Ukrainian authorities say Russian hackers are moving away from general data theft campaigns and focusing on cyberespionage targeting military infrastructure.

Authorities (SSSCIP) say that cyberattacks against Ukraine's security and defense sectors doubled between the second half of 2023 (111) and the first half of 2024 (276).
In its report on Russian Cyber Operations (H1 2024), SSSCIP reports that five Russian-linked threat groups (UAC-0184, UAC-0020, UAC-0149, UAC-0200, and UAC-0180) were particularly active. They used various Trojans (RATs) and other malware to remotely maintain and control compromised Windows computers belonging to members of the Ukrainian Defense Forces.
See also: Russian GRU hackers attack critical infrastructure
Researchers have observed that Russian hackers have previously attempted to disrupt the IT infrastructure of organizations that are part of critical infrastructureto exploit databases containing personal information. Later, they attempted to collect information from all sectors. Now, however, Russian hackers are focusing on Ukrainian military information.
The SSSCIP report also showed that total recorded cyber reached 1739 in the first half of 2024 (a 19% increase compared to last year). It is worth noting that this increase is due to an increase in low and medium severity incidents. High and critical severity incidents decreased.
See also: Russian hackers use exploits created by NSO Group and Intellexa
Ukrainian authorities also observed increased malware, with 196 infections detected in the first half of 2024.

The report was based on data collected by CERT-UA, SOC-SSCIP, and other SSSCIP cyber divisions.
Russian hackers are considered a significant threat in cyberspace and have been targeting individuals, companies, and governments for many years. Known for their sophisticated techniques, these hackers often employ a range of attack strategies, including phishing, ransomware , and DDoS. Their activities may be motivated by a variety of factors, including financial gain, political interest, or simply a desire to cause damage to important systems.
See also: Russian hackers stole UK government data
Combating the threat posed by Russian hackers requires a concerted effort from both governments and private actors. This includes investing in strong cybersecurity, regularly updating software and systems, and educating employees about the risks of cyberattacks. Cooperation between nations is also vital to sharing information and resources to effectively prevent these threats.
Source: www.infosecurity-magazine.com
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
