UNC4841 threat actors hacked US government email servers exploiting Barracuda ESG flawSecurity Affairs·Aug 29, 20:15 UTC · Aug 29, 2023Threat actorCVE-2023-286860
Russia’s Sandworm Upgraded to APT44 by Google's MandiantInfosecurity Magazine·Apr 18, 17:15 UTC · Apr 18, 2024Threat actor160
Mandiant Breach Analytics empowers enterprises to gain insight on breach activity in IT environmentsHelp Net Security·Oct 19, 00:00 UTC · Oct 19, 2022Threat actor60
German political party targeted by SVR-linked group in spearphishing campaign, Mandiant saysCyberScoop·Mar 22, 17:52 UTC · Mar 22, 2024Threat actor in the wild60
Pro-China information campaign used fake websites to spread propaganda: MandiantThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Threat actor60
North Korean hacking group targeted weapons blueprints, nuclear facilities in cyber campaignsThe Record·Jul 25, 01:25 UTC · Jul 25, 2024Threat actor60
Ukraine energy facility took unique Sandworm hit on day of missile strikes, report saysThe Record·Nov 9, 16:06 UTC · Nov 9, 2023Threat actor60
China-linked threat actors stole 10% of Belgian State Security Service (VSSE)'s staff emailsSecurity Affairs·Feb 28, 07:54 UTC · Feb 28, 2025Threat actorCVE-2023-286860
Iranian hackers impersonate journalists in social engineering campaignCyberScoop·May 2, 03:00 UTC · May 2, 2024Threat actor60
Chinese, Russian espionage campaigns increasingly targeting edge devicesThe Record·Apr 23, 20:27 UTC · Apr 23, 2024Threat actor60
Russian APT Sandworm Disrupted Power in Ukraine Using OT TechniquesInfosecurity Magazine·Nov 9, 08:00 UTC · Nov 9, 2023Threat actor60
Russia-linked Cozy Bear uses evasive TTPs to target Microsoft 365Security Affairs·Aug 19, 23:20 UTC · Aug 19, 2022Threat actor160
Chinese APT41 Hackers Broke into at Least 6 U.S. State Governments: MandiantThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2022Threat actorCVE-2021-44207CVE-2021-4422860
Chinese APT Group Exploits Dell ZeroInfosecurity Magazine·Feb 18, 10:10 UTC · Feb 18, 2026Threat actorCVE-2026-2276960
Volt Typhoon and 4 other groups targeting US energy and defense sectors through Ivanti bugsThe Record·Apr 4, 16:40 UTC · Apr 4, 2024Threat actorCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Russian Sandworm disrupts power in Ukraine with a new OT attackSecurity Affairs·Nov 9, 18:58 UTC · Nov 9, 2023Threat actor60
China-backed espionage group hits Ivanti customers againCyberScoop·Apr 3, 22:58 UTC · Apr 3, 2025Threat actor in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+1 CVEs60
Fortinet warns of active campaign exploiting bug in FortiManager productsCyberScoop·Oct 24, 21:22 UTC · Oct 24, 2024Threat actor in the wildCVE-2024-4757560
Sandworm hackers incapacitated Ukrainian power grid amid missile strikeHelp Net Security·Nov 9, 00:00 UTC · Nov 9, 2023Threat actor60
Leaked documents from Russian firm NTC Vulkan show Sandworm cyberwarfare arsenalSecurity Affairs·Apr 2, 14:40 UTC · Apr 2, 2023Threat actor60
State-sponsored hackers know enterprise VPN appliances inside outHelp Net Security·Apr 23, 13:45 UTC · Apr 23, 2026Threat actorCVE-2024-2189360
Chinese-linked hacking units increasingly use ‘ORBs’ to obfuscate espionage, researchers sayCyberScoop·May 22, 15:19 UTC · May 22, 2024Threat actor in the wild60
Iran hacking group impersonates defense firms, hostage campaignersCyberScoop·Feb 28, 02:00 UTC · Feb 28, 2024Threat actor in the wild60
Nation-State Actors Weaponize Ivanti VPN ZeroThe Hacker News·Jan 17, 01:56 UTC · Jan 17, 2024Threat actor in the wildCVE-2023-46805CVE-2024-21887160
Google shut down thousands of pro-Beijing disinformation channels on Taiwan, COVIDThe Record·Feb 3, 00:00 UTC · Feb 3, 2023Threat actor60
Ghostwriter Disinformation Operation Linked to BelarusInfosecurity Magazine·Nov 17, 10:30 UTC · Nov 17, 2021Threat actor60
China-linked APT groups targets orgs via Pulse Secure VPN devicesSecurity Affairs·May 28, 13:09 UTC · May 28, 2021Threat actorCVE-2021-2289360
Cantwell claims telecoms blocked release of Salt Typhoon reportCyberScoop·Feb 3, 23:09 UTC · Feb 3, 2026Threat actor in the wild60
CISA warns of ‘significant’ threat to federal networks after nation-state hackers stole F5 source code, undisclosed bug infoThe Record·Oct 15, 16:56 UTC · Oct 15, 2025Threat actor in the wildCVE-2023-4674760
Compromised SAP NetWeaver instances are ushering in opportunistic threat actorsHelp Net Security·May 15, 11:51 UTC · May 15, 2025Threat actor in the wildCVE-2025-31324CVE-2025-4299960
Russian Hackers Sandworm Cause Power Outage in Ukraine Amidst Missile StrikesThe Hacker News·Nov 10, 14:43 UTC · Nov 10, 2023Threat actor60
Lazarus X_TRADER Hack Impacts Critical Infrastructure Beyond 3CX BreachThe Hacker News·Apr 24, 15:44 UTC · Apr 24, 2023Threat actor60
Sprawling, multi-year Iranian cyberespionage and surveillance group exposed in new reportCyberScoop·Sep 7, 16:32 UTC · Sep 7, 2022Threat actor in the wild60
Microsoft ties January Ukraine attack to notorious Sandworm groupCyberScoop·Apr 27, 17:00 UTC · Apr 27, 2022Threat actor60
US gov agencies e private firms warn nation-state actors are targeting ICS & SCADA devicesSecurity Affairs·Apr 14, 15:10 UTC · Apr 14, 2022Threat actorCVE-2020-1536860
Chinese APT41 Group Compromises Six US Government NetworksInfosecurity Magazine·Mar 9, 09:30 UTC · Mar 9, 2022Threat actor60
Erin Joe joins FireEye as SVP of Strategy and AlliancesHelp Net Security·Jul 14, 00:00 UTC · Jul 14, 2021Threat actor60
Multiple APT Groups Exploit Critical Pulse Secure ZeroInfosecurity Magazine·Apr 21, 10:30 UTC · Apr 21, 2021Threat actorCVE-2021-22893CVE-2019-11510CVE-2020-8243+1 CVEs60
UNC1945, a threat actor used Oracle Solaris ZeroSecurity Affairs·Nov 4, 00:32 UTC · Nov 4, 2020Threat actorCVE-2020-1487160
Salt Typhoon Exploits Flaws in Edge Network Devices to Breach 600 Organizations WorldwideThe Hacker News·Sep 5, 12:40 UTC · Sep 5, 2025Threat actorCVE-2018-0171CVE-2023-20198CVE-2023-20273+3 CVEs60