Menu
The latest threat actor reports from the Quorum Cyber Threat Intelligence team.
Home / Threat Actors
Published: 29th April 2024 | In: Threat Actor Profiles
NoName057 is a hacktivist collective that operates in alignment with the Russian Federation and has been active since July 2022. It uses distributed denial-of-service (DDoS) attacks against various high-profile organisations within North Atlantic Treaty Organisation (NATO) member states.
Learn more
Published: 20th October 2023 | In: Threat Actor Profiles
ALPHV is the Russia-based Ransomware-as-a-Service (RaaS) group behind the ALPHV (also known as BlackCat) ransomware operation. ALPHV ransomware supports execution on Windows, Linux and VMware EXSi hosts and is the first ransomware written in the programming language Rust.
Published: 16th October 2023 | In: Threat Actor Profiles
8Base is a ransomware group that is reported to have originated from RansomHouse. The group has targeted a wide range of industries, including hospitality, law, healthcare, manufacturing, finance and information technology.
Published: 25th September 2023 | In: Threat Actor Profiles
Forrest Blizzard (also known as APT28, Fancy Bear, Pawn Storm, Sofacy Group, Strontium, Tsar Team, and Iron Twilight) is a Russian state-sponsored threat actor group that is attributed to the Russian Main Directorate/Main Intelligence Directorate of the General Staff of the Armed Forces (GRU) Unit 26165.
Published: 7th September 2023 | In: Threat Intelligence & Guidance
Midnight Blizzard, also known as APT29, is a threat actor group suspected to be attributed to the Russian Foreign Intelligence Service (SVR). The initial emergence of Midnight Blizzard operations occurred in 2008 when the first MiniDuke malware samples were compiled according to Kaspersky.
Published: 31st August 2023
Silk Typhoon (also known as HAFNIUM) is a Chinese based state-sponsored group, first recognised as active in January 2021, that focuses on the theft of information for the purposes of state-level espionage
Get in Touch
Please get in touch using the form below.