NCSC and partners expose Russian state-supported LAUNDRY BEAR for a zero-click phishing campaign against Western organisations. Review the advisory and harden mail and identity controls now.Cyber Resilience desk
Sources (1)
- ncsc_uk · ncsc_uk
What this means for you — CISO:Review the NCSC joint advisory on LAUNDRY BEAR for the zero-click phishing TTPs and validate email, browser, and endpoint controls against them. Brief relevant stakeholders if your organisation matches the Western targeting profile.
What this means for you — Lean IT orgs:A Russian state-backed group is running zero-click phishing against Western organisations. Keep phones, PCs, and email apps fully updated and report odd prompts or unexpected account behaviour to whoever handles your IT.
What this means for you — MSP:Map the LAUNDRY BEAR TTPs and indicators from the NCSC advisory across client email gateways and endpoint stacks. Flag Western-org clients in scope for tighter mail-flow and identity monitoring.
What this means for you — Researcher:Pull the NCSC and partners advisory on LAUNDRY BEAR for the zero-click phishing technique details, infrastructure, and attribution notes for tracking and comparison to prior Russian state campaigns.