/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

@nsacyber

@nsacyber
13 posts
2024-09-07
Russian military cyber actors continue to target U.S. and global critical infrastructure. Network defenders must regularly update mitigation measures to stay ahead of these attacks. Make sure you're up to date by reading our newest guidance: https://www.nsa.gov/... [image]
2024-09-07 View on X
Wired

The US and allies reveal that hacker group Cadet Blizzard is part of Russia's GRU Unit 29155, which is responsible for coup attempts, assassinations, and more

There has been a lot of talk this week about Putin paying “useful idiots” to spread his propaganda. … X: @dojnatsec : Five Russian GRU Officers and One Civilian Charged for Conspir...

2024-09-06
Russian military cyber actors continue to target U.S. and global critical infrastructure. Network defenders must regularly update mitigation measures to stay ahead of these attacks. Make sure you're up to date by reading our newest guidance: https://www.nsa.gov/... [image]
2024-09-06 View on X
Wired

The US and allies reveal that hacker group Cadet Blizzard is part of Russia's GRU Unit 29155, which is responsible for coup attempts, assassinations, and more

Unit 29155 of Russia's GRU military intelligence agency—a team responsible for coup attempts, assassinations, and bombings …

2024-02-08
People's Republic of China-sponsored actors are targeting U.S. critical infrastructure, pre-positioning for disruptive actions. We've joined with @CISACyber, @FBI, and others to address this activity. Read our advisory now: https://www.nsa.gov/... [image]
2024-02-08 View on X
Axios

US, UK, Australia, Canada, and New Zealand advisory: China-backed hacking group Volt Typhoon has had access to some major US infrastructure for over five years

Sam Sabin / Axios :

2023-05-26
Don't let a malicious actor take advantage of you. Learn how to hunt and mitigate a PRC state-sponsored cyber actor who may be using your systems' resources to hide their activities. https://www.nsa.gov/... [image]
2023-05-26 View on X
CNBC

Microsoft says Chinese state-sponsored hackers compromised “critical infrastructure organizations” across US industries, with a focus on gathering intelligence

aimed @ stopping relief of Taiwan in case of blockade or kinetic conflict...Biden Regime aware of this since February—same time as the airship incursion..... https://www.cnbc.com/....

2023-05-25
Don't let a malicious actor take advantage of you. Learn how to hunt and mitigate a PRC state-sponsored cyber actor who may be using your systems' resources to hide their activities. https://www.nsa.gov/... [image]
2023-05-25 View on X
CNBC

Microsoft says Chinese state-sponsored hackers compromised “critical infrastructure organizations” across US industries, with a focus on gathering intelligence

- Chinese state-sponsored hackers have compromised “critical” cyber infrastructure in a variety of industries …

2022-04-21
Critical infrastructure organizations should maintain a heightened state of alert against Russian cyber threats. Stay vigilant and follow the mitigations from our joint advisory to harden your IT and OT networks now. https://www.nsa.gov/... https://twitter.com/...
2022-04-21 View on X
BleepingComputer

Cybersecurity authorities of Five Eyes countries warn of Russia-backed hacking groups targeting critical infrastructure organizations in and outside Ukraine

Russian State-Sponsored and Criminal Cyber Threats to Critical Infrastructure David Jones / Cybersecurity Dive : Cyber agencies renew warnings of Russia-linked threats against indu...

2021-07-02
Our recent #cybersecurity advisory with @CISAgov @FBI & @NCSC publicly exposes a global brute force campaign. Exploitation is likely ongoing. Review our advisory for #IOCs and #mitigation techniques: https://www.nsa.gov/... https://twitter.com/...
2021-07-02 View on X
The Record

NSA, FBI, and others say Russian hacking group Fancy Bear has been using Kubernetes to run brute force attacks on US and foreign organizations since mid-2019

essentially, trying different passwords until the attackers gained access — and then use other known software vulnerabilities to steal emails, compromise other accounts and collect...

2021-04-17
Russian Foreign Intelligence Service (SVR) cyber actors are exploiting five publicly known vulnerabilities to target U.S. and allied critical networks. Review our joint #cybersecurity guidance with @CISAgov and @FBI and apply the mitigations to stop them: https://www.nsa.gov/... https://twitter.com/...
2021-04-17 View on X
MIT Technology Review

A look at Positive Technologies, a Russian cybersecurity firm sanctioned by the US, which sources say provides hacking tools and ops support for Russian spies

Washington has sanctioned Russian cybersecurity firm Positive Technologies.  US intelligence reports claim it provides hacking tools and runs operations for the Kremlin.

2021-04-16
Russian Foreign Intelligence Service (SVR) cyber actors are exploiting five publicly known vulnerabilities to target U.S. and allied critical networks. Review our joint #cybersecurity guidance with @CISAgov and @FBI and apply the mitigations to stop them: https://www.nsa.gov/... https://twitter.com/...
2021-04-16 View on X
MIT Technology Review

A look at Positive Technologies, a Russian cybersecurity firm sanctioned by the US, which sources say provides hacking tools and ops support for Russian spies

Washington has sanctioned Russian cybersecurity firm Positive Technologies.  US intelligence reports claim it provides hacking tools and runs operations for the Kremlin.

2021-04-14
NSA urges applying critical Microsoft patches released today, as exploitation of these #vulnerabilities could allow persistent access and control of enterprise networks. https://msrc-blog.microsoft.com/ ...
2021-04-14 View on X
VICE

The DOJ says the FBI performed a court-approved operation to “copy and remove malicious web shells” on hundreds of hacked Exchange servers across the US

The FBI obtained court approval to access vulnerable computers across the United States.  —  Joseph Cox

NSA urges applying critical Microsoft patches released today, as exploitation of these #vulnerabilities could allow persistent access and control of enterprise networks. https://msrc-blog.microsoft.com/ ...
2021-04-14 View on X
BleepingComputer

In its April batch of patches, Microsoft fixes 108 flaws, including 19 “critical” flaws, five 0-days, and four NSA-discovered critical Exchange flaws

Today is Microsoft's April 2021 Patch Tuesday, and with it comes five zero-day vulnerabilities and more Critical Microsoft Exchange vulnerabilities.

2020-08-14
The Russian GRU 85th GTsSS, sometimes publicly known as #APT28 or #FancyBear, is using a previously undisclosed #Linux malware called Drovorub for cyber espionage operations. For full details and mitigations, review our #cybersecurity advisory with @FBI: https://www.nsa.gov/... https://twitter.com/...
2020-08-14 View on X
CyberScoop

NSA and FBI say Russian state sponsored hacker group Fancy Bear is using a previously undisclosed Linux malware called Drovorub for cyber espionage operations

my favorite thing so far: NSA casually reveals that Drovorub is the codename used by GRU itself (!), and even offers a step-by-step translation https://www.nsa.gov/... https://twit...

2020-05-29
Sandworm Team, Russian GRU Main Center for Special Technologies actors, continue to exploit Exim mail transfer agent #vulnerability, CVE-2019-10149. Patch to the latest version to protect your networks. Learn more here: https://www.nsa.gov/... https://twitter.com/...
2020-05-29 View on X
BleepingComputer

NSA warns Russia-linked Sandworm hacking group has been actively exploiting a now-patched flaw in Exim mail transfer agent since Aug., exposing ~2.5M servers

The U.S. National Security Agency (NSA) says that Russian military threat actors known as Sandworm Team have been exploiting …