Moscow poorly served by its intelligence services, say London and Washington. Cyber phases of the hybrid war. A new zero-day, and some resurgent criminal activity.

Published: March 31, 2022, 8:15 p.m.

Russian cyber operators collect against domestic targets. More details on the Viasat hack. Ukrainian hacktivists say they can interfere with Russian geolocation. Spring4shell is another remote-code-execution problem. The Remcos Trojan is seeing a resurgence. Malicious links distributed via Calendly. Johannes Ullrich from SANS on attack surface detection. Our guest is Fleming Shi from Barracuda on cybersecurity champions. Phishing with \u201cemergency data requests.\u201d Lapsus$ may be back from vacation.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/11/62\n\nSelected reading.\nVladimir Putin is being lied to by his advisers, says GCHQ (The Telegraph)\xa0\nU.S. intelligence suggests that Putin\u2019s advisers misinformed him on Ukraine. (New York Times)\xa0\nWhite House: Intel shows Putin misled by advisers on Ukraine (AP NEWS)\xa0\nRussian troops sabotaging their own equipment and refusing orders in Ukraine, UK spy chief says (CNBC)\xa0\nPhishing campaign targets Russian govt dissidents with Cobalt Strike (BleepingComputer)\xa0\nKA-SAT Network cyber attack overview (Viasat.com)\xa0\nTracking cyber activity in Eastern Europe (Google)\nUkrainian Hackers Take Aim at Russian Artillery, Navigation Signals (Defense One)\xa0\nRussian efforts in Ukraine have not yet spilled over into cyberattacks on US, says lawmaker (C4ISRNet)\nNew Spring Framework RCE\xa0Vulnerability Confirmed - What to do? (Sonatype)\xa0\nNew Spring4Shell Zero-Day Vulnerability Confirmed: What it is and how to be prepared (Contrast Security)\nSpring Core on JDK9+ is vulnerable to remote code execution (Praetorian)\xa0\nSpring4Shell: No need to panic, but mitigations are advised (Help Net Security)\xa0\nRemcos Trojan: Analyzing the Attack Chain (Morphisec)\xa0\nApple and Meta Gave User Data to Hackers Who Used Forged Legal Requests (Bloomberg)\xa0\nFresh Phish: Phishers Schedule Victims on Calendar App (INKY)\xa0\nLapsus$ claims Globant as its latest breach victim (TechCrunch)\nLearn more about your ad choices. Visit megaphone.fm/adchoices