Tag

#Russia

35 stories taggedRussia.

Illustration: a dimly lit laptop screen showing a generic email inbox with a red-tinted paperclip attachment icon
Threat Intelligence

Russia's Star Blizzard drops the ClickFix act and switches to one-click RedFlick malware

Microsoft says the FSB-linked crew has scaled up its phishing and streamlined how it plants its CosmicPulse backdoor. More than 100 organisations in the US and UK have been hit this year.

4 min read
A security research facility with multiple threat intelligence dashboards displayed on screens, showing attack campaign attribution maps and malware analysis da
Threat Intelligence

Kaspersky Names Three Hacking Crews Going After Russian Companies

Kaspersky says NightEagle, Hacking Cat and Toy Ghouls are running separate campaigns against Russian firms, with NightEagle showing fresh persistence tricks.

3 min read
A European government office desk with a smartphone displaying encrypted messaging apps, surrounded by classified document folders and a computer showing securi
Threat Intelligence

Russian Hackers Are Phishing EU Officials on WhatsApp and Signal

Eight serious attacks on European government staff have exposed a gap no one planned for: officials trusting consumer messaging apps with sensitive business.

4 min read
A command-line terminal window displaying batch script code with Cyrillic character hints and European government email domains visible in logs, set against a d
Threat Intelligence

HOOKEDGE: A New Backdoor Aimed at European Government Networks, With Fingerprints Pointing to Russia

Recorded Future says a lightweight Windows batch script is being used against foreign ministries and government offices in Romania, Spain and Türkiye, with tentative links to the group tracked as APT28.

3 min read
A laptop screen glowing in darkness shows streams of social media posts and chat messages flowing rapidly across multiple platform windows, with a VPN connectio
AI Security

OpenAI Cuts Off Russian Accounts Using ChatGPT to Fake Political Voices Online

A network hiding behind VPNs used the chatbot to churn out posts for a phony think tank called the International Burke Institute across Substack, Telegram, X and LinkedIn.

3 min read
A satellite network operations facility with technicians monitoring large displays showing satellite coverage maps and network status, with AI-powered security
AI Security

After Russian Hackers Knocked Out a Satellite Network, an AI Tool Is Now Stress-Testing Its Defences

Viasat's satellite network was crippled by a Russian cyberattack in 2022. Now an AI-assisted security tool from Atalanta is being used to check whether the rebuilt defences can hold.

3 min read
A web browser window showing the extension management page with numerous fake VPN add-ons installed, their permission requests and data collection warnings visi
Identity & Access

737 Fake VPN Extensions in Chrome Store Quietly Hijacked Browsers

The free browser add-ons promised to unblock websites for Russian speakers. Instead they routed every page a user visited through servers the operators controlled.

4 min read
A laptop screen showing a professional job offer email with subtle malware indicators hidden in the interface, dimly lit against a shadowy background suggesting
Threat Intelligence

Fake Job Offers From Russian Hackers Target Ukrainian IT Staff

Ukraine's cyber emergency team says a Sandworm subgroup is posing as recruiters to slip remote-control malware onto engineers' laptops.

3 min read
An official government sanctions document displayed on a desk with a world map in the background showing Russia and New Zealand highlighted, cybercrime and huma
Policy & Regulation

New Zealand Sanctions 33 Russia-Linked Cyber Operators and Child Abduction Networks

Wellington's latest penalties name hackers and individuals tied to the forced removal of Ukrainian children, signalling that digital warfare now sits alongside human-rights abuses on the sanctions list.

3 min read
A split-screen showing a legitimate Russian petrochemical company website on one side and an identical fake clone on the other, with payment forms and wire tran
Threat Intelligence

Fake Russian company websites ran a nine-year scam on foreign buyers

Fraudsters cloned real Russian fertilizer and petrochemical firms, then pocketed advance payments from international customers.

3 min read
A messaging app interface on a screen showing blocked channels and takedown notices, with a courtroom silhouette visible in the background glass reflection, sug
Policy & Regulation

Russia Charges Telegram's Pavel Durov With Aiding Terrorism

The FSB says Telegram refused to take down channels it flagged. Durov, living abroad, calls the case political theatre.

4 min read
Composite security threat scene: industrial network switches with flashing indicators, Zimbra email server interface, and Stadler Rail locomotive imagery all vi
Vulnerabilities

Three Security Stories You May Have Missed: Industrial Switches, Russian Email Spying, and a Rail Ransomware Shakedown

Flaws in Siemens industrial network hardware, a Russian espionage campaign targeting Zimbra webmail servers, and a ransomware extortion attempt against Swiss train maker Stadler Rail.

3 min read
A computer screen displaying an opened email in a webmail interface, with malicious code invisibly executing in the background, represented by subtle system pro
Vulnerabilities

Russian Hackers Are Reading Your Email Just by Sending You One: Zimbra Zero-Day Explained

A Kremlin-linked crew tracked as LAUNDRY BEAR is exploiting CVE-2025-66376 in Zimbra webmail to steal 90 days of email the moment a victim opens a booby-trapped message.

4 min read
Illustration: A weatherworn CCTV camera mounted on a concrete post at dusk overlooking an empty motorway in eastern Europe
Threat Intelligence

Russian spies are hijacking Europe's security cameras to watch weapons move to Ukraine

Dutch intelligence says a Kremlin unit is quietly logging into internet-connected CCTV to track military convoys, aid shipments and troop positions.

3 min read
Illustration: a dimly lit server room in a Russian government building
Threat Intelligence

Hackers hijack Russian security tool ViPNet to spy on government agencies

A campaign called HelloNet has been slipping malicious files into ViPNet updates since May, hitting Russian ministries, energy firms and transport operators.

3 min read
© 2026 Threat Vectr