Skip to content

Gamaredon APT Hides Malware in Windows Features and Abuses Cloud Platforms for C2

Cybersecuritynews Abinaya June 2, 2026

Gamaredon, a Russian state-backed espionage group, is deploying a new VBScript worm that hides inside native Windows features while using popular cloud services as covert command-and-control (C2) channels in an ongoing campaign against Ukrainian targets. The operation showcases a modular toolset built for stealth, resilience and long-term access. In this campaign, Gamaredon has reorganized its […]

Extracted Entities

APT Groups (1)

Attack Types (2)

Platforms (1)

Tools (1)