Year2018 |
MonthOctober |
Reference number20181003 |
Impact areaShore |
Incident locationKiev |
Incident countryUkraine |
Victim countryUkraine |
Victim identityGovernment agencies in Ukraine and across Eastern Europe |
Victim TypeOther Government |
MethodMalware |
Attacker countryRussia |
In October 2018, government agencies in Ukraine and across Eastern Europe got hit by a malware attack orchestrated by the Carbanak Group (Russia) tied to the Russian FSB. The attackers were using a new phishing campaign, using deceptive emails to convince targets to click links and download malware. Attached to the emails were PDFs with links and other pieces of code that, when executed, would allow the attacker to steal or exfiltrate data and gain control over important computer functions. The attack was aimed at stealing information that would have been relevant to planning the operation. The information is related to Ukrainian foreign and naval affairs, information that would have been very useful if you wanted to engineer a maritime crisis.