Therecord.Media Belarusian Hacktivists Confirm 2023 Breach of Russian Healthcare Network
Article Content
- •Belarusian hackers infiltrated a Russian healthcare network for nearly two years.
- •The breach involved accessing sensitive medical data without disrupting operations.
- •The Cyber Partisans claim to have access to hundreds of IT systems across Russia and Belarus.
The Belarusian Cyber Partisans have claimed responsibility for a breach of Moscow's healthcare network, confirming their infiltration that began in 2023. They gained administrator-level access to the Moscow Department of Health and spent nearly two years inside the network before abandoning the operation. Russian cybersecurity firm Solar discovered the breach in December 2025, tracing it back to early 2024. The hackers accessed sensitive medical information but did not disrupt operations or destroy data. The group stated that the information obtained could help assess Russian military casualties in Ukraine. They have claimed access to hundreds of IT systems across Russia and Belarus, but this claim remains unverified. The Cyber Partisans have previously targeted Belarusian government institutions and have been designated an extremist organization by Russia's Supreme Court.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Belarusian Cyber Partisans and Vasilek in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What information was accessed?
How long did the hackers remain in the network?
What are the implications of this breach?
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Sets Oct. 11 Deadline for Patching Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog after they were exploited by the China-linked group Flax Typhoon. Federal agencies must patch or retire the affected software by October 11, 2026. The vulnerabilities…