GRU's BlueDelta Targets Key Networks in Europe with Multi-Phase Espionage CampRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actor60
BlueDelta Exploits Ukrainian Government Roundcube Mail Servers to Support Espionage ActivitiesRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2020-35730CVE-2023-23397CVE-2020-12641+1 CVEs60
APT28 hacked Roundcube email servers of Ukrainian entitiesSecurity Affairs·Jun 21, 19:20 UTC · Jun 21, 2023Threat actorCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
Russia-Aligned TAG-110 Targets Asia and Europe with HATVIBE and CHERRYSPYRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2024-2369260
APT28 targets key networks in Europe with HeadLace malwareSecurity Affairs·Jun 3, 09:55 UTC · Jun 3, 2024Malware55
Microsoft Warns of Widescale Credential Stealing Attacks by Russian HackersThe Hacker News·Jun 27, 14:11 UTC · Jun 27, 2023Exploit / PoCCVE-2020-12641CVE-2020-35730CVE-2021-44026+1 CVEs60
Update Now: Critical Zimbra Classic Web Client Flaw Could Expose MailboxesSecurity Affairs·Jul 10, 20:42 UTC · Jul 10, 2026Data breach in the wildCVE-2025-68645CVE-2020-7796CVE-2025-6637660
Kremlin appoints cyber executive with alleged GRU ties to Security Council roleThe Record·Jun 26, 00:00 UTC · Jun 26, 2026Data breach60
Russia-linked APT28 uses PRISMEX to infiltrate Ukraine and allied infrastructure with advanced tacticsSecurity Affairs·Apr 8, 20:23 UTC · Apr 8, 2026Threat actorCVE-2026-21509CVE-2026-2151360
Russian APT targets Ukraine via Zimbra XSS flaw CVE-2025Security Affairs·Mar 19, 14:48 UTC · Mar 19, 2026Vulnerability in the wildCVE-2025-6637660
APT28 exploits Microsoft Office flaw in Operation NeusploitSecurity Affairs·Feb 3, 12:13 UTC · Feb 3, 2026Threat actor in the wildCVE-2026-2150960
Security Affairs newsletter Round 559 by Pierluigi PaganiniSecurity Affairs·Jan 18, 13:46 UTC · Jan 18, 2026Exploit / PoC in the wild60
Russia-Aligned TAG-70 Targets European Government and Military Mail Servers in New Espionage CampaignRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actorCVE-2023-2339760
Understanding the Retaliation Window: Cybersecurity Risks and Response TimingRecorded Future·Jun 30, 00:00 UTC · Jun 30, 2025Ransomware60
Kremlin-linked hackers target webmail servers of Eastern European government agenciesThe Record·May 15, 14:13 UTC · May 15, 2025Exploit / PoC60
Russia-Linked APT28 Exploited MDaemon ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2025Threat actor in the wildCVE-2020-12641CVE-2020-35730CVE-2021-44026+3 CVEs60
⚡ Weekly Recap: Nation-State Hacks, Spyware Alerts, Deepfake Malware, Supply Chain BackdoorsThe Hacker News·May 6, 05:03 UTC · May 6, 2025MalwareCVE-2025-3928CVE-2025-1976CVE-2025-46271+33 CVEs60
France links Russian APT28 to attacks on dozen French entitiesSecurity Affairs·Apr 30, 13:58 UTC · Apr 30, 2025Threat actorCVE-2023-2339760
France blames Russian military intelligence for years of cyberattacks on local entitiesThe Record·Apr 29, 16:53 UTC · Apr 29, 2025Exploit / PoC60
Security Affairs newsletter Round 475 by Pierluigi PaganiniSecurity Affairs·Jun 9, 08:56 UTC · Jun 9, 2024Ransomware in the wildCVE-2024-435860
Russian APT28 Hackers Targeting 13 Nations in Ongoing Cyber Espionage CampaignThe Hacker News·May 31, 10:02 UTC · May 31, 2024Threat actorCVE-2023-38831CVE-2023-2339760
NATO and the EU formally condemned APT28 cyber espionageSecurity Affairs·May 12, 16:39 UTC · May 12, 2024Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Russia-linked APT28 targets government Polish institutionsSecurity Affairs·May 10, 11:07 UTC · May 10, 2024Threat actorCVE-2023-2339760
Microsoft Outlook Flaw Exploited by Russia's APT28 to Hack Czech, German EntitiesThe Hacker News·May 9, 05:20 UTC · May 9, 2024Threat actorCVE-2023-23397CVE-2022-3802860
APT28 Hacker Group Targeting Europe, Americas, Asia in Widespread Phishing SchemeThe Hacker News·Mar 19, 13:33 UTC · Mar 19, 2024Threat actorCVE-2023-2339760
Russia-aligned hackers target European and Iranian embassies in new espionage campaignThe Record·Feb 17, 01:36 UTC · Feb 17, 2024Threat actor in the wildCVE-2023-4377060
U.S. Government Disrupts RussiaThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Data breachCVE-2023-2339760
OpenAI shuts down accounts linked to 5 nationThe Record·Feb 14, 20:23 UTC · Feb 14, 2024Vulnerability55
Massive missile strike disrupts Kyiv's internet and power supplyThe Record·Jan 2, 15:08 UTC · Jan 2, 2024Threat actor60
Microsoft Warns of Kremlin-Backed APT28 Exploiting Critical Outlook VulnerabilityThe Hacker News·Dec 8, 08:55 UTC · Dec 8, 2023VulnerabilityCVE-2023-23397CVE-2023-3883160
Russia's APT8 exploited Outlook 0day to target EU NATO membersSecurity Affairs·Dec 8, 00:07 UTC · Dec 8, 2023Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accountsSecurity Affairs·Dec 5, 14:19 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-40444+4 CVEs60
Kaspersky Security Bulletin: APT predictions 2024Kaspersky Securelist·Nov 14, 10:00 UTC · Nov 14, 2023AdvisoryCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
ANSSI warns of RussiaSecurity Affairs·Oct 27, 13:34 UTC · Oct 27, 2023Data breachCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Espionage group uses webmail server zeroThe Record·Oct 25, 12:08 UTC · Oct 25, 2023Threat actorCVE-2023-5631CVE-2020-3573060
Russia-Backed APT28 Tried to Attack Ukrainian Critical Power FacilityInfosecurity Magazine·Sep 6, 12:30 UTC · Sep 6, 2023Threat actor60
Ukraine's CERT Thwarts APT28's Cyberattack on Critical Energy InfrastructureThe Hacker News·Sep 6, 08:02 UTC · Sep 6, 2023Threat actorCVE-2023-3883160
Security Affairs newsletter Round 425 by Pierluigi PaganiniSecurity Affairs·Jun 25, 15:26 UTC · Jun 25, 2023Ransomware in the wildCVE-2023-20178CVE-2023-20887CVE-2023-27992+4 CVEs60
CISA says latest VMware analytics bug being exploitedThe Record·Jun 23, 12:17 UTC · Jun 23, 2023Exploit / PoC in the wildCVE-2023-20887CVE-2016-9079CVE-2016-016560