cert-ua-records-new-cyberattack-tactics-and-ai-use-against-ukraine-state-special-communications-service

CERT-UA records new cyberattack tactics and AI use against Ukraine - State Special Communications Service

 • 3006 переглядiв

The State Special Communications Service reported that in the first half of 2025, CERT-UA recorded a number of new activities in cyberattacks against Ukraine – the enemy is changing tactics and attracting "fresh blood", and also beginning to use complex tools for data theft. This is reported by UNN with reference to the State Special Communications Service.

Details

In the analytical report "Russian Cyber Operations" for the first half of 2025, the State Special Communications Service states a radical change in tactics, techniques and procedures by the attackers. According to CERT-UA specialists, these changes indicate a decrease in the effectiveness of established attack methods – probably due to increased resistance from the Ukrainian side – so the enemy is experimenting with new approaches and personnel.

Cyber specialists of the DIU paralyzed the work of the Russian fast payment banking system - source25.09.25, 12:12 • [views_3673]

The document of the State Special Communications Service describes in detail several groups, including the group designated UAC-0219. This group uses the malicious tool WRECKSTEEL, capable of stealing files with predefined extensions and taking screenshots, which are then uploaded to the attackers' servers. CERT-UA also notes that the attackers are likely using artificial intelligence to generate PowerShell scripts, which increases the speed and flexibility of attacks.

The report emphasizes that the activation of "fresh" operators and the modernization of tools make attacks more variable – this requires the cybersecurity sector to adapt methods of detecting and preventing incidents. CERT-UA calls on government agencies and the private sector to strengthen monitoring, update response procedures, and promptly apply indicators of compromise from the analytical report.

CERT-UA detected cyberattacks on the Defense Forces via malicious XLL files01.10.25, 16:41 • [views_2810]

Popular
Kyivteploenergo employee dies while unloading generator in Kyiv

 • 4802 переглядiв

Raids on nail salons in five German regions - DW

 • 7958 переглядiв

US could attack Iran within 24 hours – Reuters

 • 3558 переглядiв

Russian tanker seized by US enters UK waters

 • 5624 переглядiв

News by theme
Sumy-Kyiv train to change route due to threat of Russian attacks: possible delays

 • 3684 переглядiв

Switzerland restricts protection status for Ukrainians from certain regions

 • 13993 переглядiв

Kalchyk River in Mariupol turned into a swamp due to sewage discharge - city council

 • 2585 переглядiв

Mayor of Vyshhorod suspected of embezzling over UAH 6.6 million in budget funds

 • 3541 переглядiв

Man brutally murdered 16-year-old girl in Kirovohrad region - National Police

 • 2463 переглядiв