[analyse_image type=”featured” src=”https://images.euronews.com/articles/stories/09/90/62/04/1200x675_cmsv2_8a156ea6-141b-5159-b8c8-3e228a035656-9906204.jpg”]

Ceuta crisis: EU grants Spain €114 million in show of ‘solidarity’

‘Back to the city’: Italy unveils biggest frescoe from ancient Rome

EU’s plan to gain independence from Russian energy falters

Very hot drinks could triple risks of oesophageal cancer, study finds

Ceuta crisis: EU grants Spain €114 million in show of ‘solidarity’

‘Back to the city’: Italy unveils biggest frescoe from ancient Rome

EU’s plan to gain independence from Russian energy falters

Very hot drinks could triple risks of oesophageal cancer, study finds
Russian hackers may have used fake CAPTCHA to hack Ukrainian government computers

Canva
– Copyright Hackers are turning CAPTCHA checks into a trap
Researchers say the attack was likely part of a wider operation to steal cryptocurrency and login credentials by tricking users through a fake Google verification check to trick victims.
A suspicious cyberattack using fake CAPTCHA checks to target a Ukrainian government organisation has been linked to Moscow, according to a new report.
US tech giant Cisco said its cybersecurity researchers noticed unusual activity in the organisation’s computer systems in April, asserting “with moderate confidence” that a Russian threat actor carried out the attack.
Cisco’s researchers found malware known as Amatera running on the system, capable of stealing sensitive information.
It was also used to install software that could give an attacker access to the computer, including the ability to inspect files, transfer data and run commands, according to the company.
Cisco found that the software was configured to connect to a server with an IP address based in Russia.
The report could not verify whether any information was actually stolen from the Ukrainian organisation, whether hackers actively used that access or how the computer was initially infected.
Cisco researchers however assessed that it was part of a broader operation designed to steal cryptocurrency and credentials.
“It was not clear what started the execution chain,” the report said.
CAPTCHA checks as traps
In the Ukrainian system, Cisco researchers had seen a malicious file disguised with the name “verification.google” but could not trace what had caused it to run.
To understand how the Ukrainian infection might have been started, they searched for similar attacks and found another infection involving the same Amatera malware.
This time, they traced it back to compromised websites showing fake versions of Google’s CAPTCHA verification check, used to distinguish human visitors from automated bots.
But instead of simply asking users to tick a box or identify images, the fake check told them to open a window on their computer and paste in text that would run malware.
In that infection, Amatera was also used to install a program designed to steal cryptocurrency.
The program could monitor cryptocurrency wallet addresses victims copied and replace them with addresses controlled by the attackers, potentially redirecting payments.
Cisco says similarities between the infections suggest the attack against Ukraine may have started in the same way.
However, researchers could not confirm that the two infections began the same way or that the same group carried them out.
Go to accessibility shortcuts
Read more

Robot revolt? Polish company stages protest demanding stricter AI rules

Ink and algorithms: How AI is changing the art of tattooing

Russian malware found in Ukrainian government system, study says

Robot revolt? Polish company stages protest demanding stricter AI rules

Ink and algorithms: How AI is changing the art of tattooing

Russian malware found in Ukrainian government system, study says

How Sweden is fighting AI bots and Russian influence at the polls

Ink and algorithms: How AI is changing the art of tattooing

‘A gamble with our lives’: Ex-Anthropic researcher warns of AI ‘catastrophe’

Can AI race like a human? Driverless cars race in Italy’s F1 city

Humanoids at home: How robots could soon fit into everyday life
AMD unveils ‘personal super computer’ for new era of computing
Humanoids at home: How robots could soon fit into everyday life
Rogue OpenAI agents hijacked a German wiki, and it stayed secret for weeks
Robot revolt? Polish company stages protest demanding stricter AI rules
Would you let a humanoid robot clean your home for €26 an hour?
[analyse_source url=”https://www.euronews.com/next/2026/09/09/russian-hackers-may-have-used-fake-captcha-to-hack-ukrainian-government-computers”]