logo

Russian Hacker Breaches Companies, Sells Their Access and Spies on Ukrainian Military Sites

ID: d68dc053-257a-5829-bd61-49c411a505a9

STIX ID: report--d68dc053-257a-5829-bd61-49c411a505a9

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2026-08-04

Date Updated: 2026-08-04

Author: Tushar Subhra Dutta

ADMIRALTY:B6
...
...

CloudSEK discovered a Russian-speaking operator conducting large-scale scans and exploiting at least a dozen vulnerabilities in widely used appliances to gain initial access, harvest credentials and create persistent footholds; access was staged for resale to ransomware groups and later repurposed for targeted espionage against Ukrainian defence and aerospace organizations, using web shells, Sliver C2, Kerberos ticket forging and exposed camera feeds — the report includes IoCs and remediation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.