Russian state-sponsored threat group APT28 has been observed deploying a new backdoor malware named NotDoor, specifically targeting Microsoft Outlook users. This sophisticated cyber espionage campaign aims to infiltrate high-profile organizations by exploiting vulnerabilities in email clients. NotDoor operates stealthily, allowing attackers to maintain persistent access and exfiltrate sensitive data without detection. The malware's design indicates a focus on espionage rather than financial gain, aligning with APT28's known objectives. Security experts emphasize the importance of patching Outlook vulnerabilities and implementing robust email security protocols to mitigate such threats. Organizations are urged to monitor network traffic for unusual patterns and employ advanced threat detection systems to identify and respond to NotDoor activities promptly. This incident highlights the evolving tactics of state-sponsored actors in leveraging trusted communication platforms for cyberattacks, underscoring the need for continuous vigilance and cybersecurity investment.
This Cyber News was published on www.infosecurity-magazine.com. Publication date: Wed, 03 Sep 2025 12:50:05 +0000