The government computer emergency response team CERT-UA, operating under State Special Communications, has warned of a new cyberattack on institutions and organizations in Ukraine using the Remote Utilities program.
This is stated in the department’s statement, reports Ukrinform.
CERT-UA experts recorded the mass distribution of dangerous e-mails that appeared to come from the Ukraine’s National Security and Defense Council Device. They have the topic “RE: Security Critical Update” and an attachment in the form of a RAR archive called “KB5017371 security system update.rar”.
The message states that the archive contains a fake image “Important instruction to read.jpg” and a split archive containing the executable “KB5017371.exe”.
Downloading, extracting and running the archive content will install a legitimate Remote Utilities program on your computer. It provides confidential remote access to the device to third parties.
Detected activity is tracked by the identifier UAC-0096.
As reported by Ukrinform, Ukraine repels up to 40 powerful cyber attacks.