
Sandworm Fake Job Interviews Push Trojanized WireGuard VPN to Infect IT Professionals
Sandworm-linked threat actors are using fake job interviews to trick IT professionals into installing a trojanized WireGuard VPN client. Ukraine’s CERT-UA attributes the activity to UAC-0145, a subcluster of UAC-0002, also known as Sandworm, APT44, and Seashell Blizzard. The campaign has reportedly been active since at least May 2026 and primarily targets system administrators and […]
The post Sandworm Fake Job Interviews Push Trojanized WireGuard VPN to Infect IT Professionals appeared first on Cyber Security News.