Tag: nation state
1000 articles

Global Drone Production Entangled in Chinese Supply Chain
The Russia-Ukraine War has sparked a staggering demand for FPV drones, with both sides burning through a combined seven million units per year - and Ukraine alone using a remarkable 9,000 of these low-cost, high-impact systems every day.

China's Support for Russia Undermines Ukraine Peace Efforts
China's backing of Russia has taken a concerning turn, with reports emerging that Chinese forces secretly trained around 200 Russian military personnel in Beijing and Nanjing as recently as last year. This development has raised questions about its impact on Ukraine peace efforts.

MuddyWater Exploits DLL Side-Loading in Global Espionage Push
MuddyWater hackers have launched a massive global espionage campaign, infiltrating at least nine organizations across four continents by cleverly disguising malicious code as legitimate software. They used a sneaky trick called DLL side-loading to quietly steal credentials and browser data.

Chinese Phishing Services Shift to Live Credential Interception Tactics
Cyber attackers are now using live administration panels to interact with victims in real-time, capturing one-time passcodes and instantly bypassing multifactor authentication protections. This new tactic allows them to neutralize security measures and steal sensitive information more effectively.

Experts Dispute Farage's Russian Hack Claim
Nigel Farage's claim that Russian spies hacked his phone and leaked a £5 million gift from a close associate has sparked controversy, with experts demanding evidence to back up the explosive allegation. Ciaran Martin hit back, saying Farage has produced no evidence to support his aggressive intervention claim.

MFA Prompt Bombing Exposes Weakness in Two-Factor Security
A shocking 2.8GB of data was stolen from Cisco after a clever attacker tricked an employee into approving a push-based MFA prompt, highlighting a disturbing vulnerability in two-factor security. This brazen hack, linked to the Yanluowang ransomware group, shows how attackers can exploit the very security measures meant to protect us.

India's CERT-In Mandates Swift Patching for Exposed Flaws
CERT-In is urging organizations to act fast to contain cyber threats, setting a tight 12-hour deadline to patch known vulnerabilities in critical, internet-facing systems. This swift response aims to combat the accelerating threat of AI-driven cyber-attacks.

Iranian Hackers Deploy AI-Backed MiniFast Backdoor via Phishing and SEO Poisoning
Iranian hackers have escalated their cyber attacks, leveraging AI-powered tools to craft malware and targeting key sectors like aviation, defense, and telecommunications across the US, Europe, and the Middle East. Their sophisticated tactics, including phishing and SEO poisoning, have allowed them to spy on organizations with alarming speed and efficiency.

Iran-Linked Hackers Target US Aviation with Sophisticated Phishing and SEO Poisoning
Meet Nimbus Manticore, an Iran-linked hacking group that's back with a vengeance, using clever phishing and SEO poisoning tactics to target the US aviation industry in a series of sophisticated attacks. Their latest campaign, which ran from February to April 2026, marked a significant expansion into aviation, defense, and telecommunications.

Pentagon Taps Perennial Autonomy for $500M Counter-Drone Contract
The Pentagon has taken a major stand against the growing threat of drones, awarding a $500 million contract to Perennial Autonomy for cutting-edge, AI-powered counter-drone systems. This game-changing deal is part of the US military's broader Drone Dominance initiative to stay ahead of the curve in modern warfare.

Dutch Authorities Disrupt Russian Cyber Operations, Seize 800 Servers
In a major blow to Russian cybercrime, Dutch authorities seized over 800 servers and arrested two individuals in a daring raid that cracked down on illicit online operations. The suspects, a 57-year-old Amsterdam resident and a 39-year-old from The Hague, were charged with violating sanctions law by aiding EU-sanctioned entities.

Australia's Defence Strategy Lags in Information War Arena
Australia is losing ground in a different kind of battle – one of perception and understanding – where adversaries are manipulating what people believe to be true, eroding public trust and turning domestic audiences into a vulnerability in times of crisis. By shaping perceptions through information, our nation risks being left behind in the information war arena.

