NightEagle APT Targets Russian Organizations
5 Articles
5 Articles
NightEagle Hackers Abuse Microsoft Dev Tunnels and GhostContainer to Breach Russian Companies
NightEagle, also tracked as APT-Q-95, has expanded its operations against Russian businesses with a campaign built around stolen VPN credentials, a Microsoft Exchange backdoor, and covert remote-access routes. The activity shows how an intruder can turn everyday administration features and publicly available code into a path through a corporate network. The group has been active […]
Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers | #ransomware | #cybercrime - National Cyber Security Consulting
Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, and Toy Ghouls, according to multiple reports from Kaspersky. The cybersecurity vendor said it has identified attacks mounted by NightEagle (aka APT-Q-95), a threat actor known to be active since at least 2023, that involve new techniques […] Thank you for subscribing to our RSS feed!
NightEagle APT targets Russian organizations
Kaspersky GERT experts have uncovered a new campaign by the NightEagle APT, featuring the GhostContainer backdoor and tools hosted on GitHub. The group is also exploiting vulnerabilities in Active Directory and RDP.
Coverage Details
Bias Distribution
- There is no tracked Bias information for the sources covering this story.
Factuality
To view factuality data please Upgrade to Premium








