Oddbean new post about | logout
 Ukraine's SSSCIP agency has released a report detailing how the tactics of Russian hackers have changed in the first half of the year

Seems activity has gone down

https://cip.gov.ua/en/news/yak-zminyuyutsya-taktiki-cili-i-spromozhnosti-khakerskikh-grup-uryadu-rf-ta-kontrolovanikh-nim-ugrupovan-zvit

https://files.mastodon.social/media_attachments/files/111/127/816/932/706/957/original/ef9b5974732e2bd0.png 
 Some CERT-UA naming conventions from the report:

UAC-0010 (Gamaredon/FSB)
UAC-0056 (GRU)
UAC-0028 (APT28/GRU)
UAC-0082 (Sandworm/GRU)
UAC-0144/UAC-0024/UAC-0003 (Turla)
UAC-0029 (APT29/SVR)
UAC-0109 (Zarya)
UAC-0106 (XakNet)
UAC-0107 (CyberArmyofRussia)