Topic: espionage operations
-
Google: BrickStorm Malware Stole U.S. Data for a Year
A sophisticated cyber espionage campaign using BrickStorm malware successfully stole sensitive data from American technology, legal, SaaS, and BPO companies for over a year before being detected. The malware, attributed to China-linked group UNC5221, is a versatile backdoor that operates stealthi...
Read More » -
APT28 Hackers Use Customized Covenant Tool in New Attacks
A Russian state-sponsored hacking group, APT28, is conducting long-term espionage against Ukrainian government targets using a dual-implant strategy with the malware BeardShell and a modified Covenant framework. The group employs a sophisticated, layered approach where the primary Covenant tool h...
Read More » -
Multiple Threat Groups Exploit Active WinRAR Vulnerability
A critical path traversal vulnerability (CVE-2025-6218) in WinRAR for Windows is being actively exploited, allowing attackers to execute arbitrary code by tricking users into opening malicious files. Multiple sophisticated threat groups, including Bitter APT and Gamaredon, are weaponizing the fla...
Read More »