An unknown miscreant is using "TerminalFix" to trick unsuspecting users into running PowerShell commands that infect their ...
Russia GRU espionage campaign targeting NATO defense and diplomatic networks in Romania, Spain, and Turkey deployed the ...
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance.
Russian-linked APT28 hackers use macro-laced Word files to deploy HOOKEDGE backdoor against defense and government targets.
BlueDelta (APT28) uses webhook.site and Microsoft Edge to hide HOOKEDGE espionage traffic targeting European governments.
Recorded Future links HOOKEDGE campaigns targeting European government and diplomatic organizations to APT28 with moderate confidence.
Russian state-linked threat actor BlueDelta, also known as APT28, Fancy Bear, and Forest Blizzard, has launched phishing ...
Core Werewolf uses Telegram phishing and fake government files to deploy CoreRAT, enabling remote control of Windows systems.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results