Gbhackers
Vortex Werewolf Cyber Espionage Targets Russian Organizations with Remote Access Tools
First seen 9 Feb 2026, 16:04 UTC
•
•32.7
Export
Article Content
Browse articles
The Vortex Werewolf cyber espionage group has been actively targeting Russian government and defense organizations since at least December 2025. This group utilizes social engineering and legitimate software utilities to establish covert remote access via Tor-enabled protocols such as RDP, SMB, SFTP, and SSH.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
Timeline
2025-12-01
Vortex Werewolf begins targeting Russian organizations
2026-02-09
GBHackers and Cybersecuritynews report on Vortex Werewolf
More articles in this cluster
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation
Critical FreeIPA Vulnerabilities Allow Unauthenticated Admin Access
Iranian APT Groups Target Israeli Organizations with Modular C2 Frameworks
September 2026 Security Update: Major CVEs from Adobe and Microsoft
CIFSwitch Vulnerability in Linux Allows Root Access via CIFS Exploit
Urgent Threat from NTLMv1 Exploitation via Rainbow Tables