The Russian threat actor APT28, also known as, Fancy Bear, has been identified in a campaign targeting diplomats using fake car sale advertisements to distribute the HeadLace backdoor malware. This campaign leverages legitimate services like Webhook.site to host malicious URLs, complicating detection and mitigation efforts.
