Skip to content

At The Identity Organisation, we're here to help!

    Your privacy is important to us, and we want to communicate with you in a way which has your consent and which is in line with UK Law on data protection. As a result of a change in UK law on 25th May 2018, by providing us with your personal details you consent to us processing your data in line with current GDPR requirements.

    Here is where you can review our Privacy & GDPR Statement

    To remove consent at any time, please e-mail info@tidorg.com with the word "unsubscribe" as the subject.

    +44 (0) 1628 308038 info@tidorg.com

    Russian Threat Actor Launches Spear Phishing Attacks Against French Diplomats

    France’s cybersecurity agency ANSSI has issued an alert outlining a Russian spear phishing campaign targeting French diplomats, the Record reports.

    The agency attributes the campaign to “Nobelium,” a threat actor tied to Russia’s Foreign Intelligence Service (the SVR).

    “Most of Nobelium campaigns against diplomatic entities use compromised legitimate email accounts belonging to diplomatic staff and conduct phishing campaigns against diplomatic institutions, embassies, and consulates,” ANSSI’s advisory says.

    “These activities are also publicly described as a campaign called “Diplomatic Orbiter”. The lure documents used in these attacks are typically forged to target diplomatic staff. The operators attempt to deliver their own private loaders, in order to execute public tools such as Cobalt Strike or Brute Ratel C4, to access the victim’s network, ensure persistence, and exfiltrate valuable intelligence. However, several IT companies have also reported that they have been targeted by Nobelium’s operators in late 2023 and 2024.”

    ANSSI says Nobelium has been targeting French diplomatic entities and embassies for espionage purposes over the past several years. The threat actor uses convincingly crafted phishing documents tailored to deceive specific individuals.

    “ANSSI and C4 members consider that the imputation of these activities against French diplomatic entities to Nobelium is consistent,” the agency says. “The tools and infrastructures employed by the attackers show similarities with other Nobelium-linked campaigns.

    The victims of these activities aiming to exfiltrate strategic intelligence are consistent with the usual targeting associated with Nobelium by other observers. The capabilities implemented to compromise such a vast number of email accounts, the persistence of the attacks, the efforts put into the forgery of lure documents indicate that Nobelium is almost certainly operated on behalf of a state actor.”

    New-school security awareness training can give your organization an essential layer of defense against these attacks. KnowBe4 empowers your workforce to make smarter security decisions every day. Over 65,000 organizations worldwide trust the KnowBe4 platform to strengthen their security culture and reduce human risk.

    The Record has the story.


    Free Phishing Security Test

    Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.

    Here’s how it works:

    • Immediately start your test for up to 100 users (no need to talk to anyone)
    • Select from 20+ languages and customize the phishing test template based on your environment
    • Choose the landing page your users see after they click
    • Show users which red flags they missed, or a 404 page
    • Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
    • See how your organization compares to others in your industry

    PS: Don’t like to click on redirected buttons? Cut & Paste this link in your browser: https://info.knowbe4.com/phishing-security-test-partner?partnerid=001a000001lWEoJAAW

    Sign Up to the TIO Intel Alerts!

    Back To Top