UAC-0099
UAC-0099 is a threat actor that has been active since at least May 2023, targeting Ukrainian entities. They have been observed using a known WinRAR vulnerability to carry out attacks, indicating a level of sophistication. The actor relies on PowerShell and the creation of scheduled tasks to execute malicious VBS files for initial infection. Monitoring and limiting the functionality of these… Fuente: MISP
Actividad en Jábega · 12 semanas
1 noticias · vista por primera vez el 8 oct 2026 · la última, el 8 oct 2026
Noticias
- UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTMLThe Hacker News · 8 oct 2026
Relaciones por coaparición en noticias, no atribución. Fuentes: MISP galaxy y SigmaHQ.