{"id":20280,"date":"2026-05-14T14:00:37","date_gmt":"2026-05-14T14:00:37","guid":{"rendered":"https:\/\/sekuritasit.com\/index.php\/2026\/05\/14\/ghostwriter-targets-ukrainian-government-with-geofenced-pdf-phishing-cobalt-strike-infothehackernews-com-the-hacker-news\/"},"modified":"2026-05-14T14:00:37","modified_gmt":"2026-05-14T14:00:37","slug":"ghostwriter-targets-ukrainian-government-with-geofenced-pdf-phishing-cobalt-strike-infothehackernews-com-the-hacker-news","status":"publish","type":"post","link":"https:\/\/sekuritasit.com\/index.php\/2026\/05\/14\/ghostwriter-targets-ukrainian-government-with-geofenced-pdf-phishing-cobalt-strike-infothehackernews-com-the-hacker-news\/","title":{"rendered":"Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt Strike info@thehackernews.com (The Hacker News)"},"content":{"rendered":"<p>The Belarus-aligned threat group known as Ghostwriter has been attributed to a fresh set of attacks targeting governmental organizations in Ukraine.<br \/>\nActive since at least 2016, Ghostwriter has been linked to both cyber espionage and influence operations targeting neighboring countries, particularly Ukraine. It&#8217;s also tracked under the monikers FrostyNeighbor, PUSHCHA, Storm-0257, TA445, UAC\u20110057<a href=\"https:\/\/thehackernews.com\/2026\/05\/ghostwriter-targets-ukrainian.html\" target=\"_blank\" class=\"feedzy-rss-link-icon\">Read More<\/a>\u00a0<\/p>","protected":false},"excerpt":{"rendered":"<p>The Belarus-aligned threat group known as Ghostwriter has been attributed to a fresh set of attacks targeting governmental organizations in Ukraine. Active since at least 2016, Ghostwriter has been linked to both cyber espionage and influence operations targeting neighboring countries, particularly Ukraine. It&#8217;s also tracked under the monikers FrostyNeighbor, PUSHCHA, Storm-0257, TA445, UAC\u20110057Read More\u00a0<\/p>\n","protected":false},"author":1,"featured_media":20281,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-20280","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/posts\/20280","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/comments?post=20280"}],"version-history":[{"count":0,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/posts\/20280\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/media\/20281"}],"wp:attachment":[{"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/media?parent=20280"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/categories?post=20280"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sekuritasit.com\/index.php\/wp-json\/wp\/v2\/tags?post=20280"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}