Lazarus Group Deploys Memory-Only RAT in Financial Sector Attacks
The notorious Lazarus Group has unleashed a sneaky new attack tool, a memory-only Remote Access Trojan (RAT), targeting the financial sector with cunning precision. This stealthy malware, known as RemotePE, is just the latest weapon in the group's arsenal, and it's being used to infiltrate and manipulate its victims.

Australia's Northern Defence Posture Exposes Strategic Gap
Australia's northern defence posture is leaving a strategic gap that threatens Canberra's ability to deter, integrate with allies, and boost the economy. With Japan's Ground Self-Defense Force set to train in Townsville in 2026, the limitations of the current setup are coming into sharp focus.

China Unveils Heated Armored Troop Transport for Tibetan Plateau
Meet China's latest game-changer for high-altitude warfare: an armored troop transport that can safely carry 22 fully armed soldiers across the rugged Tibetan Plateau in style and comfort. This cutting-edge vehicle boasts a heated, insulated cabin - a vital upgrade for troops battling harsh, cold environments.

GitHub Tags Exploited to Deploy Credential-Stealing Malware
Malicious actors have manipulated hundreds of GitHub tags to spread credential-stealing malware through popular Laravel Lang localization packages, putting countless users at risk. By rewriting historical tags, attackers tricked Composer installations into downloading the malicious payload.

India, Pakistan Escalate Non-Contact Warfare Capabilities
India and Pakistan are ramping up their non-contact warfare capabilities, shifting the landscape of conflict in South Asia. After a US-brokered ceasefire ended a four-day crisis, India’s Prime Minister Narendra Modi hinted at a new policy of coercion short of war.

China's PLAAF Advances with PL-17 Missile Integration on Legacy J-11 Jets
The PL-17 missile, touted as the successor to the PL-15, has entered a crucial integration phase and is being fitted to both cutting-edge and legacy fighter jets, including the J-11. This move signals a significant upgrade to China's air combat capabilities.

Russian Hacker Exploits Jailbroken AI in Crypto Fraud Scheme
A solo Russian hacker, known as bandcampro, has orchestrated a massive crypto fraud scheme, reaching 17,000 subscribers on Telegram with AI-generated content that convincingly mimicked popular conspiracy styles. This alarming development marks a turning point in cybercrime conspiracies, with AI-powered threats on the rise.

Netherlands Disrupts Russian Cyber Operations with Server Seizure
Dutch authorities have struck a major blow against Russian cyber operations, seizing 800 servers and making several arrests in a crackdown on a web hosting ecosystem accused of enabling cyberattacks, disinformation campaigns, and other malicious activities. This coordinated law-enforcement action aims to disrupt the cyber threat landscape and protect democracy and security.

Ghostwriter Exploits Ukraine Government with Prometheus Phishing Malware
Malicious actors known as Ghostwriter have launched a cunning phishing campaign targeting Ukraine's government, using emails that appear to come from trusted sources and contain links to a seemingly harmless learning platform, Prometheus. These emails contain a hidden threat that can download malware onto victims' devices.

Nation-State Actors Exploit ROADtools in Cloud Attacks
Cloud attackers are now leveraging ROADtools, a publicly available toolkit, to exploit vulnerabilities in cloud tenants, allowing them to persist, discover, and evade defenses with ease. This dual-use framework's ability to speak Entra ID and Microsoft Graph makes it a red flag for defenders to take notice.

Iran-nexus APT Expands Espionage Ops with New RAT Variants
Unit 42 researchers have uncovered a sophisticated espionage campaign by an Iran-linked threat group, dubbed Screening Serpens, which has deployed six new remote access Trojan (RAT) variants to target entities across the US, Israel, and the Middle East. These variants, part of two distinct malware families, signal a significant expansion of the group's cyber spying operations.

US Navy Bolsters Submarine Detection with Next-Gen Sonobuoys
The US Navy is stepping up its submarine detection game with cutting-edge sonobuoys, driven by the growing threat of quieter enemy subs operated by China and Russia. These advanced floating sensors, weighing in at just 30 pounds, pack a powerful punch in precision sensing to help the Navy stay one step ahead.