Skip to content

APT28 exploits Microsoft Office flaw in Operation Neusploit

Securityaffairs.Co Pierluigi Paganini February 3, 2026

Russia-linked APT28 is behind Operation Neusploit, exploiting a newly disclosed Microsoft Office vulnerability in targeted attacks. Russia-linked group APT28 (aka UAC-0001, aka Fancy BearPawn StormSofacy GroupSednitBlueDelta, and STRONTIUM) is behind Operation Neusploit, a campaign that exploits a newly disclosed Microsoft Office vulnerability. The APT28 group has been active since at least 2007 and it has targeted governments, militaries, and security organizations […]