"GrewApacha," a Trojan used since 2021 by the Chinese cyber-espionage group known as APT31 (Advanced Persistent Threat 31) is the backdoor malware being blamed for a cyberattack that has affected multiple government bodies and IT companies in Russia.
During these attacks, the Russian devices were infected using phishing emails with attachments containing malicious shortcut files. The attackers then downloaded additional Trojans to the infected computers, especially tools used by the Chinese APT31 cybergroup, as well as the sophisticated toolset known as the updated CloudSorcerer to target the Russian government entities.
We use cookies to offer you a better browsing experience and to analyze site traffic. By using our site, you consent to our use of cookies.
Essential Cookies
Site Analytics
Essential Cookies
These cookies are necessary for certain areas of the site to function. They are used for access to secure areas of the website and to help us comply with legal requirements like GDPR.
Site Analytics
These cookies are used to collect information about how users use our site. We use these to improve how our website works.