{"id":21650,"date":"2025-03-01T07:00:00","date_gmt":"2025-03-01T05:00:00","guid":{"rendered":"https:\/\/forklog.com\/en\/us-halts-cyber-offensive-against-russia-fake-web3-jobs-and-other-cybersecurity-developments\/"},"modified":"2025-03-01T07:00:00","modified_gmt":"2025-03-01T05:00:00","slug":"us-halts-cyber-offensive-against-russia-fake-web3-jobs-and-other-cybersecurity-developments","status":"publish","type":"post","link":"https:\/\/u1f987.com\/en\/us-halts-cyber-offensive-against-russia-fake-web3-jobs-and-other-cybersecurity-developments\/","title":{"rendered":"US halts cyber offensive against Russia, fake Web3 jobs and other cybersecurity developments"},"content":{"rendered":"<p>We have compiled the week\u2019s most important cybersecurity news.<\/p>\n<div class=\"wp-block-text-wrappers-keypoints article_keypoints\">\n<ul class=\"wp-block-list\">\n<li>Media report an order to halt a US cyber offensive against Russia.<\/li>\n<li>Crypto was stolen from job seekers via fake software.<\/li>\n<li>Sweden and France to consider amendments enabling the breaking of messenger encryption.<\/li>\n<li>Microsoft announced the closure of Skype.<\/li>\n<\/ul>\n<\/div>\n<h2 class=\"wp-block-heading\"><strong>Media report order to halt US cyber offensive against Russia<\/strong><\/h2>\n<p>US Defense Secretary Pete Hegseth ordered Cyber Command to abandon any planning for offensive action against Russia, including in the digital realm, according to <a href=\"https:\/\/therecord.media\/hegseth-orders-cyber-command-stand-down-russia-planning\">Record<\/a>, which cited three informed sources.<\/p>\n<p>According to the information available, Hegseth passed the instruction to Cyber Command chief General Timothy Ho, who in turn informed the command\u2019s director of operations, Marine Corps Major General Ryan Heritage.<\/p>\n<p>The sources also said the order reportedly does not extend to the National Security Agency and signals intelligence work directed against Russia.<\/p>\n<p>The directive\u2019s full scope remains unclear, as does its precise duration.<\/p>\n<p>Cyber Command has begun compiling a report listing actions or missions slated for suspension, assessing the risks of the decision and potential threats emanating from Russia.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Crypto stolen from job seekers via fake software<\/strong><\/h2>\n<p>The Russian-speaking hacking group Crazy Evil has launched a malicious campaign, GrassCall, targeting professionals seeking work in the Web3 sector, <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/grasscall-malware-campaign-drains-crypto-wallets-via-fake-job-interviews\/\">Bleeping Computer<\/a> reports.<\/p>\n<p>The attackers created X and LinkedIn profiles for a fictitious company, ChainSeeker.io, and placed premium job ads on popular recruitment sites on its behalf.<\/p>\n<p>Applicants were asked to download the GrassCall app supposedly for interviews. In reality, the software installed a stealer that grabbed passwords, cookies and cryptocurrency wallet data.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-qw.googleusercontent.com\/docsz\/AD_4nXdwvt7Kk6rQi6odmJdLM6r39mPoLfFA26flzNRnjj3BnQjEjTCKFrg960TxdOfd8EQIHmqWEY2XKQGTZuFPnKRRPk0rE0gcrlojRgRz8qhGepiJm-yZBNnfpideJpjBipSjXFyPuQ?key=qPxS8E_RbzrxhSB2Qqft9Wbv\" alt=\"US halts cyber offensive against Russia, fake Web3 jobs and other cybersecurity developments\"\/><figcaption class=\"wp-element-caption\">Data: Bleeping Computer.<\/figcaption><\/figure>\n<p>The scam affected hundreds of people. For now, the ads posted by the attackers have been removed.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Telegram fined more than $600,000 in Australia<\/strong><\/h2>\n<p>Australia\u2019s online safety regulator, eSafety, fined Telegram more than $600,000 after the messenger delayed by 160 days providing information on measures to combat terrorism and child abuse material, <a href=\"https:\/\/www.theguardian.com\/technology\/2025\/feb\/24\/australian-esafety-telegram-fine-reporting-delay\">The Guardian<\/a> reports.