logo

State-sponsored threats: Different objectives, similar access paths

ID: 160da75f-e31f-58e6-aed3-dd04d35cb46e

STIX ID: report--160da75f-e31f-58e6-aed3-dd04d35cb46e

Feed Name: Cisco Talos

Threat Score
85/100

Date Published: 2026-04-14

Date Updated: 2026-04-27

Author: Hazel Burton

...
...

Talos' 2025 Year in Review summarizes prolific state-sponsored cyber activity from China, Russia, North Korea, and Iran, noting rapid exploitation of new and long-standing vulnerabilities, persistent access via web shells/backdoors and credential theft, frequent use of known malware families (e.g., DCRAT, Remcos, Smoke Loader), large-scale financially motivated operations (including a reported $1.5B cryptocurrency heist), and correlations between geopolitical events and spikes in offensive activity; the report also provides defensive guidance prioritizing patching, identity security, and increased network visibility.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.