Advanced Persistent Threats & Cybercrime Syndicates
Lazarus Group (APT38 / Hidden Cobra / BlueNoroff)
Prolific state-backed cyber warfare and financial cyber-heist collective responsible for billions in cryptocurrency theft, defense espionage, and disruptive attacks.
Volt Typhoon (Bronze Silhouette / Vanguard Panda)
State-sponsored threat actor focused on stealth pre-positioning within critical infrastructure networks to enable disruptive kinetic or cyber sabotage.
Sandworm (Unit 74455 / Main Center for Special Technologies)
The Russian military intelligence agency’s premier cyber-sabotage unit, notorious for devastating wiper malware, power grid blackouts, and NotPetya.
Midnight Blizzard (APT29 / Nobelium / Cozy Bear)
Elite Russian Foreign Intelligence Service (SVR) cyber espionage apparatus celebrated for high-level government infiltration, SolarWinds supply chain poisoning, and cloud token manipulation.
Scattered Spider (UNC3944 / Octo Tempest / Starfraud)
Hyper-aggressive, English-speaking cybercrime syndicate mastering identity provider compromise, SIM swapping, helpdesk social engineering, and cloud infrastructure ransom.