Fancy Bear
Fancy Bear
= APT28 = ...
olemus
kinnisründeohuna tegutsev küberspionaaži grupp:
- 2000te keskelt alates
- mitme infoturvafirma väitel on seotud GRUga
ja Venemaa Föderatsiooni valitsusega
- sihtmärkideks on olnud
riigiasutused, riigikaitse, turvaorganisatsioonid, poliitkampaaniad
=
a Russian cyber espionage group
ülevaateid
https://www.pircenter.org/media/content/files/13/15761415664.pdf
https://www.crowdstrike.com/blog/who-is-fancy-bear/
https://en.wikipedia.org/wiki/Fancy_Bear
https://resources.infosecinstitute.com/topic/russian-apt-groups-continue-stealthy-operations/
muude nimede all:
APT-88
https://www.fireeye.com/blog/threat-research/2014/10/apt28-a-window-into-russias-cyber-espionage-operations.html
http://thehackernews.com/2014/10/APT28-Russian-hacker-cyber-espionage.html
Pawn Storm ("etturirünnak")
https://documents.trendmicro.com/assets/wp/wp-two-years-of-pawn-storm.pdf
Sofacy Group
https://securelist.com/blog/research/72924/sofacy-apt-hits-high-profile-targets-with-updated-toolset/
STRONTIUM
https://blogs.technet.microsoft.com/mmpc/2015/11/16/microsoft-security-intelligence-report-strontium/
Sednit
https://www.welivesecurity.com/wp-content/uploads/2016/10/eset-sednit-part1.pdf
http://www.welivesecurity.com/2014/10/08/sednit-espionage-group-now-using-custom-exploit-kit/