14/10/2018

Sec-Tech News: The "Gallmaker" and "APT28" groups

A previously unknown cyber espionage group, tracked as "Gallmaker", has been targeting entities in the government, military and defense sectors since at least 2017.

"the group has launched attacks on several overseas embassies of an unnamed Eastern European country, and military and defense organizations in the Middle East. Gallmaker is a politically motivated APT group that focused its surgical operations on the government, military or defense sectors. it is interesting to note that the APT is relying entirely on code scraped from the public internet."

APT28 group returns to covert intelligence gathering operations in Europe and South America.

"the group is now actively conducting cyber espionage campaigns against government and military organizations in Europe and South America. “The organizations targeted by APT28 during 2017 and 2018 include:
  • A well-known international organization
  • Military targets in Europe
  • Governments in Europe
  • A government of a South American country
  • An embassy belonging to an Eastern European country”

No comments :

Post a Comment