state-sponsored
211 articles with this tag
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
MEDIUM
INFO
HIGH
HIGH
MEDIUM
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
INFO
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
INFO
HIGH
INFO
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
HIGH
INFO
MEDIUM
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
Russian hackers exploited Zimbra zero-day in espionage campaigns
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
US warns of Iran-linked attacks on critical infrastructure
Russian hackers exploit unpatched Zimbra servers to steal emails
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
Russian hackers exploit Zimbra zero-click flaw for email theft
Year-long Russian attacks infect users as soon as they look at an email
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
North Korea's IT worker scheme funds Russia's war effort, report finds
North Korea’s IT worker scheme funds Russia’s war effort
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
Microsoft Exchange Hacked, Five Years Later
ChainVeil and ViteVenom are DPRK’s PolinRider Campaign
New North Korean campaign uses fake coding interviews to steal developer credentials
Suspected Chinese snoops caught breaking into universities' Roundcube mailservers
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage
PolinRider Confirmed Footprint Grows 6.5x Since March
GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
Governments to enterprises: Improve your router security hygiene
Weak Security Continues to Fuel Russian Cyberattacks
Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns
One Target, Two Flags | Rival Espionage Actors Converge On Pakistani Law Enforcement
Suspected Chinese Threat Group Targets Universities via Vulnerable Roundcube Servers
North Korean PolinRider supply chain attack targets 108 unique repos
Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer
China-Linked Group Targets Southeast Asia Critical Systems
USB drives carrying China-linked malware infected Japanese military networks for nearly a year
Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government Attacks
Gamaredon Expands Ukraine Attacks with New Malware and Cloud Service Abuse
Russia Used Cellebrite on Jailed Activist's iPhone Months After Sales Cutoff
Mystery hackers use novel SharkLoader dropper against governments, software devs
Google Details Turla's New STOCKSTAY Backdoor Used in Ukraine Espionage Attacks
Russian APT 'Gamaredon' Upgrades Its Arsenal, Requiring New Defenses
STOCKSTAY Another Day: The Latest Addition to Turla’s Intelligence Gathering Apparatus
macOS.Gaslight | Rust Backdoor Turns Prompt Injection on the Analyst, Not the Sandbox
Segir Belarúsa gera Rússum kleift að gera langdrægar drónaárásir á Úkraínu
CrowdStrike 2026 Technology Threat Landscape Report: China’s Ambitions Fuel Attacks
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware
Google exposes China espionage group that’s been lurking in networks undetected since 2023
China-Nexus Actor Spied on US Researchers Undetected for a Year
PRC-linked spies hid inside medical and military networks for more than a year, snooping through Gmail and stealing data
Chinese hackers hijack auth flow, spy on isolated network for a decade
China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade
Iran-linked group Handala claims to steal Cal Water customer info
Russian national charged in connection with Void Blizzard cyberespionage campaign
Russian national charged in connection with Void Blizzard espionage campaign
Chinese, N. Korean Threat Groups Build on Asia-Pacific Success
China-Linked JDY Botnet Expands to 1,500+ Devices for Cyber Reconnaissance
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices
North Korean Hackers Use Fake Coding Tasks to Steal Crypto
Pro-Russian hacker group launches 'Patriotic Online Games' campaign targeting European organizations
New China-linked threat cluster OP-512 targets Microsoft IIS servers
China-linked actors using job sites to target government workers, Five Eyes warns
Five Eyes: Watch out for odd LinkedIn connection requests, China's back on the hunt for state secrets
Pakistan Spies on Afghan Finance Ministry With Xeno RAT
Tropical Blend: Cyber & Politics Ramp Up Across Latin America
SideCopy group targets Afghanistan's Ministry of Finance with Xeno RAT
Gamaredon Exploits WinRAR to Deliver GammaWorm and GammaSteel Against Ukraine
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices
LABScon25 Replay | Gamaredon x Turla: Unveiling a 2025 Espionage Alliance Targeting Ukraine
Fast and Furious – Nimbus Manticore Operations During the Iranian Conflict
Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code Tunnels
GreyVibe hackers use ChatGPT, Gemini to power cyberattacks
Russia-Linked ‘GreyVibe’ Attackers Use AI to Supercharge Cyberattacks
Oil shipments, drone makers, and a poisoned code library targeted in recent APT campaigns
Ghostwriter Targets Ukraine Government Entities with Prometheus Phishing Malware
China's Webworm Uses Discord, Microsoft Graphs to Hack EU Govts.
New Linux malware 'Showboat' targets Middle East telecom provider
Poland directs officials to cease Signal use amid cyberattack concerns
Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph API
Malaysian government-linked campaign used hidden infrastructure for years
Turla group evolves Kazuar backdoor into modular P2P botnet
Russian hackers turn Kazuar backdoor into modular P2P botnet
The spy who logged me in.
Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent Access
China-Linked Hackers Deploy New TencShell Malware Against Global Manufacturer
FrostyNeighbor: Fresh mischief and digital shenanigans
State-sponsored actors, better known as the friends you don’t want
Vibe Hacking: Two AI-Augmented Campaigns Target Government and Financial Sectors in Latin America
CISA urges critical infrastructure to plan for prolonged service delivery during emergencies
North Korea's abuse of Cloudflare Workers and Pages
State-sponsored hackers likely behind zero-day attacks on Palo Alto firewalls
Chinese-linked Salt Typhoon suspected in Italy's Sistemi Informativi breach
This month in security with Tony Anscombe – April 2026 edition
Fast16 Malware
Iran-linked Handala hackers leak US Marines data, send chilling WhatsApp threats
Researchers unearth industrial sabotage malware that predated Stuxnet by 5 years
Alleged Chinese State Hacker Extradited to US
Chinese National Extradited Over Silk Typhoon Cyber Campaign
Chinese Silk Typhoon Hacker Extradited to U.S. Over COVID Research Cyberattacks
Chinese engineer stole US military and NASA software for years
Chinese national extradited to US for pandemic-era Silk Typhoon attacks
China-Linked APT GopherWhisper Abuses Legitimate Services in Government Attacks
US, allies warn of industrialized Chinese botnets
GopherWhisper: A burrow full of malware
AI is speeding up nation-state cyber programs
With AI’s help, North Korean hackers stumbled into a near-undetectable attack