Skip to main content
← All Articles

Tag

#Cyber Espionage

36 articles

Advertisement

U.S. Sanctions Iran-Linked Hackers Targeting Critical Infrastructure
HIGH
Threat Intel

U.S. Sanctions Iran-Linked Hackers Targeting Critical Infrastructure

U.S. Treasury sanctions Iran-linked cyber actors, including Mabna Institute members, for critical infrastructure breaches and cyber theft.

Runtime Rebel Intel
5 min read · Aug 26, 2026
Transparent Tribe Targets Afghan and Indian Organizations
MEDIUM
Threat Intel

Transparent Tribe Targets Afghan and Indian Organizations

Pakistan-linked Transparent Tribe updates its malware toolset to target Afghan organizations and government agencies in India.

Runtime Rebel Intel
2 min read · Aug 20, 2026
HIGH
Threat Intel

US Charges Iranian Hackers in $3.4B Intellectual Property Theft

US charges 17 Iranian hackers from Mabna Institute for a state-sponsored campaign stealing 31.5 TB of academic and corporate intellectual property since 2013.

Runtime Rebel Intel
5 min read · Aug 19, 2026
AI-Driven Cyberattack Targets APAC Government Agencies
HIGH
Threat Intel

AI-Driven Cyberattack Targets APAC Government Agencies

A China-linked actor reportedly deployed a near-autonomous AI framework to compromise government agencies in the APAC region, signaling a new threat landscape.

Runtime Rebel Intel
4 min read · Aug 19, 2026
Jewelbug APT: Dual-Motivation Espionage & Crypto Heists
HIGH
Threat Intel

Jewelbug APT: Dual-Motivation Espionage & Crypto Heists

Jewelbug APT, a unique 'hackers-for-hire' group, conducts state-sponsored espionage and financially motivated cryptocurrency heists from a single operational panel.

Runtime Rebel Intel
4 min read · Aug 13, 2026
CVE-2025-66376: APT28 Exploits Zimbra Zero-Click for Espionage
CRITICAL
Vulnerabilities

CVE-2025-66376: APT28 Exploits Zimbra Zero-Click for Espionage

Russian state-sponsored actors exploit a zero-click Zimbra vulnerability (CVE-2025-66376) to exfiltrate sensitive webmail data from targeted organizations.

Runtime Rebel Intel
4 min read · Aug 8, 2026

Advertisement

MEDIUM
Threat Intel

EU Sanctions Russian Intel Officers for APT28 Cyber Operations

The EU imposes sanctions on Russian GRU officers linked to APT28 for long-term cyber espionage and sabotage targeting government and infrastructure.

Runtime Rebel Intel
3 min read · Jul 13, 2026
HIGH
Threat Intel

Parallel APT Cyber Espionage Targets Balochistan Police

Analysis of parallel cyber espionage campaigns by China and India-linked APTs against Pakistan's Balochistan Police, detailed by SentinelOne.

Runtime Rebel Intel
4 min read · Jul 10, 2026
Iran Cyber Focus Expands: Securing Internet-Facing Vulnerabilities
HIGH
Threat Intel

Iran Cyber Focus Expands: Securing Internet-Facing Vulnerabilities

Iranian state-sponsored cyber operations are broadening targets beyond critical infrastructure. All organizations must secure Internet-facing systems.

Runtime Rebel Intel
5 min read · Jul 10, 2026
Armored Likho Leverages BusySnake Stealer Against Critical Sectors
HIGH
Threat Intel

Armored Likho Leverages BusySnake Stealer Against Critical Sectors

Undocumented threat actor Armored Likho targets government and electric power sectors in Russia, Brazil, and Kazakhstan with BusySnake Stealer.

Runtime Rebel Intel
5 min read · Jul 3, 2026
HIGH
Threat Intel

Turla's STOCKSTAY Backdoor: Analysis of Campaigns & WinRAR Exploit

Google Threat Intelligence details STOCKSTAY, Turla's .NET backdoor for espionage targeting Ukraine and Europe, leveraging RDP & CVE-2025-8088.

Runtime Rebel Intel
13 min read · Jun 26, 2026
Chinese Espionage: Google Workspace Rule Abuse in Research Sectors
HIGH
Threat Intel

Chinese Espionage: Google Workspace Rule Abuse in Research Sectors

China-linked threat actors exploited REDCap server backdoors and manipulated Google Workspace mail rules to exfiltrate North American research data.

