ThreatCluster

Russian Hackers Target Network Edge Devices in Western Critical Infrastructure

First seen 16 Dec 2025, 20:58 UTC GbhackersCybersecuritynews 50

Article Content

Browse articles
ThreatCluster

Since 2021, a Russian state-hacking group has been attacking network edge devices in Western critical infrastructure, with increased activity noted throughout 2025. This campaign, attributed to the GRU and Sandworm group, marks a strategic shift from exploiting zero-day vulnerabilities to targeting misconfigured systems.