{"id":10615,"date":"2022-01-15T00:00:00","date_gmt":"2022-01-15T00:00:00","guid":{"rendered":"http:\/\/localhost\/cyber-operations\/targeting-of-ukrainian-government-and-information-technology-it-sector-systems-with-whispergate-malware\/"},"modified":"2022-01-15T00:00:00","modified_gmt":"2022-01-15T00:00:00","slug":"targeting-of-ukrainian-government-and-information-technology-it-sector-systems-with-whispergate-malware","status":"publish","type":"post","link":"https:\/\/www.cfr.org\/cyber-operations\/targeting-of-ukrainian-government-and-information-technology-it-sector-systems-with-whispergate-malware","title":{"rendered":"Targeting of Ukrainian government and information technology (IT) sector systems with WhisperGate malware"},"content":{"rendered":"<p>The Russian Army\u2019s Main Intelligence Directorate (the GRU) used WhisperGate wiper malware on Ukrainian systems on January 13, 2022. The wiper masqueraded as ransomware, offering victims the chance to decrypt their data for a fee, while in reality, the malware wiped the system. The wiper was found on systems throughout Ukraine, including the foreign ministry and networks used by the Ukrainian cabinet.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Russian Army\u2019s Main Intelligence Directorate (the GRU) used WhisperGate wiper malware on Ukrainian systems on January 13, 2022. The wiper masqueraded as ransomware, offering victims the chance to decrypt their data for a fee, while in reality, the malware wiped the system. The wiper was found on systems throughout Ukraine, including the foreign ministry [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_cloudinary_featured_overwrite":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[2],"tags":[],"cyber_operation":[38],"state_sponsor":[141],"victim_category":[63],"victim_government_response":[186],"victim":[176],"class_list":["post-10615","post","type-post","status-publish","format-standard","hentry","category-incident","cyber_operation-data-destruction","state_sponsor-russian-federation","victim_category-government","victim_government_response-unknown","victim-ukraine"],"acf":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts\/10615","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/comments?post=10615"}],"version-history":[{"count":0,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts\/10615\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/media?parent=10615"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/categories?post=10615"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/tags?post=10615"},{"taxonomy":"cyber_operation","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/cyber_operation?post=10615"},{"taxonomy":"state_sponsor","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/state_sponsor?post=10615"},{"taxonomy":"victim_category","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim_category?post=10615"},{"taxonomy":"victim_government_response","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim_government_response?post=10615"},{"taxonomy":"victim","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim?post=10615"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}