<\/p>\n<p>The platform has 28 days to appeal the decision, pay the amount or request a deferral.<\/p>\n<p>Meanwhile, in Russia, from February 2022 to February 2025, Roskomnadzor <a href=\"https:\/\/ria.ru\/20250227\/roskomnadzor-2001849119.html\">fined<\/a> Telegram a total of 63.4 million roubles for failing to comply with the agency\u2019s orders, not removing prohibited information and refusing self-moderation.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Sweden and France weigh amendments to break messenger encryption<\/strong><\/h2>\n<p>Sweden\u2019s government could adopt a law as early as March 2026 introducing a so-called backdoor to end-to-end encryption (E2EE) in messaging apps. This would give law enforcement access to users\u2019 confidential data, writes <a href=\"https:\/\/www.theregister.com\/2025\/02\/26\/signal_will_withdraw_from_sweden\/\">The Register<\/a>.<\/p>\n<p>Signal CEO Meredith Whittaker sharply <a href=\"https:\/\/www.svt.se\/nyheter\/inrikes\/signal-lamnar-sverige-om-regeringens-forslag-pa-datalagring-klubbas\">criticised<\/a> the initiative and said the company would shut down business in the country if the law takes effect. In her words, breaking E2EE would make all of the app\u2019s code vulnerable to cyberattacks.<\/p>\n<p>An analogous amendment was <a href=\"https:\/\/tuta.com\/ru\/blog\/france-surveillance-nacrotrafic-law\">adopted<\/a> by France\u2019s Senate and is under review in the National Assembly. It requires encrypted messengers to open access to correspondence within 72 hours upon request. At the same time, local authorities want to ban ISPs and VPN services from providing access to pirate sites.<\/p>\n<p>Privacy-focused email provider Tuta and the VPN Trust Initiative warned that the new laws threaten privacy and personal security.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Access to ChatGPT cut off for several North Korean hackers<\/strong><\/h2>\n<p>OpenAI has <a href=\"https:\/\/cdn.openai.com\/threat-intelligence-reports\/disrupting-malicious-uses-of-our-models-february-2025-update.pdf\">blocked<\/a> several North Korean hacking groups from using the ChatGPT platform. The accounts were detected with information from an industry partner and linked to the gangs Velvet Chollima (also known as Kimsuky, Emerald Sleet) and Stardust Chollima (APT38, Sapphire Sleet).<\/p>\n<p>The cybercriminals used the chatbot to research future targets, attack methods, assistance in writing malicious code and to search for information on cryptocurrencies.<\/p>\n<p>OpenAI threat analysts found that the North Korean actors revealed staging URLs of previously unknown binaries. The information was passed to security researchers to update rules and prevent attacks.<\/p>\n<p>The company also blocked accounts linked to a potential scheme to place North Korean IT specialists in Western organisations.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Suspect in hacks of 90 organisations arrested in Thailand<\/strong><\/h2>\n<p>The Royal Thai Police, together with counterparts in Singapore, arrested in Bangkok a suspect in a series of intrusions, extortion and data leaks affecting more than 90 organisations worldwide. Experts from <a href=\"https:\/\/www.group-ib.com\/media-center\/press-releases\/joint-operation-with-royal-thai-police-and-singapore-police-force\/\">Group-IB<\/a> assisted the investigation.<\/p>\n<p>According to investigators, since 2020 the hacker operated under the aliases ALTDOS, DESORDEN, GHOSTR and 0mid16B. The total volume of data stolen exceeded 13 TB.<\/p>\n<p>If a victim refused to pay, the suspect notified the media or data protection regulators in order to inflict greater reputational and financial damage.