logo

VOLTZITE Threat Group’s Under the Radar Cyber Espionage on U.S. Critical Systems

ID: 52e28dca-5b96-5e88-930e-0f253d897b15

STIX ID: report--52e28dca-5b96-5e88-930e-0f253d897b15

Feed Name: Dragos Blog

Threat Score
90/100

Date Published: 2024-02-22

Date Updated: 2026-04-27

...
...

VOLTZITE is an active espionage threat group observed targeting U.S. and international critical infrastructure—electric utilities, emergency management, telecommunications, satellite services, and defense—since 2023. Dragos reports the group uses living-off-the-land techniques, web shells, and FRP (fast reverse proxy) for C2, often routing traffic through compromised SOHO devices or leased VPSs, exhibits strong operational security and long dwell times, overlaps with several known threat clusters, and provides IOCs and detection recommendations via its public intelligence brief.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.