APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDP
Category Details Threat Actors - Russia-linked APT29 (tracked as Earth Koshchei) Campaign Overview - Targeting…
Dark Web Profile: Patchwork APT
CategoryDetailsThreat ActorsPatchwork APT (also known as Dropping Elephant, Quilted Tiger, Viceroy Tiger); believed to be…
Secret Blizzard Attack Detection: The russia-Linked APT Group Targets Ukraine via Amadey Malware to Deploy the Updated Kazuar Backdoor Version
CategoryDetailsThreat ActorsSecret Blizzard (also known as Turla, Turla APT, Waterbug, Venomous Bear, Iron Hunter, Krypton)Campaign…
Iran-Linked IOCONTROL Malware Targets SCADA and Linux-Based IoT Platforms
Category Details Threat Actors Iran-affiliated threat actors, linked to Cyber Av3ngers Campaign Overview New custom…
RedLine, A License to Steal: The Rudometov Story & Operation Magnus
AttributeDetailsThreat ActorsMaxim Rudometov, RedLine developersCampaign OverviewDisruption of RedLine and Meta infostealers by Operation Magnus, collaboration…
US sanctions Chinese cyber firm for compromising ‘thousands’ of firewalls in 2020
Attribute Details Threat Actors Sichuan Silence Information Technology Company, Guan Tianfeng (aka GbigMao), linked to…
Hackers Weaponize Visual Studio Code Remote Tunnels for Cyber Espionage
Category Details Threat Actors Suspected China-nexus cyber espionage group; no specific attribution to a known…
Suspected Russian hackers target Ukrainian defense enterprises in new espionage campaign
Attribute Details Threat Actors UAC-0185 (UNC4221), UAC-0198, UAC-0180, Vermin, Ghostwriter Campaign Overview Espionage campaign targeting…
Network Abuses Leveraging High-Profile Events: Suspicious Domain Registrations and Other Scams
Category Details Threat Actors Opportunistic threat actors leveraging trending events like the Olympics and ChatGPT.…
Russian state hackers hijacked rival servers to spy on targets in India, Afghanistan
CategoryDetailsThreat ActorsSecret Blizzard (also known as Turla), Storm-0156Campaign OverviewRussian state-sponsored hackers (Secret Blizzard) infiltrated Storm-0156…