Operations & Intelligence Failures — 2026-03-22
FBI and CISA Issue Joint Alert on Russian Intelligence Phishing Campaign Compromising Thousands of Signal and WhatsApp Accounts
RIS are conducting a global phishing campaign against Signal, WhatsApp, and other encrypted messaging platforms, compromising thousands of accounts. Primary targets: current and former U.S. government officials, military personnel, political figures, and journalists. Attack vector is social engineering, tricking users into sharing verification codes or PINs, not cryptographic exploitation. Once compromised, actors read messages, harvest contact lists, and launch secondary phishing from trusted identities.
Analysis
Today's INTSUM covered the same Russian phishing campaign from a cybersecurity angle. The IC-specific concern is that compromised accounts of current and former government officials could yield operational intelligence, contact networks, and material for secondary targeting, particularly dangerous given the 200,000+ federal employees who have departed their roles and may have relaxed security postures.
Today's INTSUM covered the same Russian phishing campaign from a cybersecurity angle. The IC-specific concern is that compromised accounts of current and former government officials could yield operational intelligence, contact networks, and material for secondary targeting, particularly dangerous given the 200,000+ federal employees who have departed their roles and may have relaxed security postures.
3 sources
- FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks -
The Hacker News - FBI Issues Urgent Warning as Russian Hackers Target Signal Users and Compromise Thousands of American Accounts -
Blockonomi - FBI links Russian intelligence to messaging app breaches targeting US officials -
Euromaidan Press