Russian Foreign Intelligence Service (SVR) group known for sophisticated long-term intrusions into government and defense networks. Responsible for the SolarWinds supply chain attack.
Also known as: apt29, cozy bear, nobelium, midnight blizzard, the dukes, iron hemlock, yttrium, dark halo
AI Intelligence Brief
cached
Edit Profile
Entity Relationships
Co-occurrence relationships based on article mentions. Node size = frequency.
Storm-2945, a Midnight Blizzard subcluster, has resumed CaptiveCrunch, an espionage campaign abusing hospitality Wi-Fi networks to infect travelers and compr...
Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at ...
Midnight Blizzard has been stealing Microsoft account credentials via compromised Wi-Fi networks at hospitality organizations. The post Russian State APT Lin...
Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizati...