"Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks"

From April 2022 to November 2023, the Russian state-sponsored hacking group APT28 conducted NT LAN Manager (NTLM) v2 hash relay attacks using various methods, focusing on high-value targets worldwide. The attacks targeted organizations involved in foreign affairs, energy, defense, transportation, and more. This article continues to discuss APT28's targeting of high-value organizations with NTLM v2 hash relay attacks.

THN reports "Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks"

Submitted by grigby1

Submitted by grigby1 CPVI on