Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Destructive Russian Cyberattacks on Ukraine Expand to Grain Sector

Destructive Russian Cyberattacks on Ukraine Expand to Grain Sector

Posted on November 7, 2025November 7, 2025 By CWS

Russian state-sponsored teams proceed their cyber assaults on Ukraine and at the moment are aiming their harmful wipers at extra industries, together with the grain sector, ESET’s newest APT exercise report reveals.

Over the previous months, exercise related to Russian APTs targeted on European Union member states and Ukraine, usually counting on spear-phishing emails because the preliminary entry vector.

In accordance with ESET, even the non-Ukrainian targets seem linked to the nation and the general battle efforts, suggesting that Russian intelligence is mobilizing consideration and assets to the continuing battle.

On this context, latest harmful cyberattacks attributed to Sandworm (also called APT44, Iridium, Seashell Blizzard, TeleBots, and Voodoo Bear, and related to GRU) stand out.

In April, Sandworm focused a Ukrainian college with the Zerolot and Sting wipers. In June and September, the APT was seen deploying a number of data-wiping malware variants towards Ukrainian governmental, vitality, logistics, and grain entities.

The not-so-common concentrating on of the grain sector, which stays the principle income for the nation, suggests an try to weaken Ukraine’s battle financial system, ESET notes in its report (PDF).

The cybersecurity agency additionally noticed a collaboration between the APT and UAC-0099, a Russian risk actor conducting preliminary intrusions after which transferring targets of curiosity to Sandworm.

“These harmful assaults by Sandworm are a reminder that wipers very a lot stay a frequent device of Russia-aligned risk actors in Ukraine. Though there have been stories suggesting an obvious refocusing on espionage actions by such teams in late 2024, we have now seen Sandworm conducting wiper assaults towards Ukrainian entities frequently because the begin of 2025,” ESET notes.Commercial. Scroll to proceed studying.

Gamaredon, which was seen working with Turla in latest assaults, continued to refine its essential stealers, dubbed PteroPSDoor and PteroVDoor, and has adopted new tunneling and serverless computing companies.

In Might, a risk actor tracked as InedibleOchotense was seen impersonating ESET in assaults towards varied Ukrainian entities, through spear-phishing emails and Sign textual content messages.

One other Russian APT that stood out this yr is RomCom (additionally tracked as Storm-0978, Tropical Scorpius, and UNC2596), which exploited a zero-day vulnerability in WinRAR to deploy varied backdoors towards protection, monetary, logistics, and manufacturing entities in Europe and Canada.

“Gamaredon remained essentially the most lively APT group concentrating on Ukraine, with a noticeable enhance within the depth and frequency of its operations. Equally, Sandworm targeted on Ukraine — albeit with destruction as its motive reasonably than Gamaredon’s cyberespionage,” ESET notes.

The cybersecurity agency’s APT exercise report additionally particulars the newest assaults related to Chinese language, Iranian, and North Korean risk actors.

Associated: Former US Protection Contractor Govt Admits to Promoting Exploits to Russia

Associated: Russian Authorities Now Actively Managing Cybercrime Teams: Safety Agency

Associated: Russian APT Switches to New Backdoor After Malware Uncovered by Researchers

Associated: Microsoft: Russia, China More and more Utilizing AI to Escalate Cyberattacks on the US

Security Week News Tags:Cyberattacks, Destructive, Expand, Grain, Russian, Sector, Ukraine

Post navigation

Previous Post: Google Launches New Maps Feature to Help Businesses Report Review-Based Extortion Attempts
Next Post: Cavalry Werewolf Attacking Government Organizations to Deploy Backdoor For Network Access

Related Posts

Google Agrees to .3 Billion Settlement in Texas Privacy Lawsuits Google Agrees to $1.3 Billion Settlement in Texas Privacy Lawsuits Security Week News
In Other News: LockBit 5.0, Department of War Cybersecurity Framework, OnePlus Vulnerability In Other News: LockBit 5.0, Department of War Cybersecurity Framework, OnePlus Vulnerability Security Week News
Zscaler Acquires AI Security Company SPLX Zscaler Acquires AI Security Company SPLX Security Week News
VerifTools Fake ID Operation Dismantled by Law Enforcement VerifTools Fake ID Operation Dismantled by Law Enforcement Security Week News
MokN Raises  Million for Phish-Back Solution MokN Raises $3 Million for Phish-Back Solution Security Week News
Men Who Hacked Law Enforcement Database for Doxing Sentenced to Prison Men Who Hacked Law Enforcement Database for Doxing Sentenced to Prison Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Enhancing Nmap Efficiency with nmapUnleashed
  • Claude Opus 4.6 Unveils 500+ Critical Vulnerabilities
  • FvncBot Exploits Android Accessibility: A New Threat
  • Transparent Tribe Targets India’s Tech Startups
  • Cybercriminals Exploit Legitimate Platforms for Ransomware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Enhancing Nmap Efficiency with nmapUnleashed
  • Claude Opus 4.6 Unveils 500+ Critical Vulnerabilities
  • FvncBot Exploits Android Accessibility: A New Threat
  • Transparent Tribe Targets India’s Tech Startups
  • Cybercriminals Exploit Legitimate Platforms for Ransomware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark