Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Security

Russia Released a Ukrainian App For Hacking Russia That Was Actually Malware (vice.com) 19

Russian government hackers tried to trick Ukrainian and international volunteers into using a malicious Android app disguised as an app to launch Distributed Denial of Service (DDoS) attacks against Russian sites, according to new research published by Google on Tuesday. Motherboard reports: Since the beginning of the Russian invasion, Ukraine has resisted not only on the ground, but also online. A loose collective of technologists and hackers has organized under an umbrella quasi-hacktivist organization called the IT Army, and they have launched constant and persistent cyberattacks against Russian websites. The Russian government tried to turn this volunteer effort around to unmask Ukrainian hackers, in a smart, but ultimately failed attempt.

Google researchers wrote in the report that the app was created by the hacking group known as Turla, which several cybersecurity companies believe works for the Kremlin. [Shane Huntley, the head of the Google research team Threat Analysis Group] said that they were able to attribute this operation to Turla because they have tracked the group for a long time and have good visibility into their infrastructure and link it to this app. The hackers pretended to be a "community of free people around the world who are fighting russia's aggression" -- much like the IT Army. But the app they developed was actually malware. The hackers called it CyberAzov, in reference to the Azov Regiment or Battalion, a far-right group that has become part of Ukraine's national guard. To add more credibility to the ruse they hosted the app on a domain "spoofing" the Azov Regiment: cyberazov[.]com.

The app actually didn't DDoS anything, but was designed to map out and figure out who would want to use such an app to attack Russian websites, according to Huntely. "Now that they have an app that they control, and they see where it came from, they can actually work out what the infrastructure looks like, and work out where the people that are potentially doing these sorts of attacks are," Huntley said. Google said the fake app wasn't hosted on the Play Store, and that the number of installs "was miniscule." Still, it was a smart attempt to trick unknowing Ukrainians or people interested in working with Ukrainians to fall into the trap.

This discussion has been archived. No new comments can be posted.

Russia Released a Ukrainian App For Hacking Russia That Was Actually Malware

Comments Filter:
  • by quonset ( 4839537 ) on Tuesday July 19, 2022 @08:20PM (#62717496)

    to counter all those mutant troops created in secret biolabs [yahoo.com] in Ukraine.

    • by cusco ( 717999 )

      Well, that's cute Yahoo, take the babblings of two known nutcases and pretend that's the official Russian position. May as well pretend Marjorie Taylor Green and Lauren Bobert are representatives of the official US position when they blab about child abuse rings in the basement of Ping Pong Pizza.

      • I sincerely doubt these two are generally considered nutcases in Russia, so well done Yahoo, for reporting on this. Note that they are heading a commission to investigate ongoings at Ukrainian bio labs, so it is official state business. So indeed, whatever they state about their investigations is very much the official position.
  • "You can't cheat an honest man; never give a sucker an even break, or smarten up a chump"
  • It was easy to predict this will happen with such big number of users wanting to help IT-army of Ukraine. Trusting strangers that provide destination address and tools is a tricky idea in the first place.
  • I ran it on hacked russian phones!

  • So law enforcement created a fake app which harms noone except note down addresses of those trying to break the law through DDOS attacks. How is that malware? Since when did Slashdot become a propaganda forum?
  • Putin gets his sneaky plans blown out of the water, much like his warships
    DRAT, FOILED AGAIN !!

Most public domain software is free, at least at first glance.

Working...