APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDP

Category Details Threat Actors - Russia-linked APT29 (tracked as Earth Koshchei) Campaign Overview - Targeting…

Dark Web Profile: Patchwork APT

CategoryDetailsThreat ActorsPatchwork APT (also known as Dropping Elephant, Quilted Tiger, Viceroy Tiger); believed to be…

Secret Blizzard Attack Detection: The russia-Linked APT Group Targets Ukraine via Amadey Malware to Deploy the Updated Kazuar Backdoor Version

CategoryDetailsThreat ActorsSecret Blizzard (also known as Turla, Turla APT, Waterbug, Venomous Bear, Iron Hunter, Krypton)Campaign…

Iran-Linked IOCONTROL Malware Targets SCADA and Linux-Based IoT Platforms

Category Details Threat Actors Iran-affiliated threat actors, linked to Cyber Av3ngers Campaign Overview New custom…

RedLine, A License to Steal: The Rudometov Story & Operation Magnus

AttributeDetailsThreat ActorsMaxim Rudometov, RedLine developersCampaign OverviewDisruption of RedLine and Meta infostealers by Operation Magnus, collaboration…

US sanctions Chinese cyber firm for compromising ‘thousands’ of firewalls in 2020

Attribute Details Threat Actors Sichuan Silence Information Technology Company, Guan Tianfeng (aka GbigMao), linked to…

Hackers Weaponize Visual Studio Code Remote Tunnels for Cyber Espionage

Category Details Threat Actors Suspected China-nexus cyber espionage group; no specific attribution to a known…

Suspected Russian hackers target Ukrainian defense enterprises in new espionage campaign

Attribute Details Threat Actors UAC-0185 (UNC4221), UAC-0198, UAC-0180, Vermin, Ghostwriter Campaign Overview Espionage campaign targeting…

Network Abuses Leveraging High-Profile Events: Suspicious Domain Registrations and Other Scams

Category Details Threat Actors Opportunistic threat actors leveraging trending events like the Olympics and ChatGPT.…

Russian state hackers hijacked rival servers to spy on targets in India, Afghanistan

CategoryDetailsThreat ActorsSecret Blizzard (also known as Turla), Storm-0156Campaign OverviewRussian state-sponsored hackers (Secret Blizzard) infiltrated Storm-0156…