Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • As AI Expands, Erin Brockovich Taps Communities to Map Data Center Concerns
    • Direct-to-Cell Technology: Enabling Satellite Connectivity for Legacy Devices
    • How small businesses can leverage AI
    • Robots-Blog | Humanoide Robotik aus Deutschland: igus bringt neuen Serviceroboter auf den Markt
    • GM reimagines Hummer off-roader with California ideas unit
    • London’s DEScycle secures over €10 million in grant funding to scale critical metals recovery platform
    • How to Edit, Merge, and Split PDFs With Free Online Tools
    • Florida crackdown targets illegal machines in Sarasota
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Tuesday, June 2
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Microsoft releases urgent Office patch. Russian-state hackers pounce.
    News

    Microsoft releases urgent Office patch. Russian-state hackers pounce.

    Editor Times FeaturedBy Editor Times FeaturedFebruary 9, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    Russian-state hackers wasted no time exploiting a crucial Microsoft Workplace vulnerability that allowed them to compromise the gadgets inside diplomatic, maritime, and transport organizations in additional than half a dozen international locations, researchers stated Wednesday.

    The menace group, tracked below names together with APT28, Fancy Bear, Sednit, Forest Blizzard, and Sofacy, pounced on the vulnerability, tracked as CVE-2026-21509, lower than 48 hours after Microsoft launched an pressing, unscheduled security update late final month, the researchers stated. After reverse-engineering the patch, group members wrote a sophisticated exploit that put in one in every of two never-before-seen backdoor implants.

    Stealth, velocity, and precision

    Your complete marketing campaign was designed to make the compromise undetectable to endpoint safety. Apart from being novel, the exploits and payloads had been encrypted and ran in reminiscence, making their malice onerous to identify. The preliminary an infection vector got here from beforehand compromised authorities accounts from a number of international locations and had been probably acquainted to the focused e mail holders. Command and management channels had been hosted in legit cloud companies which might be usually allow-listed inside delicate networks.

    “The usage of CVE-2026-21509 demonstrates how shortly state-aligned actors can weaponize new vulnerabilities, shrinking the window for defenders to patch crucial techniques,” the researchers, with safety agency Trellix, wrote. “The marketing campaign’s modular an infection chain—from preliminary phish to in-memory backdoor to secondary implants was fastidiously designed to leverage trusted channels (HTTPS to cloud companies, legit e mail flows) and fileless strategies to cover in plain sight.”

    The 72-hour spear phishing marketing campaign started January 28 and delivered a minimum of 29 distinct e mail lures to organizations in 9 international locations, primarily in Japanese Europe. Trellix named eight of them: Poland, Slovenia, Turkey, Greece, the UAE, Ukraine, Romania, and Bolivia. Organizations focused had been protection ministries (40 %), transportation/logistics operators (35 %), and diplomatic entities (25 %).



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Florida crackdown targets illegal machines in Sarasota

    June 2, 2026

    Hawthorne bankruptcy dispute targets Illinois racing funds

    June 2, 2026

    Kalshi debuts regulated crypto perpetual futures

    June 2, 2026

    Manchester gambling raid sparks wider enforcement focus

    June 2, 2026

    Burbank laboratory owner sentenced over Medicare gambling fraud

    June 1, 2026

    Salesforce has a stake in Anthropic worth ~$5B; Salesforce first invested about $50M in an early 2023 round and has continually invested in rounds since (Brody Ford/Bloomberg)

    June 1, 2026

    Comments are closed.

    Editors Picks

    As AI Expands, Erin Brockovich Taps Communities to Map Data Center Concerns

    June 2, 2026

    Direct-to-Cell Technology: Enabling Satellite Connectivity for Legacy Devices

    June 2, 2026

    How small businesses can leverage AI

    June 2, 2026

    Robots-Blog | Humanoide Robotik aus Deutschland: igus bringt neuen Serviceroboter auf den Markt

    June 2, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Apple Reportedly Planning AI Comeback, Complete With a Tabletop Robot

    August 14, 2025

    This Is the Group That’s Been Swatting US Universities

    August 27, 2025

    Zpacks Duplex Pro adaptable ultralight Dyneema tent

    July 17, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.