Related Threat Clusters
-
CISA Warns U.S. After Cyberattack on Poland's Energy Grid Linked to Russian Hackers
A cyberattack targeting Poland's energy grid in December has been linked to a Russian government-affiliated hacking group. The attack affected 30 wind and photovoltaic farms and prompted the Cybersecurity and…
9 articles · Updated February 10, 2026 -
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
82 articles · Updated July 23, 2026 -
GRU Compromises Home Routers in 23 States to Steal Outlook Credentials
The FBI and partners disrupted a covert network of compromised TP-Link and MikroTik routers exploited by the Russian GRU (APT28) to steal Outlook credentials. This operation, known as Operation Masquerade, revealed that…
6 articles · Updated May 22, 2026 -
APT28 Exploits Zimbra Vulnerability in Ongoing Attacks Against Ukraine
Russian state-backed hackers from APT28 are actively exploiting a high-severity stored cross-site scripting vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite (ZCS) to target Ukrainian government entities.…
8 articles · Updated March 19, 2026 -
Sandworm Launches Wiper Malware Campaign Against Ukrainian Organizations
The Russian state-backed hacking group Sandworm has intensified its operations against Ukrainian organizations by deploying data-wiping malware. This campaign targets critical sectors, including the grain industry, and…
6 articles · Updated November 7, 2025 -
Gamaredon Exploits WinRAR Vulnerability in Ongoing Ukraine Campaign
Gamaredon, a Russian state-backed APT group, is actively exploiting a WinRAR vulnerability (CVE-2025-8088) to deploy malware against Ukrainian government and military targets. The attack begins with a spearphishing…
7 articles · Updated June 2, 2026 -
GhostShell Malware Targets Ukraine's UAV and Defense Supply Chain
The GhostShell malware cluster is actively targeting Ukraine’s UAV operations and defense supply chain. Utilizing advanced techniques such as mTLS-authenticated implants and Telegram-based loaders, the attackers gain…
2 articles · Updated June 25, 2026 -
Russia Launches Nuclear-Capable Missile Strike on Ukraine's Capital
On May 24, 2026, Russia launched a nuclear-capable Oreshnik missile at Ukraine, targeting the capital, Kyiv. The missile strike was accompanied by drone attacks, resulting in significant destruction and casualties.…
2 articles · Updated May 24, 2026 -
Cl0p Ransomware Group Claims Data Theft from Nearly 50 Companies
The Cl0p hacking group has claimed to have stolen significant data from nearly 50 companies, including Shell, Philips, General Electric (GE), and Fiserv. The group reported stealing approximately 89GB from Shell and…
30 articles · Updated August 14, 2026 -
SBU and FBI Expose Russian Cyber Campaign Targeting Messaging Accounts
On June 25, 2026, Ukraine's Security Service (SBU) and the FBI announced a coordinated cyber campaign by Russian intelligence targeting messaging accounts of officials, military personnel, politicians, and activists in…
18 articles · Updated June 25, 2026
Recent Intelligence Reports
- Chinese Speaking Operator Philippine Nuclear Naval Contractor — hunt.io · August 31, 2026
- Spanish PM blames Russia, Israel for disinformation in Ceuta migrant crisis — Internazionale.It · August 31, 2026
- Moscow tests Europe's borders ahead of key elections — En.Vijesti.Me · August 30, 2026
- Baltic Nations Form Task Force Against Hybrid Threats — Kyivpost · August 29, 2026
- 3SBZ5Ky — trmlink.info · August 28, 2026
- How To Mitigate Wiper Malware — www.techtarget.com · August 28, 2026
- Hacktivism Evolves from Digital Defacer into Asymmetric Warfare Threat Actor — Asisonline · August 28, 2026
- World's largest container shipping company suspends Novorossiysk bookings after drone ... — Kyivindependent · August 27, 2026