GammaPhish is a threat campaign tracked across 1 threat cluster and 4 intelligence report mentions on ThreatCluster. First observed June 1, 2026; most recent activity June 2, 2026.
Gamaredon, a Russian state-backed APT group, is actively exploiting a WinRAR vulnerability (CVE-2025-8088) to deploy malware against Ukrainian government and military targets. The attack begins with a spearphishing…