Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
S. These clusters include UNC6293, UNC7005, and UNC5976.
S. These clusters include UNC6293, UNC7005, and UNC5976.
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts ->The Hacker News | More on "Russian hackers targeting account security" at BigEarthData.ai | #Hacker #Technology #RussiaUkraineWar #Google Three distinct suspected Russian cyber espionage threat clusters have been observed leveraging legitimate authentication flows to single out individuals working in academia, a
🤖 Suspected Russian espionage clusters UNC6293, UNC7005 and UNC5976 abuse legitimate Google OAuth and WhatsApp account-linking flows to hijack accounts of academics, aerospace/defense staff, government and think-tank targets across Europe and the US. 🔗 https:// thehackernews.com/2026/08/susp ected-russian-hackers-abuse-google.html # CyberSec # Espionage # InfoSec
Russian cyber-espionage groups are exploiting OAuth and WhatsApp device-linking features to hijack accounts by tricking victims into performing legitimate authentication actions. Attackers use these social engineering tactics alongside malware to bypass traditional security by abusing trusted platforms. https:// cybersecuritynews.com/russian- hackers-abuse-oauth-whatsapp/
🚨 Suspected Russian hackers are abusing real sign-in flows to hijack accounts. Google says the campaigns target government, defense, academia, and think tanks using OAuth phishing, app passwords, and WhatsApp device linking. Read how it works: https:// thehackernews.com/2026/08/susp ected-russian-hackers-abuse-google.html