GRU
AWS Report Links Multi-Year Effort to Compromise Cloud Services to Russia
Amazon Web Services (AWS) today published a report detailing a series of cyberattacks occurring over multiple years attributable to Russia’s Main Intelligence Directorate (GRU) that were aimed primarily at the energy sector ...
Security Boulevard
Response to CISA Advisory (AA25-141A): Russian GRU Targeting Western Logistics Entities and Technology Companies
Ayelen Torello | | adversary emulation, APT28, cisa, CISA Advisory, credential harvesting, Fancy Bear, government, GRU, Russia, spear-phishing, technology, transportation
AttackIQ has released a new assessment template in response to the CISA Advisory (AA25-141A) published on May 21, 2025. The CSA highlights a cyber espionage-oriented campaign carried out by cyber actors affiliated ...
Response to CISA Advisory (AA24-249A): Russian Military Cyber Actors Target US and Global Critical Infrastructure
Francis Guibernau | | adversary emulation, cisa, Critical Infrastructure, cyberespionage, Espionage, GRU, Russia, sabotage, Unit 29155, WhisperGate
AttackIQ has released a new assessment template in response to the CISA Advisory (AA24-249A) published on September 5, 2024, that assesses cyber actors affiliated with the Russian General Staff Main Intelligence Directorate ...
Russian ‘WhisperGate’ Hacks: 5 More Indicted
Richi Jennings | | Cadet Blizzard, Ember Bear, Frozenvista, GRU, GRU Unit 29155, NATO, NATO Member State, Ransomware, Russian GRU, SB Blogwatch, UAC-0056, Ukraine, ukraine conflict, Ukraine Cyber Attacks, Ukraine Cyber War, Ukraine cyberattack, Ukraine-Russia War, UNC2589, WhisperGate Wiper
Eaten by a GRU: Fake ransomware created by Russian GRU Unit 29155 attacked Ukraine and NATO—a month before the full scale invasion ...
Security Boulevard
Germany Warns Russia: Hacking Will Have Consequences
Richi Jennings | | Annalena Baerbock, APT28, Fancy Bear, Germany, GRU, Microsoft Outlook, Microsoft Outlook bug, Military Unit 26165, NATO, outlook, outlook hack, Russia, Russia-Ukraine, russia-ukraine conflict, SB Blogwatch, Strontium, Ukraine, Ukraine-Russia War, Ukraine/European Security
War of the words: Fancy Bear actions are “intolerable and unacceptable,” complains German foreign minister Annalena Baerbock ...
Security Boulevard
FBI Warns: Ubiquiti EdgeRouter is STILL Not Secure
Richi Jennings | | APT28, Botnet disruption, Botnet Takedown, botnets, CVE-2023-23397, EdgeRouter, Fancy Bear, FBI warning, GRU, IC3, IC3.gov, Military Unit 26165, nsa, NSA/CISA, NTLM, NTLM Authentication, NTLM hash, NTLM leak, ntlm relay, Russia, russia hacker, russia-based, russian, Russian Cyber Interests, Russian Cyber War, SB Blogwatch, Ubiquiti, Ubiquiti breach, Ubiquiti Inc., Ubiquiti Networks, US FBI
GRU APT28 is back again: Fancy Bear still hacking ubiquitous gear, despite patch availability ...
Security Boulevard
Russia Sends Cybersecurity CEO to Jail for 14 Years
BrianKrebs | | Evil Corp., Fancy Bear, Financial Times, Group-IB, GRU, Ilya Sachkov, Kaspersky Lab, Maksim Yakubets, Max Seddon, Ruslan Stoyanov, Sergei Mikhailov, The Coming Storm
The Russian government today handed down a treason conviction and 14-year prison sentence on Iyla Sachkov, the former founder and CEO of one of Russia's largest cybersecurity firms. Sachkov, 37, has been ...
‘But His Emails!’ — Ukrainian Hackers Hack Hillary Hacker
Richi Jennings | | APT28, DCLeaks, Democratic National Committee, democrats, DNC, DNC hack, Fancy Bear, FBI, GRU, hillary clinton, Russia, SB Blogwatch, Sergey Aleksandrovich Morgachev, Strontium, Ukraine
Beware Fancy Bears Bearing Gifts: Confirms DCLeaks caper was by APT28. Also that APT28 is Russian military unit ...
Security Boulevard
Ukraine Beats Russia in Cyberwarfare — at ‘Unprecedented Scale’
Richi Jennings | | ddos, GRU, IT Army, NotPetya, PSYOPS, Russia, Sandworm, SB Blogwatch, Tunguska comet should have hit Moscow, Ukraine, Unit 74455
Russia is attacking Ukraine with cyberattacks and psyops. But the scale is pathetic and Ukraine is fighting back—hard ...
Security Boulevard
Actions Target Russian Govt. Botnet, Hydra Dark Market
BrianKrebs | | Ars Technica, Asus, Beserk Bear, Cyclops Blink, Dan Goodin, Dragonfly 2.0, FBI, Federal Security Service, Garantex, German Federal Criminal Police Office, GRU, Hydra Market, Main Intelligence Directorate, Ne'er-Do-Well News, NotPetya, Ransomware, Russian FSB, Sandworm, TRISIS, triton, U.S. Department of Justice, U.S. Department of Treasury, Voodoo Bear, VPNFilter, WatchGuard, Web Fraud 2.0
The U.S. Federal Bureau of Investigation (FBI) says it has disrupted a giant botnet built and operated by a Russian government intelligence unit known for launching destructive cyberattacks against energy infrastructure in ...

