Operation 2023 2026()  2025()  2024()  2023()  2022()  OTHER()

DATE NAME INFO CATEGORY SUBCATE

27.12.23

Triangulation

Operation Triangulation: The last (hardware) mystery

OPERATION

OPERATION

24.12.23

RusticWeb

Operation RusticWeb targets Indian Govt: From Rust-based malware to Web-service exfiltration

OPERATION

OPERATION

19.12.23

Operation Blacksmith

Operation Blacksmith: Lazarus targets organizations worldwide using novel Telegram-based malware written in DLang

OPERATION

OPERATION

14.12.23

Bearded Barbie

Operation Bearded Barbie: APT-C-23 Campaign Targeting Israeli Officials

OPERATION

OPERATION

14.12.23

Big Bang

The Big Bang attack campaign: Gaza hackers suspected of targeting Middle Eastern victims

OPERATION

OPERATION

14.12.23

Operation Parliament

The objective of the attacks is clearly espionage – they involve gaining access to top legislative, executive and judicial bodies around the world.

OPERATION

OPERATION

25.11.23

Telekopye

Telekopye: Chamber of Neanderthals’ secrets

OPERATION

OPERATION

22.10.23

Operation King TUT

ESET researchers reveal a growing sophistication in threats affecting the LATAM region by employing evasion techniques and high-value targeting

OPERATION

OPERATION

19.10.23

TetrisPhantom

Government entities in the Asia-Pacific (APAC) region are the target of a long-running cyber espionage campaign dubbed TetrisPhantom.

OPERATION

OPERATION

16.10.23

EtherHiding

“EtherHiding” — Hiding Web2 Malicious Code in Web3 Smart Contracts

OPERATION

OPERATION

5.10.23

Operation Jacana

ESET researchers discovered a cyberespionage campaign against a governmental entity in Guyana

OPERATION

OPERATION

19.9.23

Operation Rusty Flag

Operation Rusty Flag – A Malicious Campaign Against Azerbaijanian Targets

OPERATION

OPERATION

19.9.23

AMBERSQUID

The Sysdig Threat Research Team (TRT) has uncovered a novel cloud-native cryptojacking operation which they’ve named AMBERSQUID.

OPERATION

OPERATION

6.9.23

Smishing Triad

"Smishing Triad" Targeted USPS And US Citizens For Data Theft

OPERATION

OPERATION

19.8.23

LABRAT

LABRAT: Stealthy Cryptojacking and Proxyjacking Campaign Targeting GitLab

OPERATION

OPERATION

22.6.23

Operation Triangulation's

Over the years, there have been multiple cases when iOS devices were infected with targeted spyware such as Pegasus.

OPERATION

OPERATION

12.6.23

Mexals campaign

One of the changes between the two campaigns is their name: The group previously known as Mexals (see their web page in Figure 1) now call themselves Diicot, and one of their tools bears the same name.

OPERATION

OPERATION

8.6.23

Operation Red Deer

Outing Aggah’s Sophisticated Tactics, Techniques and Procedures (TTPs) Targeting Israel

OPERATION

OPERATION

7.6.23

Operation CMDStealer

Financially Motivated Campaign Leverages CMD-Based Scripts and LOLBaS for Online Banking Theft in Portugal, Peru, and Mexico

OPERATION

OPERATION

3.6.23

Operation Triangulation

While monitoring the network traffic of our own corporate Wi-Fi network dedicated for mobile devices using the Kaspersky Unified Monitoring and Analysis Platform (KUMA).

OPERATION

OPERATION

25.5.23

Operation Groundbait

In addition to the armed conflict in eastern Ukraine, in recent years the country has been facing a significantly higher number of targeted cyberattacks, or so-called advanced persistent threats (APTs).

OPERATION

OPERATION

14.5.23

Hunting Russian Intelligence
“Snake” Malware

The Snake implant is considered the most sophisticated cyber espionage tool designed and used by Center 16 of Russia’s Federal Security Service (FSB) for long-term intelligence collection on sensitive targets.

OPERATION

OPERATION

14.5.23

DownEx

Deep Dive Into DownEx Espionage Operation in Central Asia

OPERATION

OPERATION

17.3.23

SCARLETEEL

A sophisticated attack campaign dubbed SCARLETEEL is targeting containerized environments to perpetrate theft of proprietary data and software.

OPERATION

OPERATION

17.3.23

PROXYSHELLMINER CAMPAIGN

Morphisec has recently identified a highly evasive malware campaign delivering ProxyShellMiner to Windows endpoints.

OPERATION

OPERATION

15.3.23

ENDTRADE

We found cyberespionage group TICK targeting critical systems and enterprises to steal information. In this research brief, we show the group's activities and technical analyses of the ..

OPERATION

OPERATION

15.3.23

Dero Cryptojacking Campaign

CrowdStrike has discovered the first-ever Dero cryptojacking operation targeting Kubernetes infrastructure.

OPERATION

OPERATION

11.3.23

Operation Dream Job

Hackers associated with the North Korean government have been distributing a trojanized version of the DeFi Wallet for storing cryptocurrency assets to gain access to the systems of cryptocurrency users and investors.

OPERATION

OPERATION

2.3.23

SCARLETEEL

Operation leveraging Terraform, Kubernetes, and AWS for data theft

OPERATION

OPERATION

18.2.23

OPERATION SILENT WATCH

Amid rising tensions between Azerbaijan and Armenia over the Lachin corridor in late 2022, Check Point Research identified a malicious campaign against entities in Armenia.

OPERATION

OPERATION

5.2.23

'No Pineapple' Campaign

During Q4 2022, WithSecure™ detected and responded to a cyber attack conducted by a threat actor that WithSecure™ have attributed with high confidence to an intrusion set referred to as Lazarus Group.

OPERATION

OPERATION

4.2.23

Operation Ice Breaker

In September of last year, our Incident Response team was called to an incident that was identified as an attempt of social engineering an online customer service platform.

OPERATION

OPERATION

3.2.23

GOOTLOADER Operations

Beginning in 2022, UNC2565 began incorporating notable changes to the tactics, techniques, and procedures (TTPs) used in its operations.

OPERATION

OPERATION