A reported intrusion chain tied to APT28 combines Office lures, COM hijacking, PNG steganography, and reflective loading to keep payloads out of sight and traffic inside trusted services.
A reported intrusion chain combines COM hijacking, image-based concealment, and AES encryption, showing how ordinary Windows features can be bent into a stealth delivery path.
A reported shift toward hijacked routers and criminal botnet infrastructure shows how covert operators are moving away from easily traced hosting.
A reported Outlook zero-click flaw tied to APT28 underscores a hard truth: mail rendering and legacy NTLM authentication can intersect in ways that expose credential material without a deliberate click.
The GRU debate is not just about attribution; it is about how state power, identity abuse, and edge-device targeting fit into a long-running cyber strategy.
A newly revealed vulnerability in Windows Shell has been exploited by Russian state hackers, leaving users at risk of silent credential theft.
An incomplete Windows security update allowed Russian hackers to launch zero-click attacks against high-profile European targets.
Ukrainian prosecutors and anti-corruption agencies face a sophisticated email breach linked to Russian military intelligence hackers.
APT28’s FrostArmada campaign hijacked global networks, stealing credentials in plain sight-no malware required.
A new wave of Russian cyber-espionage leverages advanced malware and zero-day exploits to target Ukraine and its allies, threatening both information security and critical infrastructure.
U.S. authorities, tech giants, and cyber researchers unite to dismantle a sprawling Russian spy network hijacking home routers worldwide.
APT28 exploits critical Zimbra vulnerability in a sophisticated phishing campaign targeting Ukraine’s state infrastructure.
Russian state-backed APT28 deploys an evolving suite of malware, including BEARDSHELL and COVENANT, to conduct covert surveillance operations against Ukrainian military targets.
Russian state hackers are customizing open-source frameworks and cloud services to supercharge their cyber-espionage campaigns against Ukraine and Europe.
Before Microsoft could patch it, APT28 weaponized a critical Windows flaw to launch stealthy attacks worldwide.
Russian-linked cyber espionage group APT28 weaponized a critical MSHTML vulnerability weeks before Microsoft’s official fix, raising alarms about evolving attack tactics.
Russia-linked hackers exploited simple macros and public webhooks to infiltrate European organizations in a stealthy campaign.
APT28 unleashes a rapid-fire espionage campaign across Europe, exploiting a fresh Microsoft Office vulnerability to compromise critical maritime and transportation organizations.