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-qw.googleusercontent.com\/docsz\/AD_4nXf6y4DTTL-zRBTwt0CO15Jp2bGzmOUZ6NIBcs13WhkYozk4XtZTU-bu1PFBdeB3gBVBE8tuGO_9WW0_vk8yLCT15UWwW8-dxBoRYZnvQy2Ue1sJqTalLsto20o34ptLWt2_flw6dw?key=qPxS8E_RbzrxhSB2Qqft9Wbv\" alt=\"US halts cyber offensive against Russia, fake Web3 jobs and other cybersecurity developments\"\/><figcaption class=\"wp-element-caption\">Data: Group-IB.<\/figcaption><\/figure>\n<p>During the raid, police seized laptops and luxury items allegedly purchased with criminal proceeds.<\/p>\n<p>The suspect faces multiple charges, including unauthorised access to protected computer systems and data, attempted extortion and illegal residence.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Microsoft announces Skype shutdown<\/strong><\/h2>\n<p>The Skype video-calling service will <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-365\/blog\/2025\/02\/28\/the-next-chapter-moving-from-skype-to-microsoft-teams\/\">cease<\/a> operations on 5 May. Microsoft will end support for the app and focus on developing the free Teams platform.<\/p>\n<p>The latter, like Skype, offers calls, messaging and file sharing. Teams\u2019 advanced features include holding meetings, managing calendars, and creating and joining communities.<\/p>\n<p>The platform\u2019s user base has already reached the hundreds of millions.<\/p>\n<p>To ease migration between the messengers, Microsoft will allow sign-in to Teams using a Skype account.<\/p>\n<p>Also on ForkLog:<\/p>\n<ul class=\"wp-block-list\">\n<li>Pi Network <a href=\"https:\/\/u1f987.com\/en\/news\/pi-network-rebuts-fraud-allegations-by-bybit-ceo\">responded to fraud allegations<\/a> from Bybit\u2019s CEO.<\/li>\n<li>Kyrgyzstan claimed <a href=\"https:\/\/u1f987.com\/en\/news\/kyrgyzstan-links-several-crypto-firms-to-money-laundering\">links between several crypto firms<\/a> and money laundering.<\/li>\n<li>On his birthday, the founder of Mask Network <a href=\"https:\/\/u1f987.com\/en\/news\/cryptocurrency-theft-of-4-million-from-mask-network-founder-on-his-birthday\">had $4 million in crypto stolen<\/a>.<\/li>\n<li>Immunefi: in February, the crypto industry <a href=\"https:\/\/u1f987.com\/en\/news\/immunefi-reports-february-crypto-losses-of-1-53-billion-due-to-bybit-hack\">lost $1.53 billion<\/a> due to the Bybit hack.<\/li>\n<li>The Pump.fun X account was <a href=\"https:\/\/u1f987.com\/en\/news\/pump-funs-x-account-hacked-to-promote-fraudulent-tokens\">hacked<\/a> to promote scam tokens.<\/li>\n<li>The <a href=\"https:\/\/u1f987.com\/en\/news\/fbi-confirms-north-korean-involvement-in-bybit-hack\">FBI<\/a>, following <a href=\"https:\/\/u1f987.com\/en\/news\/arkham-says-lazarus-group-behind-bybit-hack\">Arkham<\/a>, confirmed North Korea\u2019s involvement in the Bybit hack.<\/li>\n<li>Binance\u2019s founder <a href=\"https:\/\/u1f987.com\/en\/news\/binance-founder-criticizes-safes-report-on-bybit-hack\">criticised<\/a> Safe\u2019s report on a wallet infrastructure <a href=\"https:\/\/u1f987.com\/en\/news\/safe-infrastructure-vulnerability-blamed-for-bybit-breach\">vulnerability<\/a> in the context of the Bybit hack.<\/li>\n<li>The US Department of Justice <a href=\"https:\/\/u1f987.com\/en\/news\/us-justice-department-announces-extradition-of-gotbit-founder\">announced the extradition<\/a> of Gotbit\u2019s founder.<\/li>\n<li>Searches <a href=\"https:\/\/u1f987.com\/en\/news\/raids-conducted-in-moldovan-cities-over-cryptocurrency-exchange-fraud\">began<\/a> in cities across Moldova over a crypto-exchange fraud case.<\/li>\n<li>Fake software on GitHub netted hackers <a href=\"https:\/\/u1f987.com\/en\/news\/fake-software-on-github-nets-hackers-485000-in-bitcoin-from-a-single-attack\">$485,000<\/a> in bitcoin from a single attack.<\/li>\n<li>SMS scammers <a href=\"https:\/\/u1f987.com\/en\/news\/sms-scammers-target-binance-users-with-fake-hacker-alerts\">targeted<\/a> Binance users with \u2018warnings\u2019 about hackers.