- APT 2018 -

APT List  H  2021  2020  2019  2018  2017  2016


Date

Name

Category

Web

22.12.18

Industry Reactions to U.S. Charging APT10 Hackers: Feedback Friday

APTSecurityweek

22.12.18

Historic APT10 Cyber Espionage Group Breached Systems in Over 12 CountriesAPTBleepingcomputer

21.12.18

'Five Eyes' Nations Blame China for APT10 AttacksAPTSecurityweek

20.12.18

Russia-linked Sofacy APT developed a new ‘Go’ variant of Zebrocy tool

APT

Securityaffairs

18.12.18

Charming Kitten Iranian Espionage Campaign Thwarts 2FA

APT

Net-security

14.12.18

New Sofacy campaign aims at Government agencies across the worldAPTSecurityaffairs

14.12.18

Shamoon 3 Targets Energy Sector in Middle EastAPTSecurityweek

13.12.18

Operation Sharpshooter Takes Aim at Global Critical Assets

APT

Threatpost

13.12.18Op 'Sharpshooter' Uses Lazarus Group Tactics, Techniques, and ProceduresAPT

Bleepingcomputer

11.12.18

Seedworm APT Group targeted more than 130 victims in 30 organizations since Sept

APTSecurityaffairs
5.12.18Adobe Fixes Zero-Day Flash Player Vulnerability Used in APT Attack on RussiaAPTBleepingcomputer

4.12.18

Russia-linked APT Sofacy leverages BREXIT lures in recent attacksAPTSecurityaffairs

24.11.18

North Korea-linked group Lazarus targets Latin American banks

APT

Securityaffairs

23.11.18

Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits

APTSecurityaffairs
22.11.18Sofacy APT group used a new tool in latest attacks, the CannonAPTPBWCZ.CZ
21.11.18Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29APTPBWCZ.CZ
21.11.18Experts analyzed how Iranian OilRIG hackers tested their weaponized documentsAPTPBWCZ.CZ

21.11.18

New Cannon Trojan Is the Latest Asset of Sofacy APT Group

APT

Bleepingcomputer

20.11.18Iran-Linked Hackers Use Just-in-Time Creation of Weaponized Attack DocsAPTPBWCZ.CZ

20.11.18

Sofacy APT Takes Aim with Novel ‘Cannon’ Trojan

APT

Threatpost

20.11.18

APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign

APT

Threatpost

19.11.18Suspected APT29 hackers behind attacks on US gov agencies, think tanks, and businessesAPTPBWCZ.CZ
17.11.18Cybaze ZLab- Yoroi team spotted a new variant of the APT28 Lojax rootkitAPTPBWCZ.CZ

