Ukrainian Cyber Alliance

Also known as: UCA, Ukrainian Cyber Alliance

Cyber Alliance is a hacktivist group that has demonstrated capabilities in exploiting vulnerabilities, such as CVE-2023-22515 in Confluence, to escalate privileges and access targeted infrastructure. They successfully accessed Trigonaโ€™s systems, exfiltrating sensitive data and ultimately defacing and deleting the organizationโ€™s site.

๐ŸŒ Country Ukraine

Introduction

Cyber Alliance is a hacktivist group that has demonstrated capabilities in exploiting vulnerabilities, such as CVE-2023-22515 in Confluence, to escalate privileges and access targeted infrastructure. They successfully accessed Trigonaโ€™s systems, exfiltrating sensitive data and ultimately defacing and deleting the organizationโ€™s site.

Activities and Tactics

Country of Origin: ๐Ÿ‡บ๐Ÿ‡ฆ Ukraine

Notable Campaigns

Information pending cataloguing.

Tactics, Techniques, and Procedures (TTPs)

Information pending cataloguing.

Notable Indicators of Compromise (IOCs)

No curated IOCs are currently published for this actor. This section will be updated when stable, attributable indicators are available.

Malware and Tools

  • CyberGate
  • Cyber Eye RAT
  • Xploit

Attribution and Evidence

Country of Origin: Ukraine Additional attribution information pending cataloguing.

References

References pending cataloguing.