Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Massive Android fraud operations are detected: iconade, kaleidoscope, malicious SMS software, NFC scams

July 3, 2025

Chinese hackers operate Ivanti CSA Zero-Days in attacks on the French government, telecommunications

July 3, 2025

More than 40 malicious Firefox extensions target cryptocurrency wallets, steel assets

July 3, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » US, Microsoft seize 107 Russian domains in major cyberfraud crackdown
Global Security

US, Microsoft seize 107 Russian domains in major cyberfraud crackdown

AdminBy AdminOctober 4, 2024No Comments3 Mins Read
Major Cyber Fraud Crackdown
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


October 4, 2024Ravi LakshmananPhishing Attack / Cybercrime

Major fight against cyber fraud

Microsoft and the US Department of Justice (DoJ) announced Thursday the seizure of 107 Internet domains used by state-sponsored threat actors with ties to Russia to facilitate fraud and abuse in the country.

“The Russian government launched this scheme to steal sensitive information from Americans by using seemingly legitimate email accounts to trick victims into revealing credentials.” said Deputy Attorney General Lisa Monaco.

The activity was attributed to the actor’s threat under the title COLDRIVERwhich is also known as Blue Callisto, BlueCharlie (or TAG-53), Calisto (alternately spelled Callisto), Dancing Salome, Gossamer Bear, Iron Frontier, Star Blizzard (formerly SEABORGIUM), TA446 and UNC4057.

Cyber ​​security

Active since at least 2012, the group is considered an operational unit of Center 18 of Russia’s Federal Security Service (FSB).

In December 2023, the UK and US governments sanctioned two members of the group – Aleksandrovich Peratyatko and Andrey Stanislavovich Korynts – for malicious collection of credentials and phishing campaigns. Afterwards, in June 2024, the European Council imposed sanctions against the same persons.

The Justice Department said the 41 recently seized domains were used by threat actors to “commit violations involving unauthorized access to a computer to obtain information from a United States department or agency, unauthorized access to a computer to obtain information from a protected computer, and damage protected computer”.

The domains are believed to have been used as part of a phishing campaign targeting US government email accounts and other victims to collect credentials and valuable data.

In parallel with the announcement, Microsoft announced this filed a corresponding civil suit seize 66 additional internet domains used by COLDRIVER to target more than 30 civil society actors and organizations between January 2023 and August 2024.

This included NGOs and think tanks supporting civil servants, military and intelligence officials, particularly those providing support to Ukraine and NATO countries such as the UK and the US. previously documented Access Now and Citizen Lab in August 2024.

Cyber ​​security

“Star Blizzard’s operations are relentless, leveraging the trust, privacy and familiarity of everyday digital interactions,” said Steven Masada, Assistant General Counsel of Microsoft’s Digital Crimes Unit (DCU). said. “They have been particularly aggressive in their attacks on former intelligence officers, experts on Russian affairs, and Russian citizens living in the United States.”

The tech giant said it had identified 82 customers targeted by an adversary since January 2023, demonstrating the group’s stubbornness to evolve with new tactics and achieve its strategic goals.

“This frequency underscores the group’s diligence in identifying high-value targets, crafting personalized phishing emails and developing the necessary infrastructure to steal credentials,” Masada said. “Their victims, often unsuspecting of malicious intent, unknowingly interact with these messages, resulting in their credentials being compromised.”

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Massive Android fraud operations are detected: iconade, kaleidoscope, malicious SMS software, NFC scams

July 3, 2025

Chinese hackers operate Ivanti CSA Zero-Days in attacks on the French government, telecommunications

July 3, 2025

More than 40 malicious Firefox extensions target cryptocurrency wallets, steel assets

July 3, 2025

CISCO’s critical vulnerability in uniform grants on root access to static credentials

July 3, 2025

North Korean Hackers Target Web3 with malicious NIM software and use Clickfix in Babyshark

July 2, 2025

Hackers using PDFs to get yourself for Microsoft, Docusign and more in phishing campaigns return call

July 2, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Massive Android fraud operations are detected: iconade, kaleidoscope, malicious SMS software, NFC scams

July 3, 2025

Chinese hackers operate Ivanti CSA Zero-Days in attacks on the French government, telecommunications

July 3, 2025

More than 40 malicious Firefox extensions target cryptocurrency wallets, steel assets

July 3, 2025

CISCO’s critical vulnerability in uniform grants on root access to static credentials

July 3, 2025

North Korean Hackers Target Web3 with malicious NIM software and use Clickfix in Babyshark

July 2, 2025

Hackers using PDFs to get yourself for Microsoft, Docusign and more in phishing campaigns return call

July 2, 2025

This network traffic looks legal but it can hide a serious threat

July 2, 2025

US Sanctions of Russia

July 2, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Massive Android fraud operations are detected: iconade, kaleidoscope, malicious SMS software, NFC scams

July 3, 2025

Chinese hackers operate Ivanti CSA Zero-Days in attacks on the French government, telecommunications

July 3, 2025

More than 40 malicious Firefox extensions target cryptocurrency wallets, steel assets

July 3, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.