Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
US Offers  Million for Info on Russian Cyber Hackers

US Offers $10 Million for Info on Russian Cyber Hackers

Posted on June 29, 2026 By CWS

The United States has announced a significant reward of up to $10 million for information that could lead to the identification of individuals associated with two cyber threat groups linked to Russian intelligence. These groups, tracked as UNC5792 and UNC4221, have been implicated in targeting individuals across various sectors, including current and former US government officials, military leaders, journalists, and political figures, particularly focusing on those in Ukraine.

Targeted Phishing Campaigns on Messaging Apps

According to a March alert issued by the Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI), these cyber groups have focused their phishing efforts on commercial messaging applications (CMAs). By masquerading as automated support accounts for these platforms, the attackers deceive victims into clicking malicious links or providing verification codes, effectively gaining control over accounts on popular messaging services like Signal and WhatsApp.

In recent developments, CISA and the FBI have observed a shift in the attackers’ tactics. The cybercriminals now request victims’ Backup Recovery Keys, allowing them to access past conversations, including private and group messages. The agencies emphasize that even if victims create new accounts using the same phone number, the compromised Backup Recovery Key remains valid, posing ongoing security risks.

Mitigation and Security Measures

To mitigate these threats, users are advised to generate new Backup Recovery Keys, which invalidates the old ones and restricts unauthorized access. However, CISA and the FBI caution that attackers may have already downloaded data from compromised accounts, highlighting the importance of ongoing vigilance.

The threat actors, identified as part of the Russian intelligence services, use advanced social engineering tactics to exploit legitimate features in secure messaging apps. These actions grant them unauthorized access to sensitive communications and contact lists, and enable them to launch further phishing attacks. In some cases, attackers have altered group invite pages to link their devices to victims’ accounts on platforms like Signal.

US Government’s Response and Call for Information

The US government’s $10 million reward underscores the seriousness of these threats. It seeks comprehensive information on the identities, locations, and affiliations of UNC5792 actors, as well as details regarding their infrastructure and financial networks. This initiative is part of broader efforts to combat cyber threats linked to Russian intelligence services.

By offering substantial financial incentives, the US aims to gather critical intelligence to dismantle these cyber threat networks. The ongoing attacks illustrate the evolving nature of cybersecurity threats and the need for robust defenses and international cooperation to protect sensitive information from malicious actors.

Security Week News Tags:Backup Recovery Key, CISA, Cybersecurity, FBI, Messaging Apps, phishing attacks, Russian hackers, UNC4221, UNC5792, US bounty

Post navigation

Previous Post: Microsoft Eliminates Malicious Edge Extensions with Hidden Malware
Next Post: OpenAI, Anthropic AI Models Restricted by Trump Administration

Related Posts

Nevada State Offices Closed Following Disruptive Cyberattack Nevada State Offices Closed Following Disruptive Cyberattack Security Week News
SesameOp Malware Abuses OpenAI API  SesameOp Malware Abuses OpenAI API  Security Week News
Chrome 143 Patches High-Severity Vulnerabilities Chrome 143 Patches High-Severity Vulnerabilities Security Week News
Toys ‘R’ Us Canada Customer Information Leaked Online Toys ‘R’ Us Canada Customer Information Leaked Online Security Week News
Exploited Vulnerabilities in Joomla and LiteSpeed Uncovered Exploited Vulnerabilities in Joomla and LiteSpeed Uncovered Security Week News
Russian Cyberspies Target Foreign Embassies in Moscow via AitM Attacks: Microsoft Russian Cyberspies Target Foreign Embassies in Moscow via AitM Attacks: Microsoft Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Gamaredon’s Ukraine Cyber Attacks Intensify with New Tactics
  • AI Transforms Red-Team Tool Creation with Mythic Agents
  • Critical Linux Kernel Bug Allows Root Access
  • Urgency of Adopting Post-Quantum Cryptography
  • OpenAI, Anthropic AI Models Restricted by Trump Administration

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Gamaredon’s Ukraine Cyber Attacks Intensify with New Tactics
  • AI Transforms Red-Team Tool Creation with Mythic Agents
  • Critical Linux Kernel Bug Allows Root Access
  • Urgency of Adopting Post-Quantum Cryptography
  • OpenAI, Anthropic AI Models Restricted by Trump Administration

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark