"Turla is a Russian-speaking hacking group known for its cutting-edge espionage malware. In mid-2014, researchers from Symantec documented malware dubbed Wipbot that infiltrated the Windows-based systems of embassies and governments of multiple European countries, many of them former Eastern Bloc nations. A few months later, researchers at Kaspersky Lab discovered an extremely stealthy Linux backdoor... Continue Reading →
One of the Earliest News Reports on Turla – Russian Hacker Group
"One of the most sophisticated and prolonged cyber espionage campaigns ever seen has been targeting major governments and militaries for more than six years, researchers have revealed." "Dubbed the ‘Turla’ hackers, initial intelligence had indicated western powers were key targets, but it was later determined embassies for Eastern Bloc nations were of more interest." "Embassies... Continue Reading →
One of the Earliest News Reports on APT35 (a.k.a. Ajax Security) – Iranian Hacker Group
“This group, which has its roots in popular Iranian hacker forums such as Ashiyane and Shabgard, has engaged in website defacements since 2010. However, by 2014, this group had transitioned to malware-based espionage, using a methodology consistent with other advanced persistent threats in this region.It is unclear if the Ajax Security Team operates in isolation or if they... Continue Reading →
Early Overview of APT33: “New Group of Iranian Hackers Linked to Destructive Malware”
"Security firm FireEye has released new research into a group it calls Advanced Persistent Threat 33 (APT33), attributing (to it) a prolific series of breaches of companies in the aerospace, defense, and petrochemical industries in countries as wide-ranging as Saudi Arabia, South Korea, and the US. While FireEye has closely tracked APT33 since May of... Continue Reading →
Another Early (Aug. 15, 2016) News Report on the Shadow Brokers – The Most Mysterious Hacker Group
This news report (https://blog.comae.io/shadow-brokers-nsa-exploits-of-the-week-3f7e17bdc216) gives an overview of the contents of the first set of cyber weapons dumped by the Shadow Brokers and provides a link to a detailed list (with descriptions) of the contents of this cyber weapons dump. This news report also provides a full copy of the challenge (i.e. text) thrown by... Continue Reading →
One of the Earliest News Reports on the Shadow Brokers – The Most Mysterious Hacker Group
“The hacking world’s attention was captivated Monday [August 16, 2016] morning when a group called the Shadow Brokers claimed to have hacked the National Security Agency’s Equation Group, a team of American hackers that have been described as both “omnipotent” and “the most advanced” threat cyberspace has ever seen.” “While ranting against “wealthy elites,” the... Continue Reading →
NotPetya Malware – The Most Destructive Cyber-Attack to Date
What is the name of the virus or worm? NotPetya. Initial reports, by the Kaspersky Lab (a Russian anti-virus firm), on the virus responsible for the June 27, 2017 cyberattack, identified the virus as a variant of the “Petya” ransomware[i] (an earlier, much less harmful ransomware which first appeared in March 2016[ii]). However, the company later... Continue Reading →