michael_darman retweetledi

MSFT just dropped a blog on the destructive malware used in Ukraine. No attribution to known operators it appears. Nice work! 13/x twitter.com/MsftSecIntel/s…
Microsoft Threat Intelligence@MsftSecIntel
Microsoft identified a unique destructive malware operated by an actor tracked as DEV-0586 targeting Ukrainian organizations. Observed activity, TTPs, and IOCs shared in this new MSTIC blog. We'll update the blog as our investigation unfolds. msft.it/6017ZQ8jH
English













