logo

Google's Threat Analysis Group (TAG)

ID: 860e288b-9e83-5059-97e4-6a72743cc174

STIX ID: identity--860e288b-9e83-5059-97e4-6a72743cc174

Feed Type: rss

Earliest post: 2023-03-14

Latest post: 2026-01-29

Updates and research from Google’s elite threat analysis team tracking and countering government-backed attackers, advanced exploits, spyware activity, information operations, and high-impact campaigns across the internet.

01/01/2020
05/29/2026
Title Date Published Describes IncidentAuthorVisible
TAG Bulletin: Q4 20252026-01-29TrueBilly LeonardTrue
State-backed attackers and commercial surveillance vendors repeatedly use the same exploits2024-08-29TrueClement LecigneTrue
Iranian backed group steps up phishing campaigns against Israel, U.S.2024-08-14TrueGoogle Threat Analysis GroupTrue
Google disrupted over 10,000 instances of DRAGONBRIDGE activity in Q1 20242024-06-26TrueZak ButlerTrue
A review of zero-day in-the-wild exploits in 20232024-03-27TrueMaddie StoneTrue
A review of zero-day in-the-wild exploits in 20232024-03-27TrueMaddie StoneTrue
Tool of First Resort: Israel-Hamas War in Cyber2024-02-14TrueSandra JoyceTrue
Tool of First Resort: Israel-Hamas War in Cyber2024-02-14TrueSandra JoyceTrue
TAG Bulletin: Q4 20232024-01-19TrueShane HuntleyTrue
Russian threat group COLDRIVER expands its targeting of Western officials to include the use of malware2024-01-18TrueWesley ShieldsTrue
Zimbra 0-day used to target international government organizations2023-11-16TrueClement LecigneTrue
Government-backed actors exploiting WinRAR vulnerability2023-10-18TrueKate MorganTrue
0-days exploited by commercial surveillance vendor in Egypt2023-09-22TrueMaddie StoneTrue
Active North Korean campaign targeting security researchers2023-09-07TrueClement LecigneTrue
The ups and downs of 0-days2023-07-27TrueMaddie StoneTrue
Ukraine remains Russia’s biggest cyber focus in 20232023-04-19TrueBilly LeonardTrue
How we’re protecting users from government-backed attacks from North Korea2023-04-05TrueAdam WeidemannTrue
Spyware vendors use 0-days and n-days against popular platforms2023-03-29TrueClement LecigneTrue
Magniber ransomware actors used a variant of Microsoft SmartScreen bypass2023-03-14TrueBenoit SevensTrue

1–19 of 19