Apt Groups
The latest Apt Groups coverage — news, analysis, and updates from the WindowsNews.AI desk.
Kremlin-Linked Hackers Hijack Moscow ISPs to Steal Diplomatic Data via Microsoft 365 OAuth Attacks
The web of Russian cyber-espionage has grown significantly more tangled and audacious over the past several years, evolving into a sophisticated set of campaigns that now target diplomats, NGOs,...
Critical SharePoint Vulnerabilities Lead to Sophisticated Cyberattack on U.S. National Nuclear Security Administration
When news broke that the U.S. National Nuclear Security Administration (NNSA) had fallen victim to a sophisticated cyberattack leveraging a Microsoft SharePoint vulnerability, it sent shockwaves...
Comprehensive Analysis of the Microsoft SharePoint Zero-Day Attack: Risks, Responses, and Future Security Strategies
A wave of unease has swept through global IT circles in the wake of a sophisticated cyber attack targeting Microsoft SharePoint servers—a scenario that underscores the challenges and stakes of...
Critical Zero-Day SharePoint Exploit Exposes UK and Global Enterprises to Remote Code Execution Attacks
A wave of anxiety rippled across the United Kingdom’s cybersecurity community following the National Cyber Security Centre’s (NCSC) announcement of a “limited number” of UK-based...
Iran Web Attacks Surge 400% Since 2020: Infrastructure, Finance Hit Hard
The destruction of Iran's nuclear infrastructure through military strikes may have temporarily halted its atomic ambitions, but it has simultaneously accelerated the country's pivot toward asymmetric...
LapDogs Cyber Espionage: How SOHO Devices Are Being Exploited via ORB Networks
A sophisticated cyber espionage campaign, dubbed "LapDogs," has been uncovered by security researchers, targeting small office/home office (SOHO) devices worldwide. This operation has already...
BlueNoroff's Deepfake & Mac Malware Attacks: A New Era of Cyber Threats (2025)
North Korean hacking group BlueNoroff has escalated its cyber warfare tactics, combining deepfake technology with sophisticated macOS malware in a series of high-profile attacks targeting financial...
Stealth Falcon APT Exploits Windows WebDAV RCE Flaw for Spy Campaigns
A newly discovered zero-day vulnerability in Microsoft Windows' WebDAV implementation (CVE-2025-33053) is being actively exploited by the advanced persistent threat group Stealth Falcon in a...
Zero-day CVE-2025-33055 WebDAV flaw grants SYSTEM access in 78-vulnerability June Patch Tuesday
Microsoft's June Patch Tuesday has delivered urgent security updates addressing 78 vulnerabilities, including a critical zero-day exploit (CVE-2025-33053) actively weaponized by advanced threat...
Russian APT group APT28 weaponizes OAuth 2.0 against Ukraine, NGOs
In a chilling reminder of the evolving landscape of cyber warfare, Russian state-sponsored hackers have been exploiting vulnerabilities in OAuth 2.0 to conduct sophisticated cyber espionage campaigns...
MysterySnail & MysteryMonoSnail: Chinese Cyber Threats Target Russia and Mongolia
In the shadowy world of cyber espionage, a new threat has emerged targeting critical infrastructure in Russia and Mongolia, with sophisticated malware strains dubbed MysterySnail and...
Mustang Panda APT Exploits Microsoft's Mavinject.exe to Bypass Antivirus Detection
The notorious Mustang Panda advanced persistent threat (APT) group has been caught weaponizing Microsoft's legitimate Mavinject.exe tool to bypass antivirus protections in sophisticated...