Skip to main content

Tag: nation state

1000 articles

Workers assemble compact drones on a brightly-lit manufacturing floor with components stacked in the background.

Global Drone Production Entangled in Chinese Supply Chain

The Russia-Ukraine War has sparked a staggering demand for FPV drones, with both sides burning through a combined seven million units per year - and Ukraine alone using a remarkable 9,000 of these low-cost, high-impact systems every day.

Analyst 207
Formal institutional building with a globe in the background.

China's Support for Russia Undermines Ukraine Peace Efforts

China's backing of Russia has taken a concerning turn, with reports emerging that Chinese forces secretly trained around 200 Russian military personnel in Beijing and Nanjing as recently as last year. This development has raised questions about its impact on Ukraine peace efforts.

Analyst 207
Close-up of computer circuit board with exposed casing revealing abstract malicious code in background.

MuddyWater Exploits DLL Side-Loading in Global Espionage Push

MuddyWater hackers have launched a massive global espionage campaign, infiltrating at least nine organizations across four continents by cleverly disguising malicious code as legitimate software. They used a sneaky trick called DLL side-loading to quietly steal credentials and browser data.

Analyst 207
Person's hand holds smartphone in brightly-lit urban setting with subtle hint of unease.

Chinese Phishing Services Shift to Live Credential Interception Tactics

Cyber attackers are now using live administration panels to interact with victims in real-time, capturing one-time passcodes and instantly bypassing multifactor authentication protections. This new tactic allows them to neutralize security measures and steal sensitive information more effectively.

Analyst 207
People discuss documents in a government office, with a blurred smartphone on the desk.

Experts Dispute Farage's Russian Hack Claim

Nigel Farage's claim that Russian spies hacked his phone and leaked a £5 million gift from a close associate has sparked controversy, with experts demanding evidence to back up the explosive allegation. Ciaran Martin hit back, saying Farage has produced no evidence to support his aggressive intervention claim.

Analyst 207
Person sitting at desk, confused, looking at smartphone with multiple push notifications.

MFA Prompt Bombing Exposes Weakness in Two-Factor Security

A shocking 2.8GB of data was stolen from Cisco after a clever attacker tricked an employee into approving a push-based MFA prompt, highlighting a disturbing vulnerability in two-factor security. This brazen hack, linked to the Yanluowang ransomware group, shows how attackers can exploit the very security measures meant to protect us.

Analyst 207
IT staff members in a server room look at a laptop with urgency, surrounded by rows of servers and racks near a large window.

India's CERT-In Mandates Swift Patching for Exposed Flaws

CERT-In is urging organizations to act fast to contain cyber threats, setting a tight 12-hour deadline to patch known vulnerabilities in critical, internet-facing systems. This swift response aims to combat the accelerating threat of AI-driven cyber-attacks.

Analyst 207
Concerned office worker examines laptop with blurred screen amidst office supplies and city view.

Iranian Hackers Deploy AI-Backed MiniFast Backdoor via Phishing and SEO Poisoning

Iranian hackers have escalated their cyber attacks, leveraging AI-powered tools to craft malware and targeting key sectors like aviation, defense, and telecommunications across the US, Europe, and the Middle East. Their sophisticated tactics, including phishing and SEO poisoning, have allowed them to spy on organizations with alarming speed and efficiency.

Analyst 207
US airport terminal with check-in counter and departure board, laptops and phone on counter.

Iran-Linked Hackers Target US Aviation with Sophisticated Phishing and SEO Poisoning

Meet Nimbus Manticore, an Iran-linked hacking group that's back with a vengeance, using clever phishing and SEO poisoning tactics to target the US aviation industry in a series of sophisticated attacks. Their latest campaign, which ran from February to April 2026, marked a significant expansion into aviation, defense, and telecommunications.

Analyst 207
US military personnel handles portable counter-drone system outdoors.

Pentagon Taps Perennial Autonomy for $500M Counter-Drone Contract

The Pentagon has taken a major stand against the growing threat of drones, awarding a $500 million contract to Perennial Autonomy for cutting-edge, AI-powered counter-drone systems. This game-changing deal is part of the US military's broader Drone Dominance initiative to stay ahead of the curve in modern warfare.

Analyst 207
Law enforcement officers seize servers and equipment in a brightly-lit data center.

Dutch Authorities Disrupt Russian Cyber Operations, Seize 800 Servers

In a major blow to Russian cybercrime, Dutch authorities seized over 800 servers and arrested two individuals in a daring raid that cracked down on illicit online operations. The suspects, a 57-year-old Amsterdam resident and a 39-year-old from The Hague, were charged with violating sanctions law by aiding EU-sanctioned entities.

Analyst 207
People of diverse ages and backgrounds walk through a crowded Australian cityscape, some looking at smartphones, amidst…

Australia's Defence Strategy Lags in Information War Arena

Australia is losing ground in a different kind of battle – one of perception and understanding – where adversaries are manipulating what people believe to be true, eroding public trust and turning domestic audiences into a vulnerability in times of crisis. By shaping perceptions through information, our nation risks being left behind in the information war arena.

Analyst 207
Brightly-lit financial sector setting with computer workstation in background.

