Cybersecurity SINGLE SOURCE
UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML
First reported Source: The Hacker NewsLast editorial activity
What happened
The Russia-aligned threat actor (the person or group behind an attack) known as UAC-0099 has been attributed to a previously undocumented .NET infostealer and remote access trojan (RAT) codenamed ASHVEIN. According to TrendAI, the malware (software written to damage a system or steal from it) has been put to use in attacks targeting Ukrainian government personnel. The cybersecurity company is tracking the cluster under the name Earth Sirrush (previously SHADOW-EARTH-065).
Sources & evidence
- The Hacker News Reporting source
UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML ↗
https://thehackernews.com/2026/10/uac-0099-targets-ukrainian-government.html