<\/li>\n<li>The Bybit hackers <a href=\"https:\/\/u1f987.com\/en\/news\/bybit-hackers-launder-113-million-in-a-day\">laundered $113 million<\/a> in a day.<\/li>\n<li>A user lost more than $760,000 due to <a href=\"https:\/\/u1f987.com\/en\/news\/user-loses-over-760000-due-to-address-poisoning\">\u2018address poisoning\u2019<\/a>.<\/li>\n<li>Russia has launched <a href=\"https:\/\/u1f987.com\/en\/news\/russia-initiates-crackdown-on-dropovods-and-crypto-exchanges\">inspections of \u2018drop facilitators\u2019<\/a> and crypto exchangers.<\/li>\n<li>Adam Back linked the Bybit hack to <a href=\"https:\/\/u1f987.com\/en\/news\/adam-back-attributes-bybit-hack-to-evm-flaws\">shortcomings in the EVM<\/a>.<\/li>\n<li>US authorities <a href=\"https:\/\/u1f987.com\/en\/news\/us-authorities-seize-31-million-in-crypto-linked-to-uranium-finance-hack\">seized<\/a> $31 million in crypto assets tied to the Uranium Finance hack.<\/li>\n<li>An expert explained how scammers <a href=\"https:\/\/u1f987.com\/en\/news\/expert-reveals-how-scammers-exploit-trading-bots\">\u2018kill\u2019<\/a> trading bots.<\/li>\n<li>The Garantex crypto exchange was <a href=\"https:\/\/u1f987.com\/en\/news\/eu-sanctions-target-russian-crypto-exchange-garantex\">added<\/a> to the EU sanctions list.<\/li>\n<li>Bybit <a href=\"https:\/\/u1f987.com\/en\/news\/bybit-blocks-meme-token-linked-to-lazarus-group\">blocked<\/a> a Lazarus-linked meme token and fully <a href=\"https:\/\/u1f987.com\/en\/news\/bybit-restores-ethereum-reserves-following-hack\">restored its reserves<\/a>.<\/li>\n<li>The stablecoin bank <a href=\"https:\/\/u1f987.com\/en\/news\/infini-stablecoin-bank-hacked-for-49-5-million-usdc\">Infini was hacked<\/a> for 49.5 million USDC.<\/li>\n<li>Experts spoke out <a href=\"https:\/\/u1f987.com\/en\/news\/experts-oppose-ethereum-rollback\">against an Ethereum \u2018rollback\u2019<\/a>.<\/li>\n<\/ul>\n<h2 class=\"wp-block-heading\"><strong>What to watch this weekend?<\/strong><\/h2>\n<p>A fresh episode of \u2018Podcast Society\u2019 in which Web3 entrepreneur Vladimir Menaskop dissects the details of the largest Bybit breach in an attempt to understand who was behind it and whether the incident could have been prevented.<\/p>\n<p><iframe loading=\"lazy\" width=\"560\" height=\"315\" src=\"https:\/\/www.youtube.com\/embed\/tYL-CNzVCVs?si=1P5jKfGXvTgq4auO\" title=\"YouTube video player\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe><\/p>\n","protected":false},"excerpt":{"rendered":"<p>We have compiled the week\u2019s most important cybersecurity news. Media report an order to halt a US cyber offensive against Russia. Crypto was stolen from job seekers via fake software. Sweden and France to consider amendments enabling the breaking of messenger encryption. Microsoft announced the closure of Skype. Media report order to halt US cyber [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":21649,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"","news_style_id":"","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1238,1233],"class_list":["post-21650","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-cybersecurity-digest","tag-industry-digests"],"aioseo_notices":[],"amp_enabled":true,"views":"44","promo_type":"","layout_type":"","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/21650","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/comments?post=21650"}],"version-history":[{"count":0,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/21650\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media\/21649"}],"wp:attachment":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media?parent=21650"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/categories?post=21650"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/tags?post=21650"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}