TA473
Actor Type | Nation State |
---|---|
Attributed to Nation | Belarus, Russia |
Directly Linked Intrusion Sets | TAG-70 , UAC-0114 , Winter Vivern |
TA473 is an intrusion set tracked by cyber threat researchers at Proofpoint, which shows overlap with the Winter Vivern actor.
Proofpoint researchers observed the group exploiting vulnerabilities in the Zimbra mail server to gain access to the mailboxes of European government entities.
Cyber Threat Graph Context
Explore how this Intrusion Set relates to the wider threat graph
TA473 Threat Reports
Report
Exploitation is a Dish Best Served Cold: Winter Vivern Uses Known Zimbra Vulnerability to Target Webmail Portals of NATO-Aligned Governments in Europe
Proofpoint researchers describe espionage activity targeting US elected officials and staffers which they attribute to TA473 (also known as Winter ...