Persistent Campaign Against Ukr.net is a threat campaign tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed December 17, 2025; most recent activity February 5, 2026.
BlueDelta’s Persistent Campaign Against UKR.NET refers to a long-running cyber operation attributed to the BlueDelta actor, targeting the Ukrainian news portal UKR.NET. The campaign showcases sustained attacker activity aimed at Ukrainian media infrastructure and audience, underscoring the risk to information integrity and availability for a key information source. This is significant in cybersecurity as it highlights persistent threat actor activity against media platforms and potential upstream impacts on information flows in a conflict context.
A state-aligned cyber-espionage group from Asia has compromised the critical infrastructure of 37 countries, targeting government organizations and ministries related to trade, natural resources, border control, and…
Between February and September 2025, BlueDelta, a Russian state-sponsored group, conducted multiple credential-harvesting campaigns. These operations targeted users of UKR.NET, a popular Ukrainian webmail and news…