Operation BugDrop: CyberX Discovers Large-Scale Cyber-Reconnaissance Operation Targeting Ukrainian Organizations
ID: 550c4045-125d-4015-bfdc-cca042d382d8
STIX ID: report--550c4045-125d-4015-bfdc-cca042d382d8
Threat Score
85/100
Uploaded: 2026-08-19
Published Date: 2017-03-07
Last Modified Date: 2017-03-07
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Operation BugDrop is a large-scale, targeted cyber-reconnaissance campaign discovered by CyberX that primarily targeted Ukrainian critical infrastructure, media, and research organizations. The attackers used spear-phishing with malicious Office macros to deploy a multi-stage reflective-DLL malware loader, delivered modular data-stealing plugins (microphone recorder, keylogger, file and browser collectors), used Dropbox for encrypted exfiltration, and employed multiple anti-analysis and persistence techniques; the report includes compilation dates, geographic targeting, technical architecture, and SHA-256 hashes for identified components.
