Apt28
The latest Apt28 coverage — news, analysis, and updates from the WindowsNews.AI desk.
APT28’s Authentic Antics Malware Targets Microsoft 365: A New Cyber-Espionage Threat to Critical Infrastructure
APT28’s “Authentic Antics” Malware: New Frontlines in the Ongoing Cyber-Espionage War on Microsoft 365 and Critical Infrastructure The United Kingdom's National Cyber Security Centre (NCSC)...
Authentic Antics: Unveiling Russian State-Sponsored Cyber Attacks Targeting Microsoft Outlook and Microsoft 365
Russian state-sponsored cyber attacks are once again dominating the headlines, driving fresh anxiety across the global IT and security communities. The latest disclosures—centered on a sinister...
Unveiling the Authentic Antics Malware Campaign: APT28’s Targeting of Microsoft 365 and Outlook
The emergence of the “Authentic Antics” malware campaign has placed new urgency on global conversations about cybersecurity, advanced persistent threats (APTs), and the evolving landscape of...
GRU Cyber Warfare: How APT28 Targets Western Logistics & Ukrainian Aid Networks
The digital front lines of the Ukraine conflict extend far beyond the battlefield, with Russia's military intelligence agency, the GRU, executing sophisticated cyber campaigns designed to cripple the...
Windows NTLM Hash Leak CVE-2025-24054 Exploited Rapidly After Patch Tuesday
Rapid Exploitation of CVE-2025-24054: NTLM Hash Leaking and Windows Security Risks Introduction On March 11, 2025, Microsoft released its monthly Patch Tuesday security updates, as part of its...
CVE-2025-24054: Exploitation of Windows NTLM Hash Leak Vulnerability Highlights Urgent Need for Patch Management
Overview In March 2025, Microsoft addressed a critical security vulnerability, CVE-2025-24054, within its Windows operating system. This flaw, involving the NT LAN Manager (NTLM) authentication...
Exploitation of Windows NTLM Vulnerability CVE-2025-24054 in Widespread Cyberattacks
Overview In March 2025, Microsoft released a security update addressing a critical vulnerability in the Windows NT LAN Manager (NTLM) authentication protocol, identified as CVE-2025-24054. Despite...
March 2025 Patch Tuesday: Critical NTLM & Apple Zero-Day Exploits by APT28
The digital landscape braced for impact as March 2025’s Patch Tuesday unfolded, revealing critical vulnerabilities stretching across operating systems and device ecosystems. Microsoft’s security...
From Low-Risk Flaw to Global Cyber Pandemic: The Rapid Exploitation of Windows Vulnerability CVE-2025-24054
Introduction In March 2025, Microsoft released a security update addressing CVE-2025-24054, a vulnerability in Windows NTLM authentication initially deemed "less likely" to be exploited. However,...
CVE-2025-24054 attack steals NTLM hashes via malicious SCF file interaction
Introduction In March 2025, cybersecurity circles lit up with alarm over CVE-2025-24054, a critical vulnerability affecting the New Technology LAN Manager (NTLM) authentication protocol widely used...