Year-long Russian attacks infect users as soon as they look at an email
Russian actors are leveraging phishing attacks, impersonating Signal support, to compromise users. This follows a broader trend of Russian state-sponsored actors targeting various systems and platforms, including exploiting vulnerabilities in open-source software and targeting infrastructure.
This article highlights a continuing campaign by Russian actors utilizing phishing tactics to gain access to user accounts. Specifically, they are posing as Signal support to trick users into clicking malicious links and installing malware. This follows a pattern of Russian state-sponsored actors targeting various systems and platforms, including exploiting vulnerabilities in open-source software and targeting infrastructure. The article also mentions broader trends such as Russia upgrading smartphone surveillance tools and targeting propaganda sites. Furthermore, vulnerabilities in Joomla extensions are being exploited to impact a million websites worldwide.