15.11.18

tRat Emerges as New Pet for APT Group TA505

APT

Threatpost

14.11.18APT Group Uses Windows Zero-Day in Middle East AttacksAPTPBWCZ.CZ
14.11.18APT Simulation Provider XM Cyber Raises $22 MillionAPTPBWCZ.CZ
11.11.18Symantec shared details of North Korean Lazarus’s FastCash Trojan used to hack banksAPTPBWCZ.CZ
20.10.18DarkPulsarAPTPBWCZ.CZ
20.10.18DarkPulsar FAQAPTPBWCZ.CZ
20.10.18Attackers behind Operation Oceansalt reuse code from Chinese Comment CrewAPTPBWCZ.CZ
19.10.18'GreyEnergy' Cyberspies Target Ukraine, PolandAPTPBWCZ.CZ
19.10.18'Operation Oceansalt' Reuses Code from Chinese Group APT1APTPBWCZ.CZ
17.10.18Russia-linked BlackEnergy backed new cyber attacks on Ukraine’s state bodiesAPT  BigBrothersPBWCZ.CZ
17.10.18Russia-linked APT group DustSquad targets diplomatic entities in Central AsiaAPTPBWCZ.CZ
13.10.18MuddyWater expands operationsAPTPBWCZ.CZ
13.10.18Threats in the NetherlandsAPTPBWCZ.CZ
11.10.18New Gallmaker APT group eschews malware in cyber espionage campaignsAPTPBWCZ.CZ
10.10.18CVE-18-8453 Zero-Day flaw exploited by FruityArmor APT in attacks aimed at Middle EastAPT  VulnerebilityPBWCZ.CZ
8.10.18Shedding Skin – Turla’s Fresh FacesAPTPBWCZ.CZ
8.10.18APT28 group return to covert intelligence gathering ops in Europe and South America.APTPBWCZ.CZ
5.10.18North Korean Attacks on Banks Attributed to 'APT38' GroupAPTPBWCZ.CZ
4.10.18NKorea Said to Have Stolen a Fortune in Online Bank HeistsAPTPBWCZ.CZ
4.10.18Hidden Cobra APT used the new ATM cash-out scheme FASTCash to hit banks worldwideAPTPBWCZ.CZ
4.10.18APT38 is behind financially motivated attacks carried out by North KoreaAPTPBWCZ.CZ
3.10.18Researchers associated the recently discovered NOKKI Malware to North Korean APTAPTPBWCZ.CZ
27.9.18Russian Cyberspies Use UEFI Rootkit in AttacksAPT  CyberSpyPBWCZ.CZ
27.9.18Russian Sednit APT used the first UEFI rootkit of ever in attacks in the wildAPTPBWCZ.CZ
17.9.18China-linked APT10 group behind new attacks on the Japanese media sectorAPTPBWCZ.CZ
15.9.18China-linked APT10 Hackers Update Attack TechniquesAPTPBWCZ.CZ
14.9.18Iran-Linked OilRig APT group targets high-ranking office in a Middle Eastern nationAPTPBWCZ.CZ
11.9.18Chinese LuckyMouse APT has been using a digitally signed network filtering driver in recent attacksAPTPBWCZ.CZ
10.9.18Domestic Kitten – An Iranian surveillance operation under the radar since 2016APTPBWCZ.CZ
6.9.18CrowdStrike uncovered a new campaign of GOBLIN PANDA APT aimed at VietnamAPTPBWCZ.CZ
6.9.18Group-IB UncoversAPT- attacks on Banks: The Sound of SilenceAPTPBWCZ.CZ
6.9.18 New OilRig APT campaign leverages a new variant of the OopsIE TrojanAPTPBWCZ.CZ
31.8.18Researchers Draw Connections Between APTsAPTPBWCZ.CZ
29.8.18Iran-linked COBALT DICKENS group targets universities in new phishing campaignAPTPBWCZ.CZ
28.8.18North Korea-linked Hackers Stole $13.5 Million From Cosmos Bank: ReportAPTPBWCZ.CZ
24.8.18 Turla Backdoor Controlled via Email AttachmentsAPTPBWCZ.CZ
24.8.18North Korea-linked Lazarus APT uses first Mac malware in cryptocurrency exchange attackAPTPBWCZ.CZ
24.8.18Latest Turla backdoor leverages email PDF attachments as C&C mechanismAPTPBWCZ.CZ
21.8.18Microsoft says Russian hackers continue targeting 18 midterm electionsAPTPBWCZ.CZ
20.8.18 North Korea-linked Dark Hotel APT leverages CVE-18-8373 exploitAPTPBWCZ.CZ
