Star Blizzard — Threat Actor Profile, Campaigns & Targets

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
December 11, 2025
Last Seen
May 28, 2026

Star Blizzard is a apt_group tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed December 11, 2025; most recent activity May 28, 2026.

Overview

Star Blizzard is an Advanced Persistent Threat (APT) group implicated in targeted phishing campaigns against political targets. The group relies on social engineering to harvest credentials and establish initial access, highlighting its focus on government and parliamentary actors. This activity emphasizes phishing as a persistent and significant attack vector in cybersecurity, particularly against political institutions.

Related Threat Clusters

Recent Intelligence Reports

  • ESET APT Reports — www.globenewswire.com · May 28, 2026
  • ESET Threat Intelligence — www.eset.com · May 7, 2026
  • Russia — Securityaffairs.Co · March 30, 2026
  • UK MPs facing rising number of phishing attacks | UK news — Theguardian · December 11, 2025

CVSS v3.1 Breakdown