government-backed attacks
![US Department of Justice](https://img.helpnetsecurity.com/wp-content/uploads/2024/02/16114335/usa-doj-1400-1-400x200.jpg)
US offers $10 million for information on indicted WhisperGate malware suspect
A federal grand jury in Maryland returned an indictment charging a Russian citizen with conspiracy to hack into and destroy computer systems and data. If convicted, he faces a …
![Fortinet](https://img.helpnetsecurity.com/wp-content/uploads/2024/05/29114619/fortinet-1500-400x200.webp)
20,000 FortiGate appliances compromised by Chinese hackers
Coathanger – a piece of malware specifically built to persist on Fortinet’s FortiGate appliances – may still be lurking on too many devices deployed worldwide. How …
![MITRE](https://img.helpnetsecurity.com/wp-content/uploads/2024/05/08124824/mitre-2024-2-400x200.webp)
MITRE breach details reveal attackers’ successes and failures
MITRE has shared a timeline of the recent breach if fell victim to and has confirmed that it began earlier than previously thought: on December 31, 2023. On that day, the …
![Cisco](https://img.helpnetsecurity.com/wp-content/uploads/2023/06/12084248/cisco-neon1-400x200.jpg)
Hackers backdoored Cisco ASA devices via two zero-days (CVE-2024-20353, CVE-2024-20359)
A state-sponsored threat actor has managed to compromise Cisco Adaptive Security Appliances (ASA) used on government networks across the globe and use two zero-day …
![Microsoft](https://img.helpnetsecurity.com/wp-content/uploads/2024/04/03095125/microsoft-threat-1500-400x200.webp)
A “cascade” of errors let Chinese hackers into US government inboxes
Microsoft still doesn’t known how Storm-0558 attackers managed to steal the Microsoft Services Account cryptographic key they used to forge authentication tokens needed …
![Microsoft Russia](https://img.helpnetsecurity.com/wp-content/uploads/2024/03/11125649/microsoft-russia-1500-400x200.webp)
Microsoft: Russian hackers accessed internal systems, code repositories
Midnight Blizzard (aka APT29), a group of Russian hackers tied to the country’s Foreign Intelligence Service (SVR), has leveraged information stolen from Microsoft …
![Ivanti](https://img.helpnetsecurity.com/wp-content/uploads/2024/02/28130430/ivanti-1500-400x200.webp)
State-sponsored hackers know enterprise VPN appliances inside out
Suspected Chinese state-sponsored hackers leveraging Ivanti Connect Secure VPN flaws to breach a variety of organizations have demonstrated “a nuanced understanding of …
![AI](https://img.helpnetsecurity.com/wp-content/uploads/2023/06/14123407/ai-robots-400x200.jpg)
How are state-sponsored threat actors leveraging AI?
Microsoft and OpenAI have identified attempts by various state-affiliated threat actors to use large language models (LLMs) to enhance their cyber operations. Threat actors …
![breach](https://img.helpnetsecurity.com/wp-content/uploads/2024/02/07153034/breach-attack-1400-400x200.jpg)
Chinese hackers breached Dutch Ministry of Defense
Chinese state-sponsored hackers have breached the Dutch Ministry of Defense (MOD) last year and deployed a new remote access trojan (RAT) malware to serve as a backdoor. …
![roundcube](https://img.helpnetsecurity.com/wp-content/uploads/2023/10/25130744/roundcube-400x200.jpg)
Roundcube webmail zero-day exploited to spy on government entities (CVE-2023-5631)
The Winter Vivern APT group has been exploiting a zero-day vulnerability (CVE-2023-5631) in Roundcube webmail servers to spy on email communications of European governmental …
![WinRAR](https://img.helpnetsecurity.com/wp-content/uploads/2023/08/21122249/winrar-400x200.jpg)
State-sponsored APTs are leveraging WinRAR bug
A number of government-backed APTs are exploiting CVE-2023-38831, a file extension spoofing vulnerability in WinRAR, a widely used file archiver utility for Windows. …
![Microsoft Teams](https://img.helpnetsecurity.com/wp-content/uploads/2023/07/10152148/ms-teams4-400x200.jpg)
Russian APT phished government employees via Microsoft Teams
An APT group linked to Russia’s Foreign Intelligence Service has hit employees of several dozen global organizations with phishing attacks via Microsoft Teams, says …