TA473

Actor Type Nation State
Attributed to Nation Belarus, Russia
Directly Linked Intrusion Sets TAG-70 , UAC-0114 , Winter Vivern

TA473 is an intrusion set tracked by cyber threat researchers at Proofpoint, which shows overlap with the Winter Vivern actor.

Proofpoint researchers observed the group exploiting vulnerabilities in the Zimbra mail server to gain access to the mailboxes of European government entities.

Cyber Threat Graph Context

Explore how this Intrusion Set relates to the wider threat graph

TA473 Threat Reports

Report

Exploitation is a Dish Best Served Cold: Winter Vivern Uses Known Zimbra Vulnerability to Target Webmail Portals of NATO-Aligned Governments in Europe

Proofpoint researchers describe espionage activity targeting US elected officials and staffers which they attribute to TA473 (also known as Winter ...

References