Hackers target Ukrainian agency managing assets seized from sanctioned Russians

Hackers target Ukrainian agency managing assets seized from sanctioned Russians

Hackers launched a phishing attack against IDS Ukraine, a Ukrainian company managing assets seized from sanctioned Russian individuals.

Bottom line: Security teams must monitor phishing attempts closely, especially for employees using compromised credentials.

What's happening: Hackers launched a phishing attack against IDS Ukraine, a Ukrainian company managing assets seized from sanctioned Russian individuals, using phishing emails sent to over 100 employees, targeting their Microsoft Office 365 credentials. The attack came amid preparations to select a manager for seized corporate rights in IDS Ukraine, one of the country's largest producers of bottled mineral water and beverages. The attackers attempted to steal sensitive information, including financial data and intellectual property.

What to do: Security teams should update their phishing detection tools, such as Microsoft Defender Advanced Threat Protection (ATP), to detect and block similar attacks, and conduct regular security awareness training for employees to prevent similar breaches.

Source: The Record