{"id":1423,"date":"2024-10-29T12:12:02","date_gmt":"2024-10-29T12:12:02","guid":{"rendered":"https:\/\/www.tsfactory.com\/forums\/?p=1423"},"modified":"2024-10-29T12:12:02","modified_gmt":"2024-10-29T12:12:02","slug":"google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it","status":"publish","type":"post","link":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/","title":{"rendered":"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It"},"content":{"rendered":"<p>The security researchers at Google\u2019s renowned Threat Analysis Group, alongside threat intelligence specialists from Mandiant, have confirmed a suspected Russian espionage and influence dual-pronged attack has been underway against both Android and Windows users. Here\u2019s what we know so far.<\/p>\n<p>What We Know About The UNC5812 Cyber Attack<\/p>\n<p>The UNC5812 cyber attack was discovered by Google TAG and Mandiant during September, 2024, and appears to be a hybrid espionage and influence operation carried out by Russian threat actors. Using a Telegram persona identified as \u201cCivil Defense&#8221; the threat intelligence analysts said that the campaign was being used to distribute malware to both Android and Windows users under the guise of a free software provider. The nature of that free software being targeted directly at people looking to find potential military recruiters of conscripts in Ukraine. The distribution channel is both via the malicious civil defense Telegram channel and a similarly named website. It is thought that the activation of the Telegram channel in September signaled when the operation went live, with the website domain having been registered earlier in April.<\/p>\n<p>Naming the group behind the UNC5812 cyber attack as APT29, a Russian state-sponsored threat actor also known less formally as Midnight Blizzard or Cozy Bear, Amazon has confirmed that it has worked behind the scenes to seize the domains used in this campaign. Formerly the technical analysis lead for computer and network intrusion in the Federal Bureau of Investigation\u2019s Cyber Division and a special agent with the Air Force Office of Special Investigations, CJ Moses is now the chief information security officer at Amazon. Writing on LinkedIn, Moses thanked the cyber threat intelligence teams at both Amazon and CERT-UA for their efforts \u201cto make the internet more secure.\u201d APT29 is not to be confused with APT28, known as Fancy Bear, another Russian state-sponsored attack group also currently engaged in targeted anti-Ukraine cyber attack activity.<\/p>\n<p><a href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2024\/10\/29\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\">Read the Full Story Here<\/a><\/p>\n<p>Source: Forbes<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The security researchers at Google\u2019s renowned Threat Analysis Group, alongside threat intelligence specialists from Mandiant, have confirmed a suspected Russian espionage and influence dual-pronged attack has been underway against both Android and Windows users. Here\u2019s what we know so far. What We Know About The UNC5812 Cyber Attack The UNC5812 cyber attack was discovered by [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":1303,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-1423","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community\" \/>\n<meta property=\"og:description\" content=\"The security researchers at Google\u2019s renowned Threat Analysis Group, alongside threat intelligence specialists from Mandiant, have confirmed a suspected Russian espionage and influence dual-pronged attack has been underway against both Android and Windows users. Here\u2019s what we know so far. What We Know About The UNC5812 Cyber Attack The UNC5812 cyber attack was discovered by [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\" \/>\n<meta property=\"og:site_name\" content=\"Community\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/TSFactoryLLC\/\" \/>\n<meta property=\"article:published_time\" content=\"2024-10-29T12:12:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"640\" \/>\n\t<meta property=\"og:image:height\" content=\"962\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Chelsie Wyatt\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@TSFactoryLLC\" \/>\n<meta name=\"twitter:site\" content=\"@TSFactoryLLC\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Chelsie Wyatt\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\",\"name\":\"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community\",\"isPartOf\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg\",\"datePublished\":\"2024-10-29T12:12:02+00:00\",\"author\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg\",\"contentUrl\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg\",\"width\":640,\"height\":962},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.tsfactory.com\/forums\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#website\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/\",\"name\":\"Community\",\"description\":\"TSFactory\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.tsfactory.com\/forums\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f\",\"name\":\"Chelsie Wyatt\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g\",\"caption\":\"Chelsie Wyatt\"},\"url\":\"https:\/\/www.tsfactory.com\/forums\/blog\/author\/chelsie\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/","og_locale":"en_US","og_type":"article","og_title":"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community","og_description":"The security researchers at Google\u2019s renowned Threat Analysis Group, alongside threat intelligence specialists from Mandiant, have confirmed a suspected Russian espionage and influence dual-pronged attack has been underway against both Android and Windows users. Here\u2019s what we know so far. What We Know About The UNC5812 Cyber Attack The UNC5812 cyber attack was discovered by [&hellip;]","og_url":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/","og_site_name":"Community","article_publisher":"https:\/\/www.facebook.com\/TSFactoryLLC\/","article_published_time":"2024-10-29T12:12:02+00:00","og_image":[{"width":640,"height":962,"url":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg","type":"image\/jpeg"}],"author":"Chelsie Wyatt","twitter_card":"summary_large_image","twitter_creator":"@TSFactoryLLC","twitter_site":"@TSFactoryLLC","twitter_misc":{"Written by":"Chelsie Wyatt","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/","url":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/","name":"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It - Community","isPartOf":{"@id":"https:\/\/www.tsfactory.com\/forums\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage"},"image":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage"},"thumbnailUrl":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg","datePublished":"2024-10-29T12:12:02+00:00","author":{"@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f"},"breadcrumb":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#primaryimage","url":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg","contentUrl":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2024\/07\/googleoffice.jpg","width":640,"height":962},{"@type":"BreadcrumbList","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/google-warns-of-new-android-and-windows-cyber-attack-1-thing-stops-it\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.tsfactory.com\/forums\/"},{"@type":"ListItem","position":2,"name":"Google Warns Of New Android And Windows Cyber Attack\u20141 Thing Stops It"}]},{"@type":"WebSite","@id":"https:\/\/www.tsfactory.com\/forums\/#website","url":"https:\/\/www.tsfactory.com\/forums\/","name":"Community","description":"TSFactory","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.tsfactory.com\/forums\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f","name":"Chelsie Wyatt","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g","caption":"Chelsie Wyatt"},"url":"https:\/\/www.tsfactory.com\/forums\/blog\/author\/chelsie\/"}]}},"_links":{"self":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/1423","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/comments?post=1423"}],"version-history":[{"count":1,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/1423\/revisions"}],"predecessor-version":[{"id":1424,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/1423\/revisions\/1424"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/media\/1303"}],"wp:attachment":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/media?parent=1423"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/categories?post=1423"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/tags?post=1423"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}