“BadPilot”, le fer de lance des hackeurs russes de Seashell Blizzard (rapport Microsoft) - ZDNET

L’éditeur américain vient de publier un rapport sur ce sous-groupe chargé de faire main basse sur des accès sensibles.

ZDNET

🚨 Russian GRU-linked hackers are exploiting known software flaws to breach critical networks worldwide, targeting the US and UK, Microsoft warns of "BadPilot" campaign.

Read: https://hackread.com/microsoft-badpilot-campaign-seashell-blizzard-usa-uk/

#CyberSecurity #Microsoft #Russia #Ukraine #BadPilot

Microsoft Uncovers ‘BadPilot’ Campaign as Seashell Blizzard Targets US and UK

Follow us on Bluesky, Twitter (X) and Facebook at @Hackread

Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
#G0034 #apt44 #seashellblizzard > The #BadPilot campaign: Seashell Blizzard subgroup conducts multiyear global access operation | Microsoft Security Blog

Microsoft's threat intelligence team published new research into a Russian hacking subgroup within Seashell Blizzard and its "BadPilot" project. Seashell Blizzard conducts global activities on behalf of the GRU.

BadPilot is an initial access operation focused on breaching and gaining a foothold in victim networks. In 2022, it set its sights almost entirely on Ukraine, then broadened its hacking in 2023-2024 to home in on victims in the US, UK, Canada and Australia. Targets are typically energy, oil and gas, telecommunications, shipping, logistics, arms manufacturing and government agencies.

https://www.microsoft.com/en-us/security/blog/2025/02/12/the-badpilot-campaign-seashell-blizzard-subgroup-conducts-multiyear-global-access-operation/ #Cybersecurity #Hackers #Russia #GRU #BadPilot #Seashell_Blizzard #Microsoft #ThreatIntelligence #Breach #CVE

The BadPilot campaign: Seashell Blizzard subgroup conducts multiyear global access operation | Microsoft Security Blog

Microsoft is publishing for the first time our research into a subgroup within the Russian state actor Seashell Blizzard and its multiyear initial access operation, tracked by Microsoft Threat Intelligence as the “BadPilot campaign”. This subgroup has conducted globally diverse compromises of Internet-facing infrastructure to enable Seashell Blizzard to persist on high-value targets and support tailored network operations.

Microsoft Security Blog
A Hacker Group Within Russia’s Notorious Sandworm Unit Is Breaching Western Networks

A team Microsoft calls BadPilot is acting as Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the US, the UK, Canada, and Australia.

WIRED
Russia-linked APT Seashell Blizzard is behind the long-running global access operation BadPilot campaign

A subgroup of the Russia-linked Seashell Blizzard APT group (aka Sandworm) ran a global multi-year initial access operation called BadPilot.

Security Affairs

Headline: A #Hacker Group Within #Russia’s Notorious Sandworm Unit Is Breaching Western Networks

Subtitle: A team #Microsoft calls #BadPilot is acting as #Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the US, the UK, Canada, and Australia.

Source: https://www.wired.com/story/russia-sandworm-badpilot-cyberattacks-western-countries/

#Security #CyberSecurity

A Hacker Group Within Russia’s Notorious Sandworm Unit Is Breaching Western Networks

A team Microsoft calls BadPilot is acting as Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the US, the UK, Canada, and Australia.

WIRED

#Russia’s #Sandworm Hackers Deploy ‘#BadPilot’ Malware to Target Western Energy and Industrial Systems—Researchers warn the notorious group is expanding #cyberattacks beyond #Ukraine, raising concerns about critical infrastructure security.

🔗 https://www.wired.com/story/russia-sandworm-badpilot-cyberattacks-western-countries/

A Hacker Group Within Russia’s Notorious Sandworm Unit Is Breaching Western Networks

A team Microsoft calls BadPilot is acting as Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the US, the UK, Canada, and Australia.

WIRED

A #Hacker Group Within Russia’s Notorious #Sandworm Unit Is Breaching Western Networks

A team #Microsoft calls #BadPilot is acting as Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the #US , the #UK , #Canada , and #Australia.
#russia #breach

https://www.wired.com/story/russia-sandworm-badpilot-cyberattacks-western-countries/

A Hacker Group Within Russia’s Notorious Sandworm Unit Is Breaching Western Networks

A team Microsoft calls BadPilot is acting as Sandworm's “initial access operation,” the company says. And over the last year it's trained its sights on the US, the UK, Canada, and Australia.

WIRED