Records in civil service / administration sectors
1043 records
967 incidents · 76 responses
(Iran)
United States
·Civil service / administration
An unnamed Iranian state-sponsored hacking group gained access to the computer systems of a US federal civilian executive branch organization beginning in February 2022
1 Feb 2022
Incident · Low severity
1 Feb 2022
(Iran)
United States
·Civil service / administration
An unnamed Iranian state-sponsored hacking group gained access to the computer systems of a US federal civilian executive branch organization beginning in February 2022
Andariel (Reconnaissance General Bureau, Bureau 121, Unit 180, Lab 110)
United States
·Civil service / administration
State-sponsored North Korean threat actor Andariel targeted NASA and stole data in or around Feburary 2022
1 Feb 2022
Incident · Low severity
1 Feb 2022
Andariel (Reconnaissance General Bureau, Bureau 121, Unit 180, Lab 110)
United States
·Civil service / administration
State-sponsored North Korean threat actor Andariel targeted NASA and stole data in or around Feburary 2022
Yuriy Denisov, Colonel of Russian Armed Forces and Commanding Officer of Unit 29155 < Cadet Blizzard fka DEV-0586
Ukraine
·Civil service / administration +2
Russian APT Cadet Blizzard targeted Ukraine with WhisperGate wiper attack on 14 January 2022
10 Jan 2022
Incident · Low severity
10 Jan 2022
Yuriy Denisov, Colonel of Russian Armed Forces and Commanding Officer of Unit 29155 < Cadet Blizzard fka DEV-0586
Ukraine
·Civil service / administration +2
Russian APT Cadet Blizzard targeted Ukraine with WhisperGate wiper attack on 14 January 2022
Lazarus Group (Reconnaissance General Bureau, Bureau 121, Unit 180, Lab 110)
SABRDECH+59 countries
·Civil service / administration +3
Lazarus APT Attacks European and Latin American Organizations using DTrack backdoor in 2022
1 Jan 2022
Incident · Low severity
1 Jan 2022
Lazarus Group (Reconnaissance General Bureau, Bureau 121, Unit 180, Lab 110)
SABRDECH+59 countries
·Civil service / administration +3
Lazarus APT Attacks European and Latin American Organizations using DTrack backdoor in 2022
(Iran)
United States
·Civil service / administration
Subgroup of Iranian government-sponsored COBALT MIRAGE compromised a local US government network using Drokbk malware in February 2022
1 Jan 2022
Incident · Low severity
1 Jan 2022
(Iran)
United States
·Civil service / administration
Subgroup of Iranian government-sponsored COBALT MIRAGE compromised a local US government network using Drokbk malware in February 2022
Lancefly
BNKHIDLA+1519 countries
·Civil service / administration +3
APT group Lancefly used Merdoor malware to attack government, aviation, education and telecommunication organisations in South and Southeast Asia beginning in mid-2022
1 Jan 2022
Incident · Low severity
1 Jan 2022
Lancefly
BNKHIDLA+1519 countries
·Civil service / administration +3
APT group Lancefly used Merdoor malware to attack government, aviation, education and telecommunication organisations in South and Southeast Asia beginning in mid-2022