Cyber Threat Report: 'SVR cyber actors adapt tactics for initial cloud access'
| Report Author | UK NCSC |
|---|---|
| Publication Date | 2024-02-26 |
| Original Reporting | Source |
| Attributed to Nation | Russia |
| Related Intrusion Sets | APT29 , Cozy Bear , The Dukes , Midnight Blizzard |
| Related Threat Actors | SVR - Russian Foreign Intelligence Service |
| Victim Sectors | National Government, Emergency Services, Aerospace, Education, Healthcare, Non Profit, Local Government, Energy |
This advisory from the UK's National Cyber Security Centre (NCSC) outlines tactics, techniques and procedures (TTPs) used by the cyber actors associated with the SVR (Russian intelligence services). Specifically, the NCSC link the activity to the intrusion set aliases Midnight Blizzard, the Dukes and Cozy Bear. The advisory details the modernisation of the actor's TTPs including their ability to target victims' cloud environments.
Cyber Threat Graph Context
Explore how this report relates to the wider threat graph