[Unnamed groups: Russia] - Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 20:54:22 UTC Home > List all groups > [Unnamed groups: Russia] APT group: [Unnamed groups: Russia] Names [Unnamed groups: Russia] (?) Country Russia Motivation Information theft and espionage, Financial gain, Sabotage and destruction First seen 2014 Description These are reported APT activities attributed to a country, but not to an individual threat group. Observed Sectors: Financial. Countries: Australia, Singapore, USA and Worldwide. Tools used Operations performed 2014 Yahoo hit with a Massive 500 Million Account Data Breach Jun 2018 Russian Attacks Against Singapore Spike During Trump-Kim Summit Jun 2022 Russian hackers may be behind Texas natural gas plant explosion: report Oct 2022 Medibank cyber incident https://apt.etda.or.th/cgi-bin/showcard.cgi?u=d8af7e66-0392-4082-bdb9-f7157083d079 Page 1 of 4 Jul 2024 Poland to probe Russia-linked cyberattack on state news agency Nov 2024 Seoul accuses pro-Kremlin hackers of attacking websites over decision to monitor North Korean troops in Ukraine Apr 2025 Pro-Russian hackers blamed for water dam sabotage in Norway Counter operations Mar 2017 US Charges Four Hackers in Yahoo 2014 Security Breach, Including Two FSB Agents Mar 2022 Justice Department Announces Court-Authorized Disruption of Botnet Controlled by the Russian Federation’s Main Intelligence Directorate (GRU) Jun 2022 Russian Botnet Disrupted in International Cyber Operation Jan 2024 Australia, US, UK Sanction Russian Over 2022 Medibank Breach Feb 2024 Justice Department Conducts Court-Authorized Disruption of Botnet Controlled by the Russian Federation’s Main Intelligence Directorate of the General Staff (GRU) Feb 2024 Russia arrests three alleged SugarLocker ransomware members Jul 2024 Justice Department Leads Efforts Among Federal, International, and Private Sector Partners to Disrupt Covert Russian Government-Operated Social Media Bot Farm https://apt.etda.or.th/cgi-bin/showcard.cgi?u=d8af7e66-0392-4082-bdb9-f7157083d079 Page 2 of 4 Sep 2024 Justice Department Disrupts Covert Russian Government-Sponsored Foreign Malign Influence Operation Targeting Audiences in the United States and Elsewhere Nov 2024 Russia arrests cybercriminal Wazawaka for ties with ransