2024-12-04 (Back to Inventory)

Frequent freeloader part I: Secret Blizzard compromising Storm-0156 infrastructure for espionage

Author(s): Microsoft Threat Intelligence
Organization: Microsoft
win.crimson win.minipocket win.twodash win.wainscot Operation C-Major Storm-0473

Open article directly   Open article on Archive.org  

Related Articles

2026-08-26 ⋅ Microsoft ⋅ Parasharan Raghavan, Sagar Patil, Suriyaraj Natarajan
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
Lorem Ipsum
2026-07-31 ⋅ Microsoft Threat Intelligence
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
ChocoShell CornFlake Storm-2945
2026-06-17 ⋅ Microsoft ⋅ Microsoft Defender Research Team
From package to postinstall payload: Inside the Mastra npm supply chain compromise by Sapphire Sleet