Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

ck4829

(36,998 posts)
Sun Jul 20, 2025, 06:37 AM 19 hrs ago

Russian hackers using sophisticated 'Authentic Antics' malware, UK says

A notorious Russian military hacking operation was spotted using a new set of state-of the-art malware tools targeting victim email accounts.

The National Cyber Security Centre (NCSC) branch of the UK's Government Communications Headquarters (GCHQ) intelligence agency said that the APT 28 group, aka Fancy Bear, is using what is described as a “sophisticated” suite of tools known as “Authentic Antics."

Designed as an infostealer specifically targeting Microsoft Windows systems, the malware sits on the host machine and looks to hide its activity amidst legitimate Windows system processes. While doing that, the Authentic Antics malware occasionally serves the target with Windows login-prompts.

In addition to targeting local account credentials, the malware looks to access Windows OAuth tokens that could allow the attackers to log into other Windows-hosted services and accounts.

https://www.scworld.com/news/russian-hackers-using-sophisticated-authentic-antics-malware-uk-says

1 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Russian hackers using sophisticated 'Authentic Antics' malware, UK says (Original Post) ck4829 19 hrs ago OP
Likely already on E-mail accounts of no_hypocrisy 18 hrs ago #1
Latest Discussions»Issue Forums»National Security & Defense»Russian hackers using sop...