logo

Ukraine warns Russian hackers are revisiting past breaches to prepare new attacks

ID: cf640540-a2d3-5a33-98f8-63fa8f9ebaad

STIX ID: report--cf640540-a2d3-5a33-98f8-63fa8f9ebaad

Feed Name: The Record from Recorded Future News

Threat Score
85/100

Date Published: 2026-04-03

Date Updated: 2026-05-01

...
...

CERT‑UA reports that Russian-linked threat actors (including APT28 and Void Blizzard) have shifted from rapid 'steal-and-go' intrusions to operations focused on long-term access and persistence, reusing prior breaches as footholds and employing advanced social engineering (phone/video calls using local numbers and messaging apps) to increase successful delivery of malicious files; the security and defense sector remains the primary target.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.