Back to News
Cybersecurity

Russia's Star Blizzard Expands Phishing Tactics with New 'RedFlick' Approach

Russia's APT group Star Blizzard has shifted its phishing strategy to target Ukrainian-linked entities using a new method called 'RedFlick.'

In a recent development, the Russian APT actor known as Star Blizzard has introduced a new phishing tactic named 'RedFlick' to target Ukrainian-linked organizations, including NGOs, think tanks, and journalists. This shift from their previous method, ClickFix, aims to enhance the deployment of their CosmicPulse backdoor, allowing them to infiltrate systems more effectively. The adoption of RedFlick suggests a strategic pivot in their operations, potentially indicating an increased focus on information warfare against Ukraine amid ongoing geopolitical tensions.

For businesses, particularly those engaged in international relations or operating in high-risk sectors, the implications are significant. Organizations need to bolster their cybersecurity measures, particularly against phishing attacks, which are becoming increasingly sophisticated. This includes training employees to recognize phishing attempts, implementing robust email filtering solutions, and ensuring that incident response plans are in place. The evolving tactics of threat actors like Star Blizzard underscore the necessity for proactive cybersecurity strategies, making it crucial for companies to stay informed about emerging threats and adapt their defenses accordingly. This development not only highlights the growing intersection of cybersecurity and geopolitical dynamics but also serves as a reminder of the persistent and evolving nature of cyber threats in today's landscape.

---

*Originally reported by [Dark Reading](https://www.darkreading.com/threat-intelligence/russia-star-blizzard-apt-ditches-clickfix-widen-phishing-net)*