PULSE NAME
Evolution of Russian APT29 – New Attacks and Techniques Uncovered
WHITE AlienVault 2023-07-26 Modified: 2024-03-06
25
IOCs
MEDIUM VOLUME
When it comes to exceptionally sophisticated malware attacks, APT29 stands at the forefront. The SolarWinds breach marked only the beginning of persistent malware attacks carried out by the threat actor. Since the attack on SolarWinds, the APT has relentlessly persisted in its attacks on governments, defense entities, critical manufacturing organizations, and IT service providers. Their latest attacks involve exploiting lesser-known Windows features and specifically targeting diplomats stationed in Ukraine.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (4 / 25 total)
All CVE FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain
TYPEINDICATORDESCRIPTIONCREATED
CVE CVE-2021-31207 2023-07-26
CVE CVE-2021-34473 2023-07-26
CVE CVE-2021-34523 2023-07-26
CVE CVE-2022-30170 2023-07-26