Amazon shuts down watering hole attack attributed to Russia’s APT29 hacking groupThe Record·Sep 3, 00:03 UTC · Sep 3, 2025Threat actor145
Amazon Disrupts APT29 Watering Hole Campaign Abusing Microsoft Device Code AuthenticationThe Hacker News·Aug 30, 04:26 UTC · Aug 30, 2025Threat actor45
Russian APT29 conducts phishing attacks through Microsoft TeamsSecurity Affairs·Aug 3, 07:21 UTC · Aug 3, 2023Threat actor45
Russia-linked APT29 group changes TTPs following April advisoriesSecurity Affairs·May 7, 21:03 UTC · May 7, 2021Threat actorCVE-2021-26855CVE-2018-13379CVE-2019-1653+9 CVEs50
Suspected APT29 hackers behind attacks on US gov agenciesSecurity Affairs·Nov 18, 09:35 UTC · Nov 18, 2018Threat actor45
APT29 group used red team tools in rogue RDP attacksSecurity Affairs·Dec 18, 22:24 UTC · Dec 18, 2024AI safety & security30
Russian APT29 Exploits Gmail App Passwords to Bypass 2FA in Targeted Phishing CampaignThe Hacker News·Jun 19, 08:14 UTC · Jun 19, 2025Threat actor45
APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDPThe Hacker News·Dec 19, 06:09 UTC · Dec 19, 2024Threat actor45
Kremlin-linked hackers target Ukraine’s state, military agencies in new espionage campaignThe Record·Oct 25, 16:23 UTC · Oct 25, 2024Threat actor45
When Pentest Tools Go Brutal: Red-Teaming Tool Being Abused by Malicious ActorsPalo Alto Unit 42·Jun 5, 20:22 UTC · Jun 5, 2024AI safety & security30
Russian hackers using red team tools for largeThe Record·Dec 18, 20:31 UTC · Dec 18, 2024AI safety & security130
How attackers use and abuse Microsoft MFAHelp Net Security·Aug 24, 00:00 UTC · Aug 24, 2022Data breach45
Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance MalwareThe Hacker News·Aug 1, 06:29 UTC · Aug 1, 2026Malware30
Russia’s ‘Midnight Blizzard’ hackers target government workers in novel infoThe Record·Oct 30, 01:26 UTC · Oct 30, 2024Malware30
Midnight Blizzard Targets Travelers via Captive PortalsInfosecurity Magazine·Aug 3, 14:30 UTC · Aug 3, 2026Malware30
Unusually patient suspected Russian hackers pose as State Department in ‘sophisticated’ attacks on researchersCyberScoop·Jun 18, 17:00 UTC · Jun 18, 2025Malware30
Russian Hackers Use Commercial Spyware Exploits to Target VictimsInfosecurity Magazine·Aug 30, 11:30 UTC · Aug 30, 2024MalwareCVE-2023-41993CVE-2024-5274CVE-2024-467135
Russian hackers breached Dutch police systems in 2017The Record·Dec 9, 00:00 UTC · Dec 9, 2022Data breach45
Why Election Interference Attempts Are Getting Harder to DetectThe Record·Nov 16, 00:00 UTC · Nov 16, 2022Data breach45
Hackers Abusing BRc4 Red Team Penetration Tool in Attacks to Evade DetectionThe Hacker News·Jul 7, 05:12 UTC · Jul 7, 2022AI safety & security30
MITRE’s ATT&CK to assess cybersecurity products based on APT29/Cozy Bear/The DukesHelp Net Security·May 3, 00:00 UTC · May 3, 2019Threat actor45
Russian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft saysThe Record·Aug 3, 12:21 UTC · Aug 3, 2026Malware30
Device Code Phishing Hits 340+ Microsoft 365 Orgs Across Five Countries via OAuth AbuseThe Hacker News·Mar 31, 12:52 UTC · Mar 31, 2026Phishing & fraud30
UAC-0050 Targets European Financial Institution With Spoofed Domain and RMS MalwareThe Hacker News·Feb 24, 14:21 UTC · Feb 24, 2026Malware30
Russia-Linked Hackers Use Microsoft 365 Device Code Phishing for Account TakeoversThe Hacker News·Dec 30, 07:57 UTC · Dec 30, 2025Phishing & fraud30
SOLARDEFLECTION C2 Infrastructure Used by NOBELIUM in Company Brand MisuseRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actor145
Russia Expert Falls Prey to Elite Hackers Disguised as US OfficialsInfosecurity Magazine·Jun 20, 09:00 UTC · Jun 20, 2025Threat actor45
Takeover of British Russia expert’s email accounts used novel phishing tacticThe Record·Jun 18, 18:33 UTC · Jun 18, 2025Phishing & fraud30
CrowdStrike, Microsoft aim to eliminate confusion in threat group attributionCyberScoop·Jun 3, 16:28 UTC · Jun 3, 2025Malware30
Russian Hackers Exploit Microsoft OAuth to Target Ukraine Allies via Signal and WhatsAppThe Hacker News·Apr 30, 09:51 UTC · Apr 30, 2025Threat actor145
UAC-0226 Deploys GIFTEDCROOK Stealer via Malicious Excel Files Targeting UkraineThe Hacker News·Apr 8, 10:12 UTC · Apr 8, 2025Malware30
Microsoft: Russian-Linked Hackers Using 'Device Code Phishing' to Hijack AccountsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025Phishing & fraud130
Midnight Blizzard delivered iOS, Chrome exploits via compromised government websitesHelp Net Security·Aug 29, 00:00 UTC · Aug 29, 2024VulnerabilityCVE-2023-41993CVE-2024-5274CVE-2024-4671+1 CVEs35
Microsoft: Russian hackers accessed internal systems, code repositoriesHelp Net Security·Mar 11, 00:00 UTC · Mar 11, 2024Malware30
Russian-Linked Hackers Target 80+ Organizations via Roundcube FlawsThe Hacker News·Feb 20, 10:28 UTC · Feb 20, 2024Vulnerability30
Russian Cyber Espionage Group Deploys LitterDrifter USB Worm in Targeted AttacksThe Hacker News·Nov 20, 06:05 UTC · Nov 20, 2023Threat actorCVE-2023-3883150
Three ways MITRE ATT&CK can improve your organizational securityHelp Net Security·Sep 25, 06:34 UTC · Sep 25, 2023Vulnerability30
Russia-Linked Hackers Launches Espionage Attacks on Foreign Diplomatic EntitiesThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2023Threat actor45
Threat Actors Turn to Sliver as Open Source Alternative to Popular C2 FrameworksThe Hacker News·Jan 24, 03:37 UTC · Jan 24, 2023Threat actor45