Russian software firm Microolap said hackers compromised some of its systems after pro-Ukraine group Black Spark claimed a month-long intrusion. Microolap said the attackers reached non-critical development systems hosted by another provider, an outdated website, and an old Bitrix24 customer management system, but denied access to its core EtherSensor network-traffic analysis platform or customer data. Black Spark claimed it accessed and deleted data tied to customers including Russian Railways, Goznak, VTB, VTB Leasing, and NEK.TECH, but those claims remain unverified.
Why it matters: Organizations using Microolap products or tied to the named customer environments may need to verify whether any credentials, support records, or monitoring-related data were exposed. The immediate action is to review vendor trust relationships, check for any incident notifications, and assess whether connected development or legacy systems created a path to sensitive environments.
2026.08.21
100% relevant
This article appears to be the first concrete reporting on Microolap's acknowledgment of a real intrusion after Black Spark's claims, establishing the event even though the full scope is disputed.
← Back to all stories