logo

Turla APT: Russia’s Longstanding Cyber Espionage Powerhouse

ID: 97b45b70-a68f-53b9-9fd7-73f4e630a957

STIX ID: report--97b45b70-a68f-53b9-9fd7-73f4e630a957

Feed Name: Brandefense Blog

Threat Score
90/100

Date Published: 2026-03-10

Date Updated: 2026-04-27

Author: BRANDEFENSE

...
...

This report profiles Turla (aka Snake/Uroburos), a long-standing Russian state-linked APT active since the early 2000s, detailing its modular stealth malware (Snake, Carbon, Kazuar, Epic Turla), sophisticated persistence (rootkits, scheduled tasks, credential theft), multi-hop and satellite C2 techniques, historical and recent campaigns targeting governments, NATO, diplomatic missions and critical infrastructure across Europe, the Middle East and North America, and defensive recommendations including EDR/XDR, phishing-resistant MFA, segmentation and threat hunting for known toolsets.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.