Close Menu
National Security News
  • Ukraine War
  • Russia
  • Terrorism
  • China
  • Iran
  • Africa
  • Tech
    • Space
    • Nuclear
    • Cyber
  • Investigations

Trending

Rising public anger makes rushing CAB3 a growing stability risk for Zimbabwe and the region

May 14, 2026

Bahrain uncovers Iran’s latest subversion network

May 13, 2026

Ramaphosa’s Zimbabwe visit puts constitutional crisis, not succession, at centre of regional concern

May 12, 2026

UK sanctions Iranian targets in response to national security threats

May 12, 2026
Facebook X (Twitter) Instagram
National Security News
Subscribe
X (Twitter)
Login
IPSO Trusted Journalism in National Security
  • Ukraine War
  • Russia
  • Terrorism
  • China
  • Iran
  • Africa
  • Tech
    • Space
    • Nuclear
    • Cyber
  • Investigations
National Security News
  • Ukraine War
  • Russia
  • Terrorism
  • China
  • Iran
  • Africa
  • Tech
Home»Cyber
Cyber

Cyber groups supporting Russia

Staff WriterBy Staff WriterJune 9, 20223 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Cyber groups supporting Russia
Share
Facebook Twitter LinkedIn Pinterest Email

Listen to the article

0:00
0:00

Key Takeaways

🌐 Translate Article

Translating...

📖 Read Along

💬 AI Assistant

🤖
Hi! I'm here to help you understand this article. Ask me anything about the content!

Before the Russian invasion of Ukraine, Western Intelligence agencies warned of potential cyber attacks from Russia towards Ukraine. Targets included military and government sites, and small businesses to large organisations. At the time, Western Intelligence agencies also highlighted that these cyber attacks could cause damage, or even affect computer networks outside of Ukraine.   

Conti

“If anybody will decide to organize a cyberattack or any war activities against Russia, we are going to use our all-possible resources to strike back at the critical infrastructures of an enemy.” 

Conti is a highly sophisticated, highly capably and a well-funded ransomware group. It is known to be the first threat actor group to weaponize Log4Shell. However, as of late May 2022, Conti is rebranding itself and dividing into smaller groups. 

UNC1151  

UNC1151 is a Belarus-aligned hacking group which has been active since 2016. The group has previously targeted government agencies and private organisations in Ukraine, Lithuania, Latvia, Poland and Germany. UNC1151 has been linked to various attacks against Ukraine, including the defacement of multiple Ukrainian government websites. UNC1151 has also been using phishing campaigns to target Ukrainian military personal Facebook accounts.  

Armageddon/Garmaredon 

Armageddon is backed by the Russian FSB. The group has been targeting Ukraine since 2013. More recently its attacks have included the data-corrupting malware MBRLocker (WhisperGate), which destroys a victim’s data. Armageddon is a very aggressive threat actor. Its phishing campaigns during this war also included mail subject lines such as “Information on war criminals of the Russian Federation”. This campaign was targeted against the Ukrainian government and organisation linked to the Ukrainian government 

APT28 (Fancy Bear)  

Fancy Bear is a highly sophisticated Russian cyber espionage group. Their main MO is employing both phishing and credential harvesting. Fancy Bear operates across the globe and targets many industries and sectors including government, military and critical infrastructure. 

ATP28 was linked to the cyberattack on US satellite communications provider Viasat. The latest cyber-attack involved email spoofing, attacks towards critical infrastructure and government/military institutions inside Ukraine, as well as targeting similar institutions in North America, the UK and NATO.   

AgentTesla/XLoader 

Russian threats actors have been using AgnetTesla and Xloader malware for a long time. The main use of the malware is to steal passwords, screenshots, log keystrokes and install malicious files on to a victims’ network. Agent/Tesla/XLoader is currently being used to target Ukrainian citizens and organisations within Ukraine. 

cyber attack cyber war russia
Follow on Google News Follow on X (Twitter)
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Staff Writer

Keep Reading

White House formally adds offensive cyberattacks to US counterterrorism strategy

Russia paid African media network to spread anti-Western propaganda, leaked files show

Iranian drone and missile accuracy is dependent on Russian and Chinese satellites

GCHQ cyber agency urges millions to switch from passwords to passkeys

America’s cyber fortress: Trump’s new strategy places critical infrastructure at the heart of national defence

Russian losses in Ukraine are now higher than the numbers of troops being recruited

Editor's Picks

Bahrain uncovers Iran’s latest subversion network

May 13, 2026

Ramaphosa’s Zimbabwe visit puts constitutional crisis, not succession, at centre of regional concern

May 12, 2026

UK sanctions Iranian targets in response to national security threats

May 12, 2026

White House formally adds offensive cyberattacks to US counterterrorism strategy

May 11, 2026

Trending

UK sanctions Iranian targets in response to national security threats

Defence May 12, 2026

White House formally adds offensive cyberattacks to US counterterrorism strategy

Cyber May 11, 2026

Whose money was in Ramaphosa’s sofa?

South Africa May 11, 2026
Facebook X (Twitter) TikTok Instagram LinkedIn
© 2026 National Security News. All Rights Reserved.
  • About us
  • Privacy Policy
  • Terms
  • Contact
Home Topics Podcast NSN Lists

Type above and press Enter to search. Press Esc to cancel.

Sign In or Register

Welcome Back!

Login to your account below.

Lost password?