• About Us
  • Contact Us
Monday, May 12, 2025
  • Login
CXOTECH
  • NEWS
  • CXO TALKS
  • ANALYSIS
  • STRATEGY
  • HOW TO
No Result
View All Result
  • NEWS
  • CXO TALKS
  • ANALYSIS
  • STRATEGY
  • HOW TO
No Result
View All Result
CXOTECH
No Result
View All Result

Cadet Blizzard: U.S. Offers $10 Million Reward!

Ali Ömer Yıldız by Ali Ömer Yıldız
September 11, 2024
in News
A A
Cadet Blizzard: U.S. Offers $10 Million Reward!

The U.S. government, along with a coalition of international partners, has officially attributed the Russian hacker group known as “Cadet Blizzard” to the General Staff Main Intelligence Directorate (GRU) 161st Specialist Training Center, also referred to as Unit 29155. This group, active since at least 2020, is accused of carrying out extensive cyber espionage, sabotage, and operations aimed at causing reputational harm against various global targets.

Focus on Ukraine and Global Infrastructure

Since early 2022, Cadet Blizzard’s primary objective has reportedly been to target and disrupt international efforts to aid Ukraine. The group has focused its attacks on critical infrastructure sectors, including government services, financial institutions, transportation systems, energy grids, and healthcare sectors across NATO member states, the European Union, and various countries in Central America and Asia.

The joint advisory, released last week as part of a coordinated operation named “Operation Toy Soldier,” comes from cybersecurity and intelligence authorities in the U.S., the Netherlands, the Czech Republic, Germany, Estonia, Latvia, Ukraine, Canada, Australia, and the U.K.

Background of Cadet Blizzard’s Cyber Activities

Also known by aliases such as Ember Bear, FROZENVISTA, Nodaria, Ruinous Ursa, UAC-0056, and UNC2589, the group gained notoriety in January 2022 for deploying the WhisperGate (also known as PAYWIPE) malware against several Ukrainian organizations just before Russia’s invasion of Ukraine. This malware attack was not unique to Cadet Blizzard, but they have been significantly associated with its use.

In June 2024, Amin Timovich Stigal, a 22-year-old Russian national, was indicted in the U.S. for his alleged involvement in destructive cyber attacks using this wiper malware. Meanwhile, the U.S. Department of Justice (DoJ) has charged five officers from Unit 29155 for conspiracy to commit computer intrusion and wire fraud against targets in Ukraine, the U.S., and 25 other NATO countries.

Identities of the Indicted Officers

The officers charged include:

  • Yuriy Denisov (Юрий Денисов): A colonel in the Russian military and a commanding officer for Cyber Operations at Unit 29155.
  • Vladislav Borovkov (Владислав Боровков), Denis Denisenko (Денис Денисенко), Dmitriy Goloshubov (Дима Голошубов), and Nikolay Korchagin (Николай Корчагин): Lieutenants in the Russian military assigned to Unit 29155 involved in cyber operations.

A $10 Million Reward and Future Implications

The U.S. Department of State’s “Rewards for Justice” program has announced a reward of up to $10 million for information leading to the identification or location of the hackers or details about their malicious cyber activities.

Unit 29155 is also believed to be involved in attempted coups, sabotage, influence operations, and assassination attempts throughout Europe, alongside their offensive cyber operations since at least 2020. The goal of these intrusions includes espionage, reputational damage through data leaks, and destructive operations that compromise sensitive systems.

Tactics and Techniques Used by Cadet Blizzard

The group reportedly employs a range of cyber tactics, including website defacements, infrastructure scanning, data exfiltration, and data leak operations. Attack chains often start with exploiting vulnerabilities in software such as Atlassian Confluence Server, Dahua Security systems, and Sophos firewalls, followed by the use of Impacket for lateral movement and data extraction.

The advisory mentions the possible use of Raspberry Robin malware as an access broker and targeted attacks on Microsoft Outlook Web Access (OWA) infrastructure through password spraying techniques.

Recommendations for Organizations

Organizations are advised to prioritize system updates, address known vulnerabilities, segment networks to contain malicious activities, and enforce multi-factor authentication (MFA) resistant to phishing for all external services.

  • LinkedIn
  • Instagram

Source: https://thehackernews.com/2024/09/us-offers-10-million-for-info-on.html

Tags: CadetBlizzardCybersecurityRussianHackers
Previous Post

Ex-OpenAI Scientist Raises $1B for Safe AI Venture

Next Post

GITEX DIGI_HEALTH 5.0 EXPO-SUMMIT ASIA Launches in Thailand, Southeast Asia’s Fastest Growing Medical Tourism Market

Next Post
GITEX DIGI_HEALTH 5.0 EXPO-SUMMIT ASIA Launches in Thailand, Southeast Asia’s Fastest Growing Medical Tourism Market

GITEX DIGI_HEALTH 5.0 EXPO-SUMMIT ASIA Launches in Thailand, Southeast Asia's Fastest Growing Medical Tourism Market

Pirelli and Bosch Collaborate on SmartTire Technology

Pirelli and Bosch Collaborate on SmartTire Technology

LATEST NEWS

Governments propel cybersecurity conversations on multi-layered defence strategies at GISEC Global in Dubai
News

Governments propel cybersecurity conversations on multi-layered defence strategies at GISEC Global in Dubai

May 8, 2025

The second day of the GISEC Global put the spotlight on governments, with top officials from the UAE and around...

Read moreDetails
European AI Continent Agenda Gains Global Momentum at the Largest Inaugural Tech, Startup & Digital Investment Event 

European AI Continent Agenda Gains Global Momentum at the Largest Inaugural Tech, Startup & Digital Investment Event 

May 8, 2025
Dubai Electronic Security Center to Showcase Cybersecurity Initiatives at GISEC 2025 as Official Government Partner

Dubai Electronic Security Center to Showcase Cybersecurity Initiatives at GISEC 2025 as Official Government Partner

May 2, 2025
GISEC Global 2025: Dubai Mobilises Global Cyber Defence Leaders to Combat AI-Driven Cybercrime and Ransomware

GISEC Global 2025: Dubai Mobilises Global Cyber Defence Leaders to Combat AI-Driven Cybercrime and Ransomware

May 2, 2025
Reigniting an Open, Bold & Collaborative European Digital Economy Amidst €200bn AI Ambitions

Reigniting an Open, Bold & Collaborative European Digital Economy Amidst €200bn AI Ambitions

April 29, 2025

Follow Us On LinkedIn

Categories

  • ANALYSIS
  • CIO Exclusive
  • Company Analysis
  • cxotalks
  • HOW TO
  • News
  • STRATEGY

Tags

5G AI AI-powered Amazon Android Apple Artificial intelligence chatbot ChatGPT China Chip CIO CXO Cyberattack Cybersecurity Electric Car Elon Musk ElonMusk EV Facebook Google Huawei Instagram Intel iOS iPhone Japan META Microsoft NASA Nvidia OpenAI Sam Altman samsung Space SpaceX Tesla Threads TikTok TSMC Twitter Whatsapp X Xiaomi YouTube
  • About Us
  • Contact Us

© 2023 CXO MEDYA

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • About Us
  • Contact Us
  • Latest News
  • Tech Events & Conferences 2024

© 2023 CXO MEDYA