusbtn·
SentinelLABS, together with Digital Security Lab of Ukraine, has uncovered a coordinated spear-phishing campaign targeting organizations critical to Ukraine’s war relief efforts. sentinelone.com/labs/phantomca…
Virus Bulletin tweet media
English
0
7
18
2K
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
4/ The PhantomCaptcha campaign highlights a highly capable adversary collecting intelligence on humanitarian and reconstruction operations in Ukraine. ➡️ Full details in report: bit.ly/4hluj0m
English
0
1
4
142
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
3/ Despite six months of preparation, the attackers’ infrastructure was active for only one day – reflecting meticulous planning, compartmentalized setup, and strong operational security.
English
1
1
5
134
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
🚨 @SentinelLabs, together with the Digital Security Lab of Ukraine, has uncovered a coordinated spearphishing campaign targeting members of the Red Cross, Norwegian Refugee Council, UNICEF, and other NGOs supporting Ukraine, as well as regional government officials.
Digital Security Lab Ukraine tweet media
English
1
6
13
1.8K
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
👉 Domain: campaign-insight-hub[.]pages[.]dev 👉 appeal_form: f2bc64faa5d81910ea3cdf6905e3efe728ae356ec23fb6de0b40daa592d4e99c 👉 URL pattern: https://*.pages.dev/welcome_to_meta_for_business https://*.pages.dev/appeal_form 👉 More IOCs: pastebin.com/c5pXYgtw
English
1
0
2
89
Digital Security Lab Ukraine
Digital Security Lab Ukraine@DSLab_Ukraine·
Phishing emails, where attackers pretend to be Meta, accuse you of violating community rules or intellectual property and threaten to block account. We identified a number of related domains and other IOCs:
Digital Security Lab Ukraine tweet media
English
1
2
4
288