Advertisement

Microsoft OWA Exploit: Russian Hackers Bypass Credential Rotations
Russian threat actors exploit a Microsoft Outlook Web Access (OWA) flaw to maintain persistent mailbox access even after passwords are changed or rotated.
APT28 Exploits Exchange OWA Zero-Day to Deploy OWAReaper Backdoor
Russian APT28 hackers exploit an Exchange OWA zero-day to deploy the OWAReaper backdoor, gaining persistent access to high-value government mailboxes.

Russian APT Exploits Zimbra Zero-Day to Exfiltrate Mail and 2FA Codes
Russian state-supported actors leveraged a Zimbra Zero-Day to steal 90 days of email history and bypass security by exfiltrating 2FA recovery codes.
Zimbra Zero-Click Exploitation by Russian APT for Email Theft
CISA warns of Russian APT Laundry Bear (Void Blizzard) exploiting a patched Zimbra zero-click flaw combined with phishing to compromise email servers for data
Sandworm's AI Toolchain Threat: Detecting SANDWORM_MODE
Analyzing Sandworm's potential to compromise AI/ML supply chains via the 'SANDWORM_MODE' attack method, focusing on detection and mitigation strategies.
UK and EU Sanction Russian APTs Over Critical Infrastructure Attacks
Recent UK and EU sanctions target Russian intelligence services following persistent cyber operations against government entities and critical infrastructure.
EU Sanctions Russian Intel Officers for APT28 Cyber Operations
The EU imposes sanctions on Russian GRU officers linked to APT28 for long-term cyber espionage and sabotage targeting government and infrastructure.
Russian APTs Target Critical Infrastructure via Edge Device Exploits
US and allies warn of Russian state-sponsored actors targeting edge devices to infiltrate critical infrastructure. Learn how to mitigate these threats.

CVE-2023-38831: Russian APTs Target Ukraine via WinRAR Flaw
Russian threat actors are exploiting the CVE-2023-38831 WinRAR vulnerability to target Ukrainian government and military entities for data theft.
APT28 Exploits Incomplete Windows Patch: Zero-Click Attacks Persist
An incomplete Windows patch leaves systems vulnerable to zero-click attacks. Russia-linked APT28 exploited this against Ukraine and EU. Learn how to defend.

APT28 Analysis: Mitigation Strategies Against Fancy Bear Campaigns
A technical analysis of APT28's global operations, highlighting the necessity of Zero Trust and rapid patching to counter Fancy Bear threat activity.

APT28 Forest Blizzard DNS Manipulation Targets SOHO Routers
Russian APT28, or Forest Blizzard, is conducting malwareless cyber espionage by manipulating DNS settings on vulnerable SOHO routers to steal credentials from global