Cozy Bear

‘Russia’ Breaches TeamViewer — ‘No Evidence’ Billions of Devices at Risk
Richi Jennings | | 2-factor authentication, 2fa, 2FA/MFA, APT29, Cozy Bear, CozyCar, CozyDuke, Dark Halo, enshittification, MFA, mfa protection, Midnight Blizzard, multi-factor, multi-factor authenication, Multi-Factor Authentication, Multi-Factor Authentication (MFA), multi-factor-auth, NOBELIUM, Nobeliumm, Office Monkeys, Russia, russia hacker, russia-based, russian, SB Blogwatch, SolarWinds, SolarWinds Vulnerability, solarwinds-hack, StellarParticle, SVR, TeamViewer, The Dukes, two-factor, two-factor athentication, Two-Factor Humor, two-factor-authentication.2fa, UNC2452, YTTRIUM
SolarWinds hackers strike again: Remote access service hacked—by APT29, says TeamViewer ...
Security Boulevard

Russia Hacked Microsoft Execs — SolarWinds Hackers at it Again
Richi Jennings | | APT29, azure, Azure cloud, Cozy Bear, lateral attack, lateral movement, LateralMovement, Microsoft, Microsoft 365, Midnight Blizzard, password spraying, Russia, Russian Cyber War, Russian cybercrime, Russian FSB, Russian hacker, Russian hackers, Russian hacking, Russian Threat Actors, SB Blogwatch
AKA APT29: Midnight Blizzard / Cozy Bear makes it look easy (and makes Microsoft look insecure) ...
Security Boulevard

New Russian Hacks Revealed—but U.S. Says it’s Microsoft’s Fault
Richi Jennings | | APT29, Cozy Bear, Microsoft, Russia, SB Blogwatch, SolarWinds, This story is a massive nothingburger
Microsoft has issued another of its “look how clever we are” writeups of detecting APT29 hackers. But the U.S. government sees it differently ...
Security Boulevard

U.S. Takes Aim at Russia’s Cyber Ops Ecosystem
The Biden administration is taking the Russian cyber operations ecosystem to task with sanctions pointed at both established Russian companies as well as Russian-controlled entities created by the FSB, GRU and SVR ...
Security Boulevard

U.S. Fingers Putin’s Cozy Bear for SolarWinds Attacks
To the surprise of precisely nobody, the NSA, FBI and CISA agreed that last year’s SolarWinds supply-chain attack was orchestrated by the Russian state ...
Security Boulevard

VMware Flaw a Vector in SolarWinds Breach?
BrianKrebs | | APT 29, Ars Technica, cisa, Cozy Bear, Cyber Security and Infrastructure Security Agency, Data breaches, Duo, FSB, Microsoft Outlook Web App, New York Times, nsa, SAML token compromise, Security Assertion Markup Language, The Coming Storm, U.S. National Security Agency, VMware, Volexity, Washington Post
U.S. government cybersecurity agencies warned this week that the attackers behind the widespread hacking spree stemming from the compromise at network software firm SolarWinds used weaknesses in other, non-SolarWinds products to attack ...

SUNBURST: Russia Fingered in ‘Perfect 10’ Supply Chain Attack
Richi Jennings | | APT29, Cozy Bear, fireeye, SB Blogwatch, SolarWinds, SUNBURST, supply chain attack
Russian spies have been operating inside countless enterprises and government agencies, thanks to a hack of SolarWinds ...
Security Boulevard

Dutch Spies Monitored Russian ‘Cozy Bear’ Hackers in Real Time For Years
Intelligence services from the Netherlands reportedly had access to the computer network used by a Russian cyberespionage group known as Cozy Bear for years, watching the group break into the U.S. National ...
Security Boulevard