Tag: Russian Cybercrime

Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW Protections
News

Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW Protections

The SmokeLoader virus was distributed in the open by taking advantage of a recently fixed security flaw in the 7-Zip archiver program. The vulnerability, CVE-2025-0411 (CVSS score: 7.0), enables remote attackers to run arbitrary code within the current user's context and get around mark-of-the-web (MotW) protections. In November 2024, 7-Zip released version 24.09 to address it. According to Peter Girnus, a security researcher at Trend Micro, Russian cybercriminal organizations actively took use of the vulnerability through spear-phishing campaigns, spoofing document extensions with homoglyph attacks to fool users and the Windows OS into running malicious files read more about Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW Protections. Get up to date on the...
Four REvil Ransomware Members Sentenced in Rare Russian Cybercrime Convictions
News

Four REvil Ransomware Members Sentenced in Rare Russian Cybercrime Convictions

One of the few times Russian hackers have been found guilty of hacking and money laundering crimes is the sentencing of four members of the now-defunct REvil ransomware enterprise to several years in prison. A court in St. Petersburg found Artem Zaets, Alexei Malozemov, Daniil Puzyrevsky, and Ruslan Khansvyarov guilty of illegally circulating means of payment, according to the Russian news agency Kommersant. Additionally, Puzyrevsky and Khansvyarov were convicted of using and disseminating malware. Consequently, Zaets and Malozemov received prison terms of 4.5 and 5 years, respectively. Both Khansvyarov and Puzyrevsky were sentenced to 5.5 and 6 years in prison, respectively. The four members are among the 14 others who were first arrested in relation to the case read more about ...