Microsoft says it has seized control of seven domains belonging to Russian GRU -linked, state-sponsored threat group Strontium. The group, also known as APT28 and Fancy Bear, used the domains to target Ukrainian institutions, Microsoft says. Microsoft says the group was trying to establish persistent access or establish backdoors in its targeted systems. The aim of this move may have been to provide tactical support for Russia’s physical invasion into Ukraine and to exfiltrate sensitive information, the tech giant says.”]
Source: https://www.govinfosecurity.com/microsoft-seizes-russian-domains-targeting-ukraine-a-18870

