Google renamed APT28, FIN7, and Sandworm again. Welcome to the CTI naming wars. https://intel.threadlinqs.com/threat/TL-2026-2608 #ThreatIntel #Turla #APT28 #FIN7

Google renamed APT28, FIN7, and Sandworm again. Welcome to the CTI naming wars. https://intel.threadlinqs.com/threat/TL-2026-2608 #ThreatIntel #Turla #APT28 #FIN7
Malware that phones home to Gemini and Hugging Face just to rewrite itself and invent new attack commands. https://intel.threadlinqs.com/threat/TL-2026-2559 #ThreatIntel #PROMPTFLUX #LAMEHUG #APT28
Trellix’s latest threat-hunting report traces state-backed phishing, the #DarkSword iPhone exploit kit, a Node.js-based crypto stealer, and poisoned Axios npm packages across five covert campaigns.
Listen/Read: hackread.com/trellix-dark...
HOOKEDGE infiltrates Europe via Word macros, hidden Edge tasks & webhook abuse—BlueDelta’s latest low-signal espionage. #Cybersecurity #HOOKEDGE #APT28 #BlueDelta #Backdoor #Espionage https://thedailytechfeed.com/hookedge-new-russian-backdoor-hits-european-diplomacy-and-defense/
FancyBear Exposed: Major OPSEC Blunder Inside Russian Espionage Ops #APT28
New Opendir Exposed the server-side C2 components that revealed additional functionality.
https://
ctrlaltintel.com/threat%20…
🔁 RT @blackorbird | reposted by @HackingLZ
https://x.com/blackorbird/status/2034202136545046825