NightEagle, also tracked as APT-Q-95, has expanded from China to Russian firms, using stolen VPN creds, Exchange abuse, and GhostContainer to infiltrate networks and deepen access. #Russia #NightEagle #APTQ95
Explore
NightEagle (APT-Q-95) has expanded from Asia to Russian companies, using stolen VPN credentials, GhostContainer on Exchange, BlueKeep exploitation, and tunneling to persist and move laterally. #Russia #NightEagle #APTQ95