3.8.18Alleged Iran-linked APT group RASPITE targets US electric utilitiesAPTPBWCZ.CZ
28.7.18Russian APT28 espionage group targets democratic Senator Claire McCaskillAPTPBWCZ.CZ
24.7.18DHS – Russian APT groups are inside US critical infrastructureAPTPBWCZ.CZ
23.7.18CSE Malware ZLab – Chinese APT27 ’s long-term espionage campaign in Syria is still ongoingAPTPBWCZ.CZ
19.7.18Update CSE Malware ZLab – Operation Roman Holiday – Hunting the Russian APT28APTPBWCZ.CZ
19.7.18APT Trends Report Q2 18APTPBWCZ.CZ
12.7.18 New Attacks on Palestine Linked to 'Gaza Cybergang'APTPBWCZ.CZ
12.7.18China-based TEMP.Periscope APT targets Cambodia’s electionsAPTPBWCZ.CZ
11.7.18 BlackTech APT using stolen D-Link certificates to spread malwareAPTPBWCZ.CZ
3.7.18Iranian Charming Kitten ATP group poses as Israeli cybersecurity firm in phishing campaignAPTPBWCZ.CZ
26.6.18China Tick APT group targeting air-gapped systems in AsiaAPTPBWCZ.CZ
26.6.18Lazarus APT hackers leverages HWP Documents in a recent string of attacksAPTPBWCZ.CZ
24.6.18According to the experts, North Korea is behind the SWIFT attacks in Latin AmericaAPTPBWCZ.CZ
21.6.18China-linked Thrip APT group target defense and satellite firmsAPTPBWCZ.CZ
18.6.18China-Linked APT15 is still very active, experts found its new malware tracked as ‘MirageFox’APTPBWCZ.CZ
18.6.18China-Linked APT15 Develops New 'MirageFox' MalwareAPTPBWCZ.CZ
17.6.18LuckyMouse hits national data center to organize country-level waterholing campaignAPTPBWCZ.CZ
16.6.18A new MuddyWater Campaign spreads Powershell-based PRB-BackdoorAPTPBWCZ.CZ
14.6.18China-linked Emissary Panda APT group targets National Data Center in AsiaAPTPBWCZ.CZ
13.6.18Chinese Cyberspies Target National Data Center in AsiaAPTPBWCZ.CZ
13.6.18North Korea-linked Lazarus APT behind recent ActiveX attacksAPTPBWCZ.CZ
8.6.18Russia-linked Sofacy APT group adopts new tactics and tools in last campaignAPTPBWCZ.CZ
6.6.201North Korea-Linked Covellite APT group stopped targeting organizations in the U.S.APTPBWCZ.CZ
1.6.18North Korea-linked Andariel APT Group exploited an ActiveX Zero-Day in recent attacksAPTPBWCZ.CZ
30.5.18US-CERT issued an alert on two malware associated with North Korea-linked APT Hidden CobraAPTPBWCZ.CZ
24.5.18Turla APT group leverages for the first time the Metasploit framework for the Mosquito campaignAPTPBWCZ.CZ
24.5.18Justice Department announces actions to disrupt the VPNFilter botnetAPTPBWCZ.CZ
23.5.18North Korea-linked Sun Team APT group targets deflectors with Android MalwareAPTPBWCZ.CZ
7.5.18Russia-linked Hackers Exploit Lojack Recovery Tool in AttacksAPTPBWCZ.CZ
7.5.18 A new report sheds the lights on state-sponsored Chinese APTs under Winnti umbrellaAPTPBWCZ.CZ
7.5.18Researchers Link Several State-Sponsored Chinese Spy GroupsAPTPBWCZ.CZ
5.5.18New ZooPark APT targets Android users in Middle East since 2015APTPBWCZ.CZ
4.5.18Who’s who in the ZooAPTPBWCZ.CZ
3.5.18Fancy Bear abuses LoJack security software in targeted attacksAPTPBWCZ.CZ
30.4.18 Op GhostSecret – ThaiCERT seized a server used by North Korea Hidden Cobra APT group in the Sony Picture hackAPTPBWCZ.CZ
28.4.18Researchers Dissect Tool Used by Infamous Russian Hacker GroupAPTPBWCZ.CZ
24.4.18 Energetic Bear/Crouching Yeti: attacks on serversAPTPBWCZ.CZ
24.4.18Kaspersky’s analysis of servers compromised by Energetic Bear shows the APT operates on behalf of othersAPTPBWCZ.CZ
