Russian Hackers Deploy HATVIBE and CHERRYSPY Malware Across Europe and Asia
Russian-affiliated threat actors have been implicated in a cyber espionage campaign targeting Central Asian, East Asian, and European organizations.
The activity cluster, which has been given the moniker TAG-110 by Recorded Future's Insikt Group, coincides with a threat group that the Computer Emergency Response Team of Ukraine (CERT-UA) tracks as UAC-0063, which overlaps with APT28. Since at least 2021, the hacker team has been in operation.
According to a report released by the cybersecurity firm on Thursday, TAG-110 mostly targets government agencies, human rights organizations, and educational institutions using the proprietary malware tools HATVIBE and CHERRYSPY. HATVIBE serves as a loader for CHERRYSPY, a Python backdoor for espionage and data exfiltration read more about Russ...


