logo

Operation BugDrop: CyberX Discovers Large-Scale Cyber-Reconnaissance Operation Targeting Ukrainian Organizations

ID: 550c4045-125d-4015-bfdc-cca042d382d8

STIX ID: report--550c4045-125d-4015-bfdc-cca042d382d8

Threat Score

85/100

Uploaded: 2026-08-19

Published Date: 2017-03-07

Last Modified Date: 2017-03-07

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Operation BugDrop is a large-scale, targeted cyber-reconnaissance campaign discovered by CyberX that primarily targeted Ukrainian critical infrastructure, media, and research organizations. The attackers used spear-phishing with malicious Office macros to deploy a multi-stage reflective-DLL malware loader, delivered modular data-stealing plugins (microphone recorder, keylogger, file and browser collectors), used Dropbox for encrypted exfiltration, and employed multiple anti-analysis and persistence techniques; the report includes compilation dates, geographic targeting, technical architecture, and SHA-256 hashes for identified components.