Turla
Coverage of Turla in the Nexus archive.
- Europe strikes out against Russia’s Turla over espionage, ‘destructive attacks’
European governments sanctioned Russian individuals and organizations linked to cyberespionage group Turla and destructive attacks, including FSB's Center 16 and GRU figures. The EU and UK cited Turla's 2010–2023 operations targeting European nations and Poland's 2022 energy grid attack.
- France sanctions Russian elite cyberespionage unit 'Turla'
France has sanctioned Russia's Turla cyberespionage unit, accusing the FSB of cyberattacks on French ministries and a research institute. The Russian ambassador to France will be summoned in response.
- EU sanctions Russian cyber spies for years-long hacking
The EU sanctioned Russian FSB cyber operatives linked to Turla, a hacking group targeting EU and Ukrainian governments, critical infrastructure, and strategic industries since 2010. Sanctions include travel bans and asset freezes for individuals and entities like Advanced System Technology (AST) and NPP Gamma, with France and the UK also imposing related measures.
- Google Details Turla's New STOCKSTAY Backdoor Used in Ukraine Espionage Attacks
The Russian state-sponsored threat actor Turla has developed a new .NET backdoor called STOCKSTAY, which has been used to target Ukrainian government and military organizations, as well as entities interested in Italian foreign policy. Google Threat Intelligence Group disclosed these details, highlighting the backdoor's ongoing development by the hacking group.
- Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent Access
The Russian state-sponsored hacking group Turla has transformed its Kazuar backdoor into a modular peer-to-peer botnet for stealthy and persistent access. Turla is affiliated with Center 16 of Russia's Federal Security Service. This transformation enables Turla to maintain access to compromised hosts.