Russia-aligned threat actor Earth Sirrush has sustained spear-phishing operations against Ukrainian government, defense, border security, and logistics organizations since at least 2022. TrendAI Research’s analysis, covering activity through July 2026, identifies an evolving espionage toolkit whose persistent development and infrastructure patterns connect seemingly separate campaigns. Previously tracked as SHADOW-EARTH-065, the intrusion set overlaps with CERT-UA’s […]
Read the original article:
