Microsoft uncovers Russian cyberespionage campaign targeting foreign embassies in Moscow.

Microsoft uncovers Russian cyberespionage campaign targeting foreign embassies in Moscow.

Microsoft Threat Intelligence has revealed the existence of a sophisticated cyberespionage operation led by the Russian state-affiliated actor known as Secret Blizzard—also tracked under aliases including Turla, Waterbug, and Venomous Bear. This campaign specifically targets foreign embassies and diplomatic personnel within Moscow, leveraging advanced adversary-in-the-middle (AiTM) tactics at the Internet Service Provider (ISP) level to facilitate the deployment of their custom ApolloShadow malware.
In what could be the most significant cyberattack targeting Russian civil infrastructure, hackers say they took down Aeroflot, Russia’s largest airline.

In what could be the most significant cyberattack targeting Russian civil infrastructure, hackers say they took down Aeroflot, Russia’s largest airline.

Russia’s flagship carrier, Aeroflot, faced a widespread disruption on Monday morning as a catastrophic failure of its information technology systems forced the airline to cancel dozens of flights. The incident affected both domestic and international operations, leaving thousands of passengers stranded and triggering a criminal investigation.
France says they have arrested the administrator of XSS.is, one of the longest-running Russian cybercrime forums on the dark web.

France says they have arrested the administrator of XSS.is, one of the longest-running Russian cybercrime forums on the dark web.

French authorities have confirmed the arrest of a suspected administrator of XSS.is, one of the longest-running Russian-language cybercrime forums on the dark web. The arrest was carried out in Ukraine on July 22, 2025, through a coordinated international operation involving French law enforcement, Ukrainian authorities, and Europol.
UK sanctions Russia military units, the GRU, and 18 operatives for malicious cyber activity, espionage, and attempted assassinations.

UK sanctions Russia military units, the GRU, and 18 operatives for malicious cyber activity, espionage, and attempted assassinations.

The United Kingdom has announced a new round of sanctions targeting three units of Russia’s military intelligence agency, the GRU, along with 18 of their operatives, in response to a pattern of malicious cyber activity, espionage, and attempted assassinations directed at the UK, Ukraine, and other European allies.
Russia’s state-sponsored APT28 threat actors are employing a previously unknown software called Authentic Antics against email systems.

Russia’s state-sponsored APT28 threat actors are employing a previously unknown software called Authentic Antics against email systems.

The UK’s National Cyber Security Centre (NCSC) has identified a new cyber espionage campaign attributed to Russian military intelligence operatives. According to a recent report, threat actors associated with the GRU—specifically the well-known group APT28—have been actively utilizing a previously unknown malicious software known as “Authentic Antics” to carry out targeted cyber operations against email systems.
Ukrainian operatives cyberattack on Russia’s Gaskar Group delivers devastating blow to Russia’s UAV drone program.

Ukrainian operatives cyberattack on Russia’s Gaskar Group delivers devastating blow to Russia’s UAV drone program.

In a bold display of cyber warfare, Ukrainian operatives say they have executed a devastating attack against Gaskar Group, one of Russia’s most critical suppliers of unmanned aerial vehicles (UAVs) for its military operations. According to statements from Ukrainian hacking collectives and corroborated by official sources, the operation resulted in significant data destruction, operational disruption, and the exposure of sensitive company information.
Operation Eastwood takes down more than 100 DDoS servers used to support Russia’s invasion of Ukraine.

Operation Eastwood takes down more than 100 DDoS servers used to support Russia’s invasion of Ukraine.

In a major international effort, law enforcement agencies across 19 countries have successfully disrupted a vast network of servers used to carry out cyberattacks in support of Russia’s invasion of Ukraine. The coordinated action, codenamed Operation Eastwood, targeted the pro-Russian hacktivist group NoName057(16), known for orchestrating large-scale distributed denial-of-service (DDoS) attacks against Ukraine and its allies.
Russian flag with x marked through it

How Russian bots target critics to trigger AI-driven social media account suspensions.

Social media platforms have become battlegrounds for influence, information warfare, and censorship. Among the most sophisticated actors exploiting these platforms are Russian-linked bot networks, which use targeted campaigns and automated reporting tools to silence critics, manipulate narratives, and trigger account suspensions. I know, my Instagram account is a frequent target of theirs.
Computer hacker holding a silicon computer chip

Former semiconductor engineer gets 3 years in prison for stealing sensitive chip technology for Russia.

A Dutch court has sentenced German Aksenov, a former engineer at leading semiconductor firms ASML and NXP, to three years in prison for stealing sensitive chip technology and illegally transferring it to a contact in Russia. The high-profile case underscores the growing risks of industrial espionage in the global semiconductor industry and the strict enforcement of European Union sanctions on technology exports to Russia.
Russia’s aim to legalize ethical hacking is… thwarted?

Russia’s aim to legalize ethical hacking is… thwarted?

Russia’s reputation as a global hub for cybercrime continues to grow, even as the country’s lawmakers recently rejected a bill aimed at legalizing ethical hacking. The decision underscores the complex relationship between Russia’s state security apparatus, its burgeoning cybercriminal underground, and the challenges of regulating cybersecurity in an era of escalating digital threats.