Runtime Rebel Intel
4 min read · Jun 16, 2026
HIGH
Threat Intel

UNC6508: Chinese Cyberespionage Targets North American Research

Google's Threat Intelligence Group tracks UNC6508, a Chinese cyberespionage group targeting North American medical, military, and AI research sectors.

Runtime Rebel Intel
4 min read · Jun 15, 2026
HIGH
Threat Intel

Iranian Handala Group Claims Cal Water Hack, Exposing PII

Iranian cyber group Handala claims responsibility for breaching Cal Water, exposing 5GB of customer PII and RTKBase platform credentials.

Runtime Rebel Intel
4 min read · Jun 12, 2026
OceanLotus Targets Vietnam with SPECTRALVIPER Backdoor in FireAnt Attack
HIGH
Threat Intel

OceanLotus Targets Vietnam with SPECTRALVIPER Backdoor in FireAnt Attack

OceanLotus APT targets Vietnamese infrastructure and stock investors with SPECTRALVIPER backdoor in multi-year cyber espionage and supply chain campaigns.

Runtime Rebel Intel
4 min read · Jun 11, 2026
Chinese and North Korean APT Activity Surges Across APAC Markets
MEDIUM
Threat Intel

Chinese and North Korean APT Activity Surges Across APAC Markets

Chinese and North Korean threat groups are intensifying operations in Asia-Pacific, impacting regional economies and targeting financial institutions for profit.

Runtime Rebel Intel
3 min read · Jun 11, 2026
Pakistan-Linked Espionage Targets Afghan Finance Ministry via Xeno RAT
HIGH
Threat Intel

Pakistan-Linked Espionage Targets Afghan Finance Ministry via Xeno RAT

Analysis of a Pakistan-linked cyber espionage campaign targeting the Afghan Ministry of Finance using the Xeno RAT malware and malicious LNK files.

Runtime Rebel Intel
4 min read · Jun 4, 2026
China-Linked APTs Target Latin American Critical Infrastructure
HIGH
Threat Intel

China-Linked APTs Target Latin American Critical Infrastructure

China-linked APTs are conducting widespread cyber espionage against maritime shipping, oil production, and government sectors in Latin America, impacting over a dozen…

Runtime Rebel Intel
4 min read · Jun 3, 2026
HIGH
Threat Intel

Iranian APT33 Targets Aviation with Updated MimicC2 and PowerLess

Iranian APT Nimbus Manticore (APT33) targets aviation and software firms using new MimicC2 framework and updated PowerLess tools for stealthy operations.

Runtime Rebel Intel
5 min read · May 26, 2026
HIGH
Threat Intel

MuddyWater Targets South Korean Electronics Maker in Espionage Campaign

Iran-linked MuddyWater (Seedworm) group launched a cyber-espionage campaign against a major South Korean electronics maker and other global entities.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Threat Intel

PamDOORa Backdoor and Windows Phone Link OTP Theft Analysis

Recent intelligence highlights the PamDOORa Linux backdoor and malware leveraging Windows Phone Link to bypass OTP-based authentication mechanisms.

Runtime Rebel Intel
3 min read · May 8, 2026
China-Linked UAT-8302 Targets Governments with Custom APT Malware
HIGH
Threat Intel

China-Linked UAT-8302 Targets Governments with Custom APT Malware

UAT-8302, a China-linked threat group, targets government entities in South America and SE Europe using custom malware and shared APT toolsets.

Runtime Rebel Intel
3 min read · May 5, 2026
INFO
Threat Intel

Alleged Silk Typhoon Hacker Extradited: Cyberespionage Threat

An alleged Silk Typhoon hacker, associated with Chinese intelligence, has been extradited to the US, highlighting persistent nation-state cyberespionage threats.

Runtime Rebel Intel
4 min read · Apr 27, 2026
Chinese State-Backed Actors Industrialize Botnets for Covert Ops
HIGH
Threat Intel

Chinese State-Backed Actors Industrialize Botnets for Covert Ops

Chinese state-backed groups are adopting industrialized botnets, utilizing compromised devices for low-cost, low-risk, and deniable cyber operations.

Runtime Rebel Intel
5 min read · Apr 24, 2026