1 May 2024

Ukraine busts pro-Russian hacker network in Kyiv


Ukraine busts pro-Russian hacker network in Kyiv

The Security Service of Ukraine (SBU) has apprehended a group of hackers in Kyiv responsible for orchestrating fake accounts impersonating top officials of Ukrainian security agencies. These activities aimed to propagate misinformation and undermine Ukraine's defense forces.

The SBU said it dismantled bot farms operating in Kyiv, through which pro-Russian propaganda was disseminated. The police arrested two individuals running the operation involved in spreading misinformation about the war in Ukraine and attempting to discredit the Ukrainian Armed Forces.

The group created fake social media and messaging platform accounts, purportedly under the names of high-ranking security officials such as the Head of the SBU and the Chief of the Main Intelligence Directorate of the Ministry of Defense. To make them more believable, the fraudsters reposted official communications from the government agencies. However, through direct messages, they engaged in extortion and offered fraudulent assistance.

The perpetrators also registered fake profiles of Ukrainians across various social media platforms, including Facebook, Twitter, Instagram, TikTok, as well as Russian platforms like “Odnoklassniki” and “VKontakte” (both are banned in Ukraine). Using the bot farms, the criminals were able to generate over 1,000 fake accounts daily.

To manage these accounts, the suspects used specialized software and hardware equipment.

According to the SBU, the suspects cooperated with Russian intelligence operatives, from whom they received 'manuals' for subversive activities aimed at destabilizing Ukraine's socio-political landscape and tarnishing the country's image on the international stage.

During the searchers at the suspect’s residences the law enforcement officers seized the equipment used for creating fake internet addresses, as well as SIM cards used to register controlled accounts.

If found guilty, the suspects could face up to seven years in prison.

Back to the list

Latest Posts

Threat actors abusing Foxit PDF Reader flaw to deploy multiple malware variants

Threat actors abusing Foxit PDF Reader flaw to deploy multiple malware variants

The flaw involves Foxit PDF Reader's handling of pop-up messages.
20 May 2024
China-linked APT group uses malware to spy on commercial shipping

China-linked APT group uses malware to spy on commercial shipping

Mustang Panda infiltrated the computer systems of cargo shipping companies in Norway, Greece, and the Netherlands.
20 May 2024
The Grandoreiro malware is back up and running after January disruption

The Grandoreiro malware is back up and running after January disruption

Grandoreiro now targets over 1,500 banks worldwide, spanning more than 60 countries across Central and South America, Africa, Europe, and the Indo-Pacific region.
20 May 2024