Laundry Bear is a apt_group tracked across 9 threat clusters and 33 intelligence report mentions on ThreatCluster. First observed January 14, 2026; most recent activity July 25, 2026.
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
A new cyberespionage campaign has been identified, targeting Ukrainian organizations with a backdoor named DRILLAPP, attributed to Russian threat actors, specifically the Laundry Bear group. The campaign employs…
A coordinated cyber espionage campaign by the Russian hacker group Laundry Bear has led to the theft of hundreds of emails from Zimbra users. The campaign, which initially focused on Ukraine, has since expanded to…
The Dutch intelligence agency AIVD's 2025 report indicates that Russia is preparing for a long-term confrontation with Western nations, marking the most severe threat environment in 80 years. The report highlights an…
Denis Obrezko, a 36-year-old Russian national, was arrested in Thailand and extradited to the US, where he faces charges for facilitating a cyber espionage campaign linked to the group Void Blizzard. This group has…
Denis Obrezko, a 36-year-old Russian man and former FSB agent, pleaded not guilty to charges related to a cyber espionage campaign targeting Western organizations. Extradited from Thailand, he faces accusations of…
Between October and December 2025, Ukrainian Defense Forces were targeted by a cyberattack disguised as a charitable foundation. The attack, attributed to the Russian group Void Blizzard (Laundry Bear), installed…
CERT-UA reported new cyberattacks involving PLUGGYAPE malware targeting Ukraine’s defense forces. The attacks are attributed with medium confidence to the Russian-linked group Void Blizzard. This incident highlights…