Gamaredon is a Russia-linked APT active since 2013, targeting Ukraine, NATO, and critical sectors. Using phishing, malware, and custom backdoors, the group continues to evolve into a high-risk, state-backed espionage threat in 2025.
Gamaredon is a Russia-linked APT active since 2013, targeting Ukraine, NATO, and critical sectors. Using phishing, malware, and custom backdoors, the group continues to evolve into a high-risk, state-backed espionage threat in 2025.
Mustang Panda (Earth Preta) is one of the most persistent China-linked APT groups, adapting tools like PlugX, ToneShell, and Yokai to target governments, NGOs, and critical sectors across APAC, Europe, and beyond.
DragonForce, once a hacktivist collective, has transformed into a financially driven ransomware cartel. From high-profile UK retailers to global enterprises, the group leverages affiliates, white-label branding, and extortion portals to execute large-scale attacks worldwide.
APT29, also known as Cozy Bear, is one of Russia’s most persistent cyber espionage groups. From SolarWinds to Microsoft, their operations highlight the sophistication of identity-based attacks. Explore their tradecraft, motivations, and defense takeaways.
APT38, North Korea’s state-backed cybercrime group, has evolved from SWIFT banking attacks to record-breaking cryptocurrency heists. Learn how their tactics, AI-driven social engineering, and DeFi exploits reshape the threat landscape.
Brandefense APIs provide real-time darkweb intelligence with seamless integrations into SIEM, SOAR, and SOC workflows. Learn how organizations automate defenses and stop threats before damage occurs.
Shadow IT is no longer a hidden nuisance—it’s a direct gateway for attackers. Discover how unmanaged SaaS, APIs, and forgotten domains expand your external attack surface, and what enterprises must do to stay ahead.
The NIST Cybersecurity Framework is a comprehensive guideline developed by the National Institute of Standards and Technology (NIST) to help organizations manage and mitigate cybersecurity risk. The updated NIST 2.0…
Cyber threats in 2025 have evolved into triple extortion ransomware. Discover how groups like LockBit, ALPHV, and Black Basta operate and what organizations can do to build resilience.
Offshore domain services play a critical role in modern cybercrime, enabling phishing, ransomware, and fraud operations. Learn how cybercriminals leverage these infrastructures and how Brandefense helps organizations stay protected.