APT28 Uses Signal Chat to Deploy BEARDSHELL Malware and COVENANT in UkraineThe Hacker News·Sep 17, 18:18 UTC · Sep 17, 2025MalwareCVE-2020-35730CVE-2021-44026CVE-2020-1264147
APT28 hacked Roundcube email servers of Ukrainian entitiesSecurity Affairs·Jun 21, 19:20 UTC · Jun 21, 2023Threat actorCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
BlueDelta Exploits Ukrainian Government Roundcube Mail Servers to Support Espionage ActivitiesRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2020-35730CVE-2023-23397CVE-2020-12641+1 CVEs60
Roundcube flaws allow easy email account compromise (CVE-2024-42009, CVE-2024-42008)Help Net Security·Jun 10, 06:52 UTC · Jun 10, 2025Vulnerability in the wildCVE-2024-42009CVE-2024-42008CVE-2024-42010+4 CVEs60
Russian Hackers Exploit Email and VPN Vulnerabilities to Spy on Ukraine Aid LogisticsThe Hacker News·May 22, 07:30 UTC · May 22, 2025VulnerabilityCVE-2023-23397CVE-2020-12641CVE-2020-35730+2 CVEs35
Russia-Linked APT28 Exploited MDaemon ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2025Threat actor in the wildCVE-2020-12641CVE-2020-35730CVE-2021-44026+3 CVEs60
NATO and the EU formally condemned APT28 cyber espionageSecurity Affairs·May 12, 16:39 UTC · May 12, 2024Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Roundcube webmail XSS vulnerability exploited by attackers (CVE-2023-43770)Help Net Security·Feb 15, 11:46 UTC · Feb 15, 2024Vulnerability in the wildCVE-2023-43770CVE-2020-35730CVE-2021-4402660
Russia's APT8 exploited Outlook 0day to target EU NATO membersSecurity Affairs·Dec 8, 00:07 UTC · Dec 8, 2023Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accountsSecurity Affairs·Dec 5, 14:19 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-40444+4 CVEs60
Kaspersky Security Bulletin: APT predictions 2024Kaspersky Securelist·Nov 14, 10:00 UTC · Nov 14, 2023AdvisoryCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
ANSSI warns of RussiaSecurity Affairs·Oct 27, 13:34 UTC · Oct 27, 2023Data breachCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Microsoft Warns of Widescale Credential Stealing Attacks by Russian HackersThe Hacker News·Jun 27, 14:11 UTC · Jun 27, 2023Exploit / PoCCVE-2020-12641CVE-2020-35730CVE-2021-44026+1 CVEs60
Security Affairs newsletter Round 425 by Pierluigi PaganiniSecurity Affairs·Jun 25, 15:26 UTC · Jun 25, 2023Ransomware in the wildCVE-2023-20178CVE-2023-20887CVE-2023-27992+4 CVEs60
CISA adds recently disclosed Apple flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 23, 23:25 UTC · Jun 23, 2023Exploit / PoC in the wildCVE-2023-32434CVE-2023-32435CVE-2023-32439+6 CVEs60