Install
State‑Linked Operations
Campaigns tied to state actors and their cutouts.
- 1 Tracked terms
- Last 30 days Feed window
What this topic collects on
An article joins this feed when it matches these terms. Each one is also a search of its own.
Related topics
Latest in State‑Linked Operations
WaterPlum Hackers Steal $10.7M Crypto From IT Pros
20+ hour, 31+ min ago (285+ words) A North Korean cyber actor group known as WaterPlum, also referred to as “Contagious Interview,” has infected at least 30,000 devices across more than 100 countries. The group has been stealing cryptocurrency from IT professionals worldwide. Between December 2025 and July 2026, WaterPlum exfiltrated…...
North Korean hackers — Fake Job Interviews Hack 30,000 Computers
9+ hour, 16+ min ago (243+ words) The Korea Daily North Korean hackers — Fake Job Interviews Hack 30,000 Computers How North Korean Hackers Target IT Professionals North Korean hackers belonging to the state-sponsored cyber espionage group known as ‘WaterPlum’ have compromised at least 30,000 computers across more than 100 countries…...
China-nexus actor steals thousands of documents in monthslong exploitation campaign
11+ hour, 26+ min ago (349+ words) Researchers suspect the hacker employed LLMs to develop custom tools. A Chinese-speaking threat actor has engaged in a hacking campaign at least since June, involving the theft of thousands of documents from, at minimum, one Western government, according to a…...
North Korean TraderTraitor Hackers Use Fake Terraform Job Tests to Deploy macOS Backdoors
15+ hour, 7+ min ago (555+ words) North Korean threat actors are using fake Terraform job tests to compromise macOS developers and reach cloud systems. The campaign shows how a routine coding assignment can become an entry point for data theft, remote control, and deeper network intrusion....
Yikes: How Did a California Freeway Sign Get Hacked With an Iranian Regime Death List?
16+ hour, 10+ min ago (430+ words) A digital sign on a Los Angeles freeway was hijacked and used to point drivers to an Iranian regime-linked website that publishes personal details of dissidents living in the city. The Caltrans (California Department of Transportation) sign displayed the address…...
Hackers use fake coding tests to infect 30,000 devices and steal $10 million in crypto
16+ hour, 18+ min ago (416+ words) The agencies refer to the group behind the activity as WaterPlum. It targets web designers, software engineers and people working in cryptocurrency and Web3. The group contacts victims while posing as recruiters, then sends what appears to be a coding exercise…...
Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors
17+ hour, 4+ min ago (585+ words) The North Korean threat actor known as Jade Sleet has been attributed to the compromise of an India-based "much smaller organization" in the information technology (IT) services industry, once again highlighting how the adversary continues to target developers to breach…...
North Korea Hackers Stole Crypto in Fake Job Interviews
1+ day, 20+ hour ago (19+ words) State-linked North Korean hackers used fake technical job interviews to install malware, capture credentials and steal millions in cryptocurrency....
Iran-Linked Hackers target Windows Machines through WhatsApp and Telegram
3+ day, 9+ hour ago (444+ words) Cybersecurity Insiders An Iranian hacking group has reportedly launched a new spyware campaign targeting Windows users through popular messaging platforms such as WhatsApp and Telegram. The campaign comes amid heightened geopolitical tensions involving Iran and the United States, raising concerns…...
China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America
4+ day, 13+ hour ago (467+ words) The China-aligned state-sponsored threat actor known as FamousSparrow has been observed deploying a previously unreported backdoor called SparroWocky in attacks targeting multiple countries in Latin America since at least August 2025. "SparroWocky is a modular, C++ backdoor," ESET security researchers Alexandre…...