Turla APT: Russia’s Longstanding Cyber Espionage Powerhouse
ID: 97b45b70-a68f-53b9-9fd7-73f4e630a957
STIX ID: report--97b45b70-a68f-53b9-9fd7-73f4e630a957
Feed Name: Brandefense Blog
This report profiles Turla (aka Snake/Uroburos), a long-standing Russian state-linked APT active since the early 2000s, detailing its modular stealth malware (Snake, Carbon, Kazuar, Epic Turla), sophisticated persistence (rootkits, scheduled tasks, credential theft), multi-hop and satellite C2 techniques, historical and recent campaigns targeting governments, NATO, diplomatic missions and critical infrastructure across Europe, the Middle East and North America, and defensive recommendations including EDR/XDR, phishing-resistant MFA, segmentation and threat hunting for known toolsets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
