Story perspectives
Russian Hackers Target Ukraine with Microsoft Exploits in 2026
2/3/2026
1 of 1
Story summary
- Fancy Bear (APT28), a Russian-linked hacking group, is exploiting CVE-2026-21509 in Microsoft Office by using a malicious Word document created shortly after Microsoft disclosed the flaw to target Ukrainian and EU organizations.
- CERT-UA warns that attacks are likely to rise in 2026 as users delay applying the necessary updates.
- Microsoft has released patches, but CERT-UA remains concerned about their effectiveness in preventing further exploitation.
