⤷ Title: Google Uncovers LOSTKEYS Malware Used by Russian COLDRIVER for Cyber Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 08 May 2025 00:45:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #ClickFix #COLDRIVER #cyber_espionage #google #LOSTKEYS #malware #russia #Star Blizzard #UNC4057
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 08 May 2025 00:45:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #ClickFix #COLDRIVER #cyber_espionage #google #LOSTKEYS #malware #russia #Star Blizzard #UNC4057
Daily CyberSecurity
Google Uncovers LOSTKEYS Malware Used by Russian COLDRIVER for Cyber Espionage
Google's GTIG reveals LOSTKEYS malware, a new tool by Russian actor COLDRIVER, targeting NATO advisors and Ukraine via fake CAPTCHAs.
⤷ Title: Russia-Linked COLDRIVER Group Expands Toolset, Using New Malware in ClickFix Espionage Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 00:00:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BAITSWITCH #ClickFix #COLDRIVER #Espionage #russia #SIMPLEFIX #Star Blizzard #Zscaler
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 00:00:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BAITSWITCH #ClickFix #COLDRIVER #Espionage #russia #SIMPLEFIX #Star Blizzard #Zscaler
Daily CyberSecurity
Russia-Linked COLDRIVER Group Expands Toolset, Using New Malware in ClickFix Espionage Campaign
Russia-linked APT COLDRIVER is using a new multi-stage malware campaign (BAITSWITCH/SIMPLEFIX) with a ClickFix lure to target journalists and activists for espionage.
⤷ Title: COLDRIVER APT Bounces Back: Deploys ‘ROBOT’ Malware Family Days After LOSTKEYS Exposure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 00:05:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #ClickFix #COLDRIVER #cyber_espionage #LOSTKEYS #malware evolution #NOROBOT #ROBOT Malware #Russian APT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 00:05:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #ClickFix #COLDRIVER #cyber_espionage #LOSTKEYS #malware evolution #NOROBOT #ROBOT Malware #Russian APT
Daily CyberSecurity
COLDRIVER APT Bounces Back: Deploys 'ROBOT' Malware Family Days After LOSTKEYS Exposure
Google exposed Russia's COLDRIVER APT deploying a new "ROBOT" malware family (NOROBOT, YESROBOT) just 5 days after its LOSTKEYS tool was disclosed. The multi-stage malware uses a ClickFix lure.
⤷ Title: Russian Calisto APT Targets Reporters Without Borders with Custom AiTM Phishing and “Missing File” Lure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 00:19:51 +0000
════════════════════════
⌗ Tags: #Cyber Security #AitM Phishing #Calisto #COLDRIVER #Espionage #Reporters Without Borders #RSF #Russian APT #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 00:19:51 +0000
════════════════════════
⌗ Tags: #Cyber Security #AitM Phishing #Calisto #COLDRIVER #Espionage #Reporters Without Borders #RSF #Russian APT #social engineering
Daily CyberSecurity
Russian Calisto APT Targets Reporters Without Borders with Custom AiTM Phishing and "Missing File" Lure
Sekoia exposed Russian Calisto APT (FSB-linked) targeting RSF and NGOs with spear-phishing. The attack uses a custom AiTM kit and a "missing file" lure to steal credentials and 2FA codes.
⤷ Title: The Election Shadow: How a Russian-Linked “OAuth” Attack is Targeting Armenian Civil Society
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 04:15:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Elections #Armenia #Civil Contract Party #COLDRIVER #Cyberespionage #CyberHUB_AM #Google Drive #Information Security #OAuth #phishing #Tech News 2026 #UNC4057
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 04:15:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Elections #Armenia #Civil Contract Party #COLDRIVER #Cyberespionage #CyberHUB_AM #Google Drive #Information Security #OAuth #phishing #Tech News 2026 #UNC4057
Penetration Testing Tools
The Election Shadow: How a Russian-Linked "OAuth" Attack is Targeting Armenian Civil Society
As the parliamentary elections loom in Armenia, cyberespionage has unequivocally thrust itself back to the vanguard. CyberHUB-AM has