Gamaredon is a Russia-linked APT active since 2013, targeting Ukraine, NATO, and critical sectors. Using phishing, malware, and custom backdoors, the group continues to evolve into a high-risk, state-backed espionage threat in 2025.
Gamaredon is a Russia-linked APT active since 2013, targeting Ukraine, NATO, and critical sectors. Using phishing, malware, and custom backdoors, the group continues to evolve into a high-risk, state-backed espionage threat in 2025.
Mustang Panda (Earth Preta) is one of the most persistent China-linked APT groups, adapting tools like PlugX, ToneShell, and Yokai to target governments, NGOs, and critical sectors across APAC, Europe, and beyond.
DragonForce, once a hacktivist collective, has transformed into a financially driven ransomware cartel. From high-profile UK retailers to global enterprises, the group leverages affiliates, white-label branding, and extortion portals to execute large-scale attacks worldwide.
APT29, also known as Cozy Bear, is one of Russia’s most persistent cyber espionage groups. From SolarWinds to Microsoft, their operations highlight the sophistication of identity-based attacks. Explore their tradecraft, motivations, and defense takeaways.
This blog post comes from the RokRat Technical Analysis report. If you want to download it as a PDF click here Executive Summary APT37 has targeted countries such as South…
This blog post comes from the “Tracking Threat Actors on Blockchain” by the Brandefense Research Team. For more details about the analysis, download the report. Introduction A “blockchain” is a…
This blog post comes from the “APT34’s New Backdoor: SideTwist Variant Technical Analysis” by the Brandefense Research Team. For more details about the analysis, download the report Summary We examined…
In the intricate world of cybersecurity, understanding and countering Advanced Persistent Threats (APTs) is crucial for the safety and integrity of individual and organizational digital assets. APTs represent a sophisticated…
At Brandefense, we perceive Advanced Persistent Threats (APTs) as one of the most significant challenges in modern cybersecurity. These threats, marked by their sophistication and long-term objectives, go beyond the…
Cybercriminals are perpetually crafting innovative and increasingly sophisticated techniques to infiltrate networks, steal valuable data, and undermine system integrity in the ever-evolving realm of cybersecurity. One method that has gained…