kremlin cyber campaigns

About this tag
The Kremlin cyber campaigns tag covers discussions about state-sponsored cyber espionage operations linked to the Russian government. Recent content highlights Secret Blizzard, a threat actor tracked by Microsoft as VENOMOUS BEAR, Turla, WRAITH, and ATG26. This group has been conducting ISP-level attacks in Moscow since early 2024, targeting foreign diplomats and embassies. The campaign uses network manipulation to intercept data from diplomats' devices. Microsoft Threat Intelligence has issued warnings about these sophisticated operations, which pose significant risks to diplomatic security. The tag focuses on technical analysis, attribution, and defensive measures against such advanced persistent threats.
  1. Secret Blizzard: Kremlin-Backed ISP-Level Cyber Espionage Targeting Diplomats in Moscow

    In a revelation that has sent shockwaves through diplomatic circles and cybersecurity communities alike, recent investigations have exposed a Kremlin-backed espionage campaign leveraging local internet service providers (ISPs) within Moscow to target foreign embassies and siphon intelligence...