Lazarus Group Deploys Memory-Only RAT in Financial Sector Attacks

The notorious Lazarus Group has unleashed a sneaky new attack tool, a memory-only Remote Access Trojan (RAT), targeting the financial sector with cunning precision. This stealthy malware, known as RemotePE, is just the latest weapon in the group's arsenal, and it's being used to infiltrate and manipulate its victims.

Analyst 207
Australian Army tanks and personnel training at a northern military base.

Australia's Northern Defence Posture Exposes Strategic Gap

Australia's northern defence posture is leaving a strategic gap that threatens Canberra's ability to deter, integrate with allies, and boost the economy. With Japan's Ground Self-Defense Force set to train in Townsville in 2026, the limitations of the current setup are coming into sharp focus.

Analyst 207
Armored vehicle on rugged terrain with snow-capped mountains in the background.

China Unveils Heated Armored Troop Transport for Tibetan Plateau

Meet China's latest game-changer for high-altitude warfare: an armored troop transport that can safely carry 22 fully armed soldiers across the rugged Tibetan Plateau in style and comfort. This cutting-edge vehicle boasts a heated, insulated cabin - a vital upgrade for troops battling harsh, cold environments.

Analyst 207
Software development workspace with laptop and monitor displaying Git repository interface.

GitHub Tags Exploited to Deploy Credential-Stealing Malware

Malicious actors have manipulated hundreds of GitHub tags to spread credential-stealing malware through popular Laravel Lang localization packages, putting countless users at risk. By rewriting historical tags, attackers tricked Composer installations into downloading the malicious payload.

Analyst 207
Military officers gather around a table with drones and missile systems displayed, in a briefing room with a large South…

India, Pakistan Escalate Non-Contact Warfare Capabilities

India and Pakistan are ramping up their non-contact warfare capabilities, shifting the landscape of conflict in South Asia. After a US-brokered ceasefire ended a four-day crisis, India’s Prime Minister Narendra Modi hinted at a new policy of coercion short of war.

Analyst 207
Legacy J-11 jet with PL-17 missile mounted under wing on military airfield with ground support vehicles and personnel.

China's PLAAF Advances with PL-17 Missile Integration on Legacy J-11 Jets

The PL-17 missile, touted as the successor to the PL-15, has entered a crucial integration phase and is being fitted to both cutting-edge and legacy fighter jets, including the J-11. This move signals a significant upgrade to China's air combat capabilities.

Analyst 207
Smartphone on a table displays a messaging app chat interface with many subscribers.

Russian Hacker Exploits Jailbroken AI in Crypto Fraud Scheme

A solo Russian hacker, known as bandcampro, has orchestrated a massive crypto fraud scheme, reaching 17,000 subscribers on Telegram with AI-generated content that convincingly mimicked popular conspiracy styles. This alarming development marks a turning point in cybercrime conspiracies, with AI-powered threats on the rise.

Analyst 207
Law enforcement officers oversee rows of partially disassembled servers in a brightly-lit data center.

Netherlands Disrupts Russian Cyber Operations with Server Seizure

Dutch authorities have struck a major blow against Russian cyber operations, seizing 800 servers and making several arrests in a crackdown on a web hosting ecosystem accused of enabling cyberattacks, disinformation campaigns, and other malicious activities. This coordinated law-enforcement action aims to disrupt the cyber threat landscape and protect democracy and security.

Analyst 207
Government office workstation with papers and supplies, email inbox blurred on screen.

Ghostwriter Exploits Ukraine Government with Prometheus Phishing Malware

Malicious actors known as Ghostwriter have launched a cunning phishing campaign targeting Ukraine's government, using emails that appear to come from trusted sources and contain links to a seemingly harmless learning platform, Prometheus. These emails contain a hidden threat that can download malware onto victims' devices.

Analyst 207
Brightly-lit server rack in a cloud computing environment with a security monitoring station in the background.

Nation-State Actors Exploit ROADtools in Cloud Attacks

Cloud attackers are now leveraging ROADtools, a publicly available toolkit, to exploit vulnerabilities in cloud tenants, allowing them to persist, discover, and evade defenses with ease. This dual-use framework's ability to speak Entra ID and Microsoft Graph makes it a red flag for defenders to take notice.

Analyst 207
Modern tech facility with laptop workstation and blank screen.

Iran-nexus APT Expands Espionage Ops with New RAT Variants

Unit 42 researchers have uncovered a sophisticated espionage campaign by an Iran-linked threat group, dubbed Screening Serpens, which has deployed six new remote access Trojan (RAT) variants to target entities across the US, Israel, and the Middle East. These variants, part of two distinct malware families, signal a significant expansion of the group's cyber spying operations.

Analyst 207
P-8 aircraft releasing sonobuoys over ocean with gentle waves and blurred naval ship in background.

US Navy Bolsters Submarine Detection with Next-Gen Sonobuoys

The US Navy is stepping up its submarine detection game with cutting-edge sonobuoys, driven by the growing threat of quieter enemy subs operated by China and Russia. These advanced floating sensors, weighing in at just 30 pounds, pack a powerful punch in precision sensing to help the Navy stay one step ahead.

Analyst 207