Operation Potao Express
0 incidentes
0 paises
0 sectores
apt RU Ultimo: -
Operation Potao Express is a cyber espionage campaign first documented in 2011 and attributed to the Turla group, a Russian state-sponsored threat actor linked to the Federal Security Service (FSB). The primary motivation for this campaign is intelligence collection, specifically the theft of sensitive information from targeted entities. This operation is distinguished by its use of the custom-developed 'Potao' malware and its connection to a trojanized version of the TrueCrypt encryption software, distributed via a Russian-language website to selected victims.