21.4.18Exclusive – APT group exploited still unpatched zero-day in IE dubbed ‘double play’APTPBWCZ.CZ
14.4.18APT Trends report Q1 18APTPBWCZ.CZ
13.4.18 APT33 devised a code injection technique dubbed Early Bird to evade detection by anti-malware toolsAPTPBWCZ.CZ
6.4.18OSX_OCEANLOTUS.D, a new macOS backdoor linked to APT 32 groupAPTPBWCZ.CZ
5.4.18North Korea-Linked Lazarus APT suspected for online Casino assaultAPTPBWCZ.CZ
29.3.18 Your new friend, KLaraAPTPBWCZ.CZ
21.3.18XM Cyber Unveils Automated Purple-Teaming at Speed and ScaleAPTPBWCZ.CZ
19.3.18Experts discovered remotely exploitable buffer overflow vulnerability in MikroTik RouterOSAPTPBWCZ.CZ
18.3.18Russia-linked Sofacy APT targets an unnamed European Government agencyAPTPBWCZ.CZ
18.3.18Chinese APT Group TEMP.Periscope targets US Engineering and Maritime IndustriesAPTPBWCZ.CZ
14.3.18OceanLotus APT is very active, it used new Backdoor in recent campaignsAPTPBWCZ.CZ
12.3.18New North Korea-linked Cyberattacks Target Financial InstitutionsAPTPBWCZ.CZ
12.3.18 Kaspersky – Sofacy ‘s campaigns overlap with other APT groups’ operationsAPTPBWCZ.CZ
10.3.18 Masha and these BearsAPTPBWCZ.CZ
10.3.18The Slingshot APT FAQAPTPBWCZ.CZ
10.3.18APT Hackers Infect Routers to Covertly Implant Slingshot Spying MalwareAPTPBWCZ.CZ
10.3.18North Korean Hidden Cobra APT targets Turkish financial industry with new Bankshot malwareAPTPBWCZ.CZ
9.3.18Sofacy Attacks Overlap With Other State-Sponsored OperationsAPTPBWCZ.CZ
9.3.18 New North Korea-linked Cyberattacks Target Financial InstitutionsAPTPBWCZ.CZ
9.3.18Olympic Destroyer, alleged artifacts and false flag make attribution impossibleAPTPBWCZ.CZ
8.3.18Sophisticated False Flags Planted in Olympic Destroyer MalwareAPTPBWCZ.CZ
2.3.18Iran-Linked Chafer Group Expands Toolset, Targets ListAPTPBWCZ.CZ
2.3.18Russia-linked Hackers Directly Targeting Diplomats: ReportAPTPBWCZ.CZ
1.3.18DPA Report: Russia-linked APT28 group hacked Germany’s government networkAPTPBWCZ.CZ
25.2.18A Slice of 2017 Sofacy ActivityAPTPBWCZ.CZ
24.2.18Iran-linked group OilRig used a new Trojan called OopsIE in recent attacksAPTPBWCZ.CZ
22.2.18Russia-linked Sofacy APT group shift focus from NATO members to towards the Middle East and Central AsiaAPTPBWCZ.CZ
21.2.18North Korean APT Group tracked as APT37 broadens its horizonsAPTPBWCZ.CZ
20.2.18North Korean Hacking Group APT37 Expands TargetsAPTPBWCZ.CZ
5.2.18Gold Dragon Implant Linked to Pyeongchang Olympics AttacksAPTPBWCZ.CZ
3.2.18Chinese Iron Tiger APT is back, a close look at the Operation PZChaoAPTPBWCZ.CZ
28.1.18Iran-linked APT OilRig target IIS Web Servers with new RGDoor BackdoorAPTPBWCZ.CZ
25.1.18A look into the cyber arsenal used by Lazarus APT hackers in recent attacks against financial institutionsAPTPBWCZ.CZ
19.1.18Dark Caracal APT – Lebanese intelligence is spying on targets for yearsAPTPBWCZ.CZ
19.1.18Russia-Linked Attacks on Political Organizations ContinueAPTPBWCZ.CZ
19.1.18 North Korea Group 123 involved in at least 6 different hacking campaigns in 17APTPBWCZ.CZ
10.1.18Turla APT group’s espionage campaigns now employs Adobe Flash Installer and ingenious social engineeringAPTPBWCZ.CZ
2.1.18Force 47 – The Vietnamese brigade tasked with fighting “wrongful views” spreading onlineAPTPBWCZ.CZ
1.1.18Happy IR in the New Year!APTPBWCZ.CZ