Nobelium hacking group
Threat Actor
Nobelium is the hacking division of the Russian Foreign Intelligence Service (SVR), commonly known as APT29, The Dukes, or Cozy Bear. The Russian state hackers have been observed using the FoggyWeb backdoor in the wild since April 2021.
Incidents Associated with this Threat
- November 27, 2023: Hackers Gain Access to Mail Accounts at Microsoft
- December 12, 2020: Major Supply Chain Breach Involving the SolarWinds Orion System.
Malware Used by this Threat Actor
No malware identified for this threat actor.
