OP 28 January, 2022 - 06:02 AM
Quote:Hackers associated with Russian Federation Foreign Intelligence Service (SVR) continued incursions on networks of multiple organizations after the SolarWinds supply-chain compromise using two recently discovered sophisticated threats. The malicious implants are a variant of the GoldMax backdoor for Linux systems and a completely new malware family that CrowdStrike now tracks as TrailBlazer. Both threats have been used in StellarParticle campaigns since at least mid-2019 but were identified only two years later, during incident response investigations. APT29 has been running cyber espionage campaigns for more than 12 years and is also known as CozyBear, The Dukes, and Yttrium.
Source: https://www.bleepingcomputer.com/news/se...for-years/
![[Image: Refunding-2.gif]](https://i.ibb.co/jP7Hs5ZY/Refunding-2.gif)
![[Image: jwGHBVl.gif]](https://i.imgur.com/jwGHBVl.gif)
![[Image: h6S8dGS.gif]](https://i.imgur.com/h6S8dGS.gif)