⤷ Title: Sandworm APT Exploits Trojanized KMS Tools to Target Ukrainian Users in Cyber Espionage Campaign
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 12 Feb 2025 02:09:30 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT44 #BACKORDER #BACKORDER loader #DcRAT malware #Sandworm APT
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 12 Feb 2025 02:09:30 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT44 #BACKORDER #BACKORDER loader #DcRAT malware #Sandworm APT
Cybersecurity News
Sandworm APT Exploits Trojanized KMS Tools to Target Ukrainian Users in Cyber Espionage Campaign
Learn about the notorious Sandworm APT44 and their state-sponsored cyber espionage targeting Ukrainian Windows users with trojanized KMS activators.
⤷ Title: APT44: The Evolution of a Cyber Threat – From Power Grid Attacks to the ‘BadPilot’ Campaign
════════════════════════
𐀪 Author: Pietro Romano / SecBeret
════════════════════════
ⴵ Time: Sun, 16 Feb 2025 10:55:19 GMT
════════════════════════
⌗ Tags: #apt44 #cyberattack #malware #cybersecurity #threat_actor
════════════════════════
𐀪 Author: Pietro Romano / SecBeret
════════════════════════
ⴵ Time: Sun, 16 Feb 2025 10:55:19 GMT
════════════════════════
⌗ Tags: #apt44 #cyberattack #malware #cybersecurity #threat_actor
Medium
[CyberThreat] APT44: The Evolution of a Cyber Threat
From Power Grid Attacks to the ‘BadPilot’ Campaign
⤷ Title: CVE-2024-1709 and CVE-2023-48788: Exploits Fueling Russia’s BadPilot Campaign
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 17 Feb 2025 01:31:25 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT44 #BadPilot #BadPilot campaign #BlackEnergy Lite #CVE_2021_34473 #CVE_2022_41352 #CVE_2023_48788 #CVE_2024_1709 #SANDWORM #Seashell Blizzard #ShadowLink
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 17 Feb 2025 01:31:25 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT44 #BadPilot #BadPilot campaign #BlackEnergy Lite #CVE_2021_34473 #CVE_2022_41352 #CVE_2023_48788 #CVE_2024_1709 #SANDWORM #Seashell Blizzard #ShadowLink
Daily CyberSecurity
CVE-2024-1709 and CVE-2023-48788: Exploits Fueling Russia's BadPilot Campaign
Uncover the threats posed by Seashell Blizzard, a cyber espionage group behind the BadPilot campaign targeting critical sectors.
⤷ Title: Russia-Linked Threat Actors Exploiting Signal Messenger to Eavesdrop on Sensitive Communications
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Feb 2025 01:27:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT44 #javascript #QR codes #Robocopy #Russia_Linked Threat Actors #Signal Messenger #UAC_0195 #UNC5792
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Feb 2025 01:27:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT44 #javascript #QR codes #Robocopy #Russia_Linked Threat Actors #Signal Messenger #UAC_0195 #UNC5792
Cybersecurity News
Russia-Linked Threat Actors Exploiting Signal Messenger to Eavesdrop on Sensitive Communications
A report from Google Threat Intelligence Group has revealed a coordinated effort by multiple Russia-aligned threat actors to compromise Signal Messenger accounts
⤷ Title: Amazon: Russian GRU hackers favor misconfigured devices over vulnerabilities
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 16 Dec 2025 17:55:38 +0000
════════════════════════
⌗ Tags: #Security #0day #Amazon #APT44 #AWS #Curly COMrades #Cyber Attack #Cyber Crime #Cybersecurity #GRU #Malware #Russia #Sandworm #Seashell Blizzard #Vulnerability
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 16 Dec 2025 17:55:38 +0000
════════════════════════
⌗ Tags: #Security #0day #Amazon #APT44 #AWS #Curly COMrades #Cyber Attack #Cyber Crime #Cybersecurity #GRU #Malware #Russia #Sandworm #Seashell Blizzard #Vulnerability
Hackread
Amazon: Russian GRU hackers favor misconfigured devices over vulnerabilities
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Sandworm’s Tactical Pivot: Russian GRU Abandons Zero-Days to Weaponize Misconfigured Edge Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 01:57:59 +0000
════════════════════════
⌗ Tags: #Cyber Security #Amazon Threat Intelligence #APT44 #Credential Replay #Critical Infrastructure #Curly COMrades #Edge Device #GRU #misconfiguration #SANDWORM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 01:57:59 +0000
════════════════════════
⌗ Tags: #Cyber Security #Amazon Threat Intelligence #APT44 #Credential Replay #Critical Infrastructure #Curly COMrades #Edge Device #GRU #misconfiguration #SANDWORM
Daily CyberSecurity
Sandworm’s Tactical Pivot: Russian GRU Abandons Zero-Days to Weaponize Misconfigured Edge Devices
Sandworm (APT44) has shifted tactics, favoring misconfigured edge devices over complex exploits to breach energy and telecom sectors via credential replay.
⤷ Title: Under Siege: GTIG Report Exposes North Korean Spies & Russian Drone Hacks in Defense Sector
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:50:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT44 #cyber_espionage #Defense Industrial Base #Drone Security #Edge Device Security #Google Threat Intelligence #GTIG #Insider Threat #North Korean IT workers #SANDWORM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:50:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT44 #cyber_espionage #Defense Industrial Base #Drone Security #Edge Device Security #Google Threat Intelligence #GTIG #Insider Threat #North Korean IT workers #SANDWORM
Daily CyberSecurity
Under Siege: GTIG Report Exposes North Korean Spies & Russian Drone Hacks in Defense Sector
GTIG report: Defense Industrial Base faces "constant siege" from Russian drone hackers & North Korean IT insiders. Learn the new threats.