APT29 Hacking Group Exploits Mongolian Websites
APT29 Hacking Group Exploits Mongolian Websites

APT29 Hacking Group Exploits Mongolian Websites

News summary

Iranian nation-state hacking group APT33 has launched attacks using new Tickler malware against U.S. and UAE oil, gas, and defense sectors, leveraging compromised Microsoft Azure subscriptions for password spraying and subsequent intrusions. Meanwhile, Russian hacking group APT29 has been observed utilizing exploits that closely resemble those created by commercial spyware vendors NSO Group and Intellexa, targeting Mongolian government websites through a series of watering hole attacks between November 2023 and July 2024. Google’s Threat Analysis Group noted that these attacks exploited vulnerabilities in iOS and Android devices, allowing attackers to steal user data even after patches were available. The exploits delivered through these campaigns include an iOS WebKit flaw, CVE-2023-41993, which specifically targeted unpatched devices. These developments highlight the ongoing collaboration and tool-sharing between state-sponsored hackers and commercial spyware entities, raising concerns over cybersecurity vulnerabilities.

Story Coverage
Bias Distribution
100% Left
Information Sources
51dae2ab-6a3f-4156-b4a8-805de03e2b50
Left 100%
Coverage Details
Total News Sources
1
Left
1
Center
0
Right
0
Unrated
0
Last Updated
83 days ago
Bias Distribution
100% Left
Related News
Ask VT AI
Story Coverage
Subscribe

Stay in the know

Get the latest news, exclusive insights, and curated content delivered straight to your inbox.

Related News
Recommended News