Windows KMS activator used by russian hackers to steal Ukrainians personal data
16.02.25
russian hacking group Sandworm attacks Ukrainian Windows users using Trojans in KMS activators and fake updates.
EclecticIQ researchers have discovered cyberattacks that began in late 2023, which are associated with the Sandworm (APT44) group. Hackers use the BACKORDER downloader to distribute the DarkCrystal RAT (DcRAT) malware, and also register attack domains via ProtonMail.
Sandworm deploys Trojans via fake Windows KMS activators. Once installed, they disable Windows Defender, record keystrokes, steal cookies, passwords, and system information, and then transfer them to attackers’ servers.
Hackers are taking advantage of the prevalence of pirated software in Ukraine, including government institutions, to massively infect devices. EclecticIQ warns that Sandworm attacks pose a serious threat to national security and critical infrastructure.
In the first half of 2024, russian hacker groups shifted the focus of their cyberattacks to targets related to military operations and service providers. This is stated in the analytical report “russian Cyber Operations” for the first half of 2024, prepared by specialists of the State Service for Communications.
According to the report, if earlier Russian hackers focused on one-time attacks, now their strategy is aimed at entrenching in systems, covertly obtaining information and using cyber means to collect data on the results of their physical strikes.
The State Service for Communications notes that the IT sector demonstrates a high ability to quickly recover from cyberattacks and even strengthens after each incident. The report also analyzes new trends in Russian hacker tactics, identifies new threats, and provides lessons learned by Ukrainian cyber security experts from this experience.
Don't miss interesting news
Subscribe to our channels and read announcements of high-tech news, tes

Acer Predator Helios Neo 16 laptop review: gold middle



We have already tested the balanced gaming laptops Acer Nitro 16, Predator Helios 16 and Predator Helios Neo 14. Today we will tell you about the larger version of the latter – Predator Helios Neo 16

Huawei introduced the Pura X, a compact smartphone with a 16:10 screen aspect ratio Huawei smartphone
Huawei Pura X features a 6.3-inch internal screen with a resolution of 2120×1320 pixels, which supports an adaptive refresh rate of up to 120 Hz.
Xbox 360 turns out easy to hack with USB flash drive hacker Microsoft Xbox
BadUpdate exploits a vulnerability in Microsoft’s Xbox 360 hypervisor, and requires a special USB key, code, and a trial version of Rock Band Blitz to activate.