Actor
high
threat
Sandworm-Linked UAC-0145 Targets IT Professionals via Fake Recruitment and Backdoored VPN
1 rule 3 TTPs 1 IOCThe threat actor UAC-0145 (Sandworm) is targeting IT professionals with a recruitment-themed social engineering campaign that directs victims to install a malicious, backdoored WireGuard VPN client capable of arbitrary command execution.
UAC-0145
1r
3t
1i
high
threat
UAC-0145 Uses ClickFix CAPTCHAs to Distribute Data-Stealing Malware
2 rules 9 TTPsRussian state-sponsored threat actor UAC-0145 (Sandworm sub-cluster) is actively targeting Ukrainian organizations by using fake ClickFix CAPTCHAs on compromised websites to trick users into executing malicious PowerShell commands, leading to the deployment of data-stealing malware on Windows and Android devices.
UAC-0145
malware
state-sponsored
data-theft
social-engineering
windows
android
ukraine
backdoor
2r
9t