The cyberespionage group blamed for hacking into the Democratic National Committee (DNC) earlier this year also infiltrated the Ukrainian military through a trojanized Android application used by its artillery units.
The group, which is known in the security industry under different names, including Fancy Bear, Pawn Storm and APT28, has been operating for almost a decade. It is believed to be the sole user and likely developer of a Trojan program called Sofacy or X-Agent that has variants for Windows, Android and iOS.
Fancy Bear has been responsible for many cyberespionage operations around the world over the years, and its selection of targets has frequently reflected Russia’s geopolitical interests. Researchers from security firm CrowdStrike believe the group is likely tied to the Russian Military Intelligence Service (GRU).