Void Balaur Hackers-for-Hire zielt auf russische Unternehmen und Politik Entitäten

Teilen:

A hack-for-hire group that was first exposed in 2019 has expanded its focus to set its sights on entities with business or political ties to Russia.

Dubbed Void Balaur, the cyber mercenary collective has a history of launching cyberattacks against biotechnology and telecom companies since 2015. As many as 3,500 victims have been reported as of November 2021.

“Void Balaur […] primarily dabbles in cyber espionage and data theft, selling the stolen information to anyone willing to pay,” Trend Micro notiert at the time.

 

Attacks conducted by the group are typically both generic and opportunistic and are aimed at gaining unauthorized access to widely-used email services, social media, messaging, and corporate accounts.

 

Earlier this June, shoppingmode Google‘s Threat Analysis Group (TAG) took the wraps off a set of credential theft attacks targeting journalists, European politicians, and non-profit’s mounted by the threat actor.

“Void Balaur also goes after targets valuable for prepositioning or facilitating future attacks, SentinelOne researcher Tom Hegel sagte, adding the targets span Russia, the U.S., the U.K., Taiwan, Brazil, Kazakhstan, Ukraine, Moldova, Georgia, Spain, Central African Republic, and Sudan.

The hack-for-hire service offering linked to the group is said to be advertised under different personas, such as Hacknet and RocketHack. Over the years, the operators have provided other services, including remote access to devices, SMS records, and real-time location tracking.

 

What’s more, the attack infrastructure operated by Void Balaur encompasses more than 5,000 unique domains that claim to be email websites, authentication services, and public services portals.

 

But in what appears to be an operational oversight, one of the domains controlled by the group (accounts-my-mail-gmail[.]com) resolved to an IP address that’s owned and operated by the Russian Federal Guard Service (FSO) in early 2022, suggesting a potential connection.

Although Void Balaur’s attacks are aimed at individuals and organizations across the world, campaigns mounted in 2022 have singled out people that are involved in business and political situations that are of interest to Russia.

Also prevalent is the use of highly reproducible phishing emails that mimic local government services or banks to trick targets into providing their account credentials upon clicking a malicious link.

“Void Balaur remains a highly active and evolving threat to individuals across the globe. From the targeting of well known email services to the offering of hacking corporate networks, the group represents a clear example of the hack-for-hire marketm,” Hegel said.

https://thehackernews.com/2022/09/void-balaur-hackers-for-hire-group-now.html

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
1:33 pm, Mai 18, 2025
Wetter-Symbol 15°C
L: 14° | H: 17°
wenige Wolken
Luftfeuchtigkeit: 62 %
Druck: 1020 mb
Wind: 4 mph N
Windböe: 7 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 17%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 5:04 am
Sonnenuntergang: 8:49 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
14° | 17°°C 0 mm 0% 8 mph 64 % 1020 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
9° | 19°°C 0.2 mm 20% 12 mph 80 % 1022 mb 0 mm/h
Di. Mai 20 10:00 pm
Wetter-Symbol
9° | 21°°C 0 mm 0% 8 mph 71 % 1023 mb 0 mm/h
Mi. Mai 21 10:00 pm
Wetter-Symbol
12° | 18°°C 1 mm 100% 7 mph 89 % 1020 mb 0 mm/h
Do. Mai 22 10:00 pm
Wetter-Symbol
9° | 19°°C 0 mm 0% 8 mph 59 % 1022 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
16° | 18°°C 0 mm 0% 8 mph 55 % 1020 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
16° | 16°°C 0 mm 0% 7 mph 51 % 1019 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
13° | 13°°C 0 mm 0% 7 mph 64 % 1020 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
12° | 12°°C 0 mm 0% 7 mph 71 % 1020 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
9° | 9°°C 0 mm 0% 6 mph 80 % 1021 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
10° | 10°°C 0 mm 0% 6 mph 74 % 1021 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
16° | 16°°C 0 mm 0% 8 mph 55 % 1021 mb 0 mm/h
Tomorrow 1:00 pm
Wetter-Symbol
19° | 19°°C 0.2 mm 20% 12 mph 42 % 1021 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€93,014.99
0.80%
Ethereum(ETH)
€2,238.68
0.65%
Fesseln(USDT)
€0.90
0.00%
XRP(XRP)
€2.14
1.56%
Solana(SOL)
€153.00
1.80%
USDC(USDC)
€0.90
0.00%
Dogecoin(DOGE)
€0.199520
3.33%
Shiba Inu(SHIB)
€0.000013
3.31%
Pepe(PEPE)
€0.000012
7.32%
Peanut das Eichhörnchen(PNUT)
€0.305038
13.21%
Nach oben scrollen