Macron leaks contained phishing links to domains associated with APT28, researchers say
The hacked emails leaked last week from the campaign of French President-elect Emmanuel Macron contain phishing links pointing to domains associated with Fancy Bear, the hacking group also known as APT28 that has been linked to Russian intelligence agencies, according to the cybersecurity firm Flashpoint. “Flashpoint’s hypothesis [is] that the Macron leak was undertaken by Fancy Bear based on the contents of the dump itself, as well as the current and historic political environment in which this attack took place,” said Vitali Kremez, research director for Flashpoint. The same group was blamed for hacking Hillary Clinton’s campaign and the Democratic National Committee in 2016, and researchers have recently linked other high-profile phishing attempts to the group. “These domains were likely registered and deployed in the phishing emails in order to harvest the login credentials of Macron campaign personnel,” Kremez said. “These credentials could have provided hackers with the information needed to obtain the documents in the […]
The post Macron leaks contained phishing links to domains associated with APT28, researchers say appeared first on Cyberscoop.