Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Turning Cybersecurity Practice into Mrr Machine

June 16, 2025

Malicious Pypi Masquerade Package as chimera module for theft Aws, CI/CD and MacOS

June 16, 2025

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Sidewinder Apt aims at sea, nuclear and IT sectors across Asia, Middle East and Africa
Global Security

Sidewinder Apt aims at sea, nuclear and IT sectors across Asia, Middle East and Africa

AdminBy AdminMarch 11, 2025No Comments2 Mins Read
SideWinder APT
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


March 11, 2025Red LakshmananCyber ​​-Spying / Marine Security

Sidewinder Apt

Marine and logistics companies in South and Southeast Asia, the Middle East and Africa became the object of an advanced threat (APT), called Sidewinder.

The attacks observed by the Caspersorski in 2024 spread to Bangladesh, Cambodia, Djibouti, Egypt, the United Arab Emirates and Vietnam. Other tasks of interest include nuclear power plants and infrastructure in South Asia and Africa, as well as telecommunications, consulting, IT companies, real estate and hotel agencies.

Cybersecurity

In the form of wider expansion of its mark, Sidewinder also directed diplomatic structures in Afghanistan, Algeria, Bulgaria, China, India, Maldives, Rwan, Saudi Arabia, Turkey and Uganda. Signing India is important as the actor threats previously suspected be an Indian origin.

“It is worth noting that Sidewinder is constantly working on improving their tools, stay ahead of security software, expanding disturbed networks and hide their presence on infected systems,” Jiampoio Dedol and Vasily Berdnikov – NoteDescribing this as “a very advanced and dangerous enemy.”

Sidewinder Apt

Previously Sidewinder was the subject a wide analysis A Russian cybersecurity company in October 2024, which documented the use of an actor modular tool after a operation called Steelerbot to capture a wide range of sensitive information from the violated hosts. Targeting the hacking group of the maritime sector was also isolated to BlackBerry in July 2024.

The last chains of the attacks coincide with what has been reported earlier, with emails that act as a pipeCve-2017-1188) To activate the multi -stage sequence in which .Net Downloader called Moduleinstaller is used to eventually run Stealerbot.

Cybersecurity

Kaspersky said some bait documents are related to nuclear power plants and agencies, while others included content referring to maritime infrastructure and various port bodies.

“They constantly monitor the detection of their security decisions,” Kaspersky said. “Once their tools are identified, they respond, creating a new and modified version of malware, often less than five hours.”

“When behaviors occur, Sidewinder tries to change the methods used to maintain the components of persistence and download. In addition, they change the names and ways of their malicious files.”

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Turning Cybersecurity Practice into Mrr Machine

June 16, 2025

Malicious Pypi Masquerade Package as chimera module for theft Aws, CI/CD and MacOS

June 16, 2025

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Turning Cybersecurity Practice into Mrr Machine

June 16, 2025

Malicious Pypi Masquerade Package as chimera module for theft Aws, CI/CD and MacOS

June 16, 2025

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025

Apple Zero Click’s downside in reports to spy on journalists using spyware Paragon software

June 13, 2025

Both Vextrio and affiliates control the global network

June 12, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Turning Cybersecurity Practice into Mrr Machine

June 16, 2025

Malicious Pypi Masquerade Package as chimera module for theft Aws, CI/CD and MacOS

June 16, 2025

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.