The UAC-0200 hacking group resurfaces in the cyber threat arena, targeting the defense industry sector and the Armed Forces of Ukraine using DarkCrystal RAT (DCRAT).
CERT-UA has identified a surge in targeted cyber-attacks against defense industry employees and individual members of the Armed Forces of Ukraine.
The UAC-0200 hacking collective has been linked to previous cyber-attacks using similar offensive tools and the Signal messenger to spread the DarkCrystal RAT malware.
The use of popular messengers creates uncontrolled communication channels that bypass security measures, requiring heightened responsiveness from defenders.