Skip to main content
← All Articles

Tag

#Espionage

18 articles

Advertisement

Google Disrupts UNC2814 GRIDTIDE Infrastructure After 53 Breaches
HIGH
Threat Intel

Google Disrupts UNC2814 GRIDTIDE Infrastructure After 53 Breaches

Google disrupts infrastructure of China-nexus threat actor UNC2814 (GRIDTIDE) after 53 breaches across 42 countries targeting government and telecom sectors.

Runtime Rebel Intel
3 min read·Feb 25, 2026
TH
HIGH
Threat Intel

Ex-L3Harris Executive Sentenced for Selling Zero-Days to Russia

Former Trenchant CEO James Michael Robinson sentenced to 90 months for stealing zero-day exploits and selling them to a Russian state-linked broker.

Runtime Rebel Intel
4 min read·Feb 25, 2026
UAC-0050 Targets European Financial Institutions with RMS Malware
HIGH
Threat Intel

UAC-0050 Targets European Financial Institutions with RMS Malware

Russia-aligned actor UAC-0050 expands operations beyond Ukraine, targeting European financial entities with spoofed domains and RMS malware for espionage.

Runtime Rebel Intel
4 min read·Feb 25, 2026
UnsolicitedBooker Targets Central Asian Telecoms via LuciDoor Backdoor
HIGH
Threat Intel

UnsolicitedBooker Targets Central Asian Telecoms via LuciDoor Backdoor

The UnsolicitedBooker threat actor has pivoted to targeting telecommunications providers in Kyrgyzstan and Tajikistan using LuciDoor and MarsSnake backdoors.

Runtime Rebel Intel
4 min read·Feb 24, 2026
APT28 Operation MacroMaze: Webhook-Driven Macro Execution Targeting Western Europe
HIGH
Threat Intel

APT28 Operation MacroMaze: Webhook-Driven Macro Execution Targeting Western Europe

Analysis of a targeted campaign attributed to APT28, utilizing macro-enabled documents and legitimate webhook services for command-and-control obfuscation.

Runtime Rebel Intel
2 min read·Feb 24, 2026
Iranian APT MuddyWater Orchestrates Operation Olalampo Targeting MENA Infrastructure
HIGH
Threat Intel

Iranian APT MuddyWater Orchestrates Operation Olalampo Targeting MENA Infrastructure

Analysis of a new Iranian cyber-espionage campaign utilizing GhostFetch, CHAR, and HTTP_VIP malware families against organizations in the Middle East and North Africa.

Runtime Rebel Intel
2 min read·Feb 23, 2026