Fire and cyber in Ukraine. Stone Panda (Cicada, APT10) expands its interests. Bogus e-commerce sites harvest banking credentials. Advice and guidance from CISA

Published: April 6, 2022, 8:15 p.m.

b"There\\u2019s a maneuver lull in Russia\\u2019s hybrid war against Ukraine, but fire and cyber ops continue. The US provides cyber assistance to Ukraine. The Cicada call of Stone Panda. Phony e-commerce sites seek to harvest banking credentials. CISA offers some advice and some guidance. Hydra Market sanctioned. Awais Rashid from Bristol University on anonymous communication systems. Our guest is Armaan Mahbod of DTEX Systems with a look at supermalicious insiders. And the most popular password is...\\n\\nFor links to all of today's stories check out our CyberWire daily news briefing:\\nhttps://thecyberwire.com/newsletters/daily-briefing/11/66\\n\\nSelected reading.\\nRussian military \\u2018weeks\\u2019 from being ready for new push as war takes its toll (The Telegraph)\\nRussia's failure to take down Kyiv was a defeat for the ages (AP NEWS)\\nU.S. Cyber Command providing cyber expertise and intelligence in Ukraine's fight against Russia (FedScoop)\\xa0\\nCyber Command chief: U.S. has 'stepped up' to protect Ukraine's networks (The Record by Recorded Future)\\xa0\\nHow Ukraine has defended itself against cyberattacks \\u2013 lessons for the US (FIU News)\\xa0\\nCicada: Chinese APT Group Widens Targeting in Recent Espionage Activity (Symantec)\\xa0\\nFake e\\u2011shops on the prowl for banking credentials using Android malware (WeLiveSecurity)\\xa0\\nCISA adds Spring4Shell vulnerability, Apple zero-days to exploited catalog (The Record by Recorded Future)\\xa0\\nLifePoint Informatics Patient Portal (CISA)\\xa0\\nRockwell Automation ISaGRAF (CISA)\\xa0\\nJohnson Controls Metasys (CISA)\\xa0\\nPhilips Vue PACS (Update A) (CISA)\\nTreasury Sanctions Russia-Based Hydra, World\\u2019s Largest Darknet Market, and Ransomware-Enabling Virtual Currency Exchange Garantex (U.S. Department of the Treasury)\\nMost Common Passwords 2022 - Is Yours on the List? (CyberNews)"