Countermeasures

Justice Department, Microsoft disrupt Russian intelligence cyber scheme

The Justice Department recently unsealed a warrant authorizing the seizure of 41 internet domains used by Russian intelligence agents and their proxies to commit computer fraud and abuse in the United States.

“Today’s seizure of 41 internet domains reflects the Justice Department’s cyber strategy in action – using all tools to disrupt and deter malicious, state-sponsored cyber actors,” Deputy Attorney General Lisa Monaco said on Oct. 3. “The Russian government ran this scheme to steal Americans’ sensitive information, using seemingly legitimate email accounts to trick victims into revealing account credentials.”

The seized domains were used by hackers belonging to, or criminal proxies working for, the “Callisto Group,” an operational unit within Center 18 of the Russian Federal Security Service, according to the partially unsealed affidavit.  The domains were used to cause damage to protected computers, gain unauthorized access to protected computers to obtain information, and gain unauthorized access to computers to obtain information from a U.S. department or agency.

Working in conjunction with the Justice Department, Microsoft announced the filing of a civil action to seize 66 internet domains also used by Callisto Group actors. Microsoft Threat Intelligence tracks this group as “Star Blizzard” (formerly SEABORGIUM, also known as COLDRIVER). Between January 2023 and August 2024, Microsoft observed Star Blizzard target over 30 civil society entities and organizations – journalists, think tanks, and nongovernmental organizations – by deploying spear-phishing campaigns to exfiltrate sensitive information and interfere in their activities.

“With the continued support of our private sector partners, we will be relentless in exposing Russian actors and cybercriminals and depriving them of the tools of their illicit trade,” Monaco said.

The Justice Department’s National Security Cyber Section of the National Security Division and the U.S. Attorney’s Office for the Northern District of California are prosecuting the case.

Melina Druga

Recent Posts

CBP seizes $23M worth of at Pharr–Reynosa International Bridge

U.S. Customs and Border Protection (CBP), Office of Field Operations, officers intercepted more than $23…

15 hours ago

Chinese man accused of hacking arrested in Italy

Xu Zewei, a Chinese national wanted on a nine-count indictment in the Southern District of…

2 days ago

Plan elevates American agricultural security to national security

U.S. Agriculture Secretary Brooke Rollins joined U.S. Secretary of Defense Pete Hegseth, U.S. Attorney General…

2 days ago

Boeing awarded $2.8B contract satellite development program

The U.S. Space Force recently awarded Virginia-based Boeing, a global aerospace company, a $2.8 billion…

3 days ago

Senators introduce legislation guaranteeing military right to repair equipment

U.S. Sens. Elizabeth Warren (D-MA) and Tim Sheehy (R-MT) have introduced legislation that would require…

3 days ago

Republicans celebrate passage of One Big, Beautiful Bill Act

U.S. Reps. Mark Green (R-TN), Committee on Homeland Security chairman, and Michael Guest (R-MS), Subcommittee…

4 days ago

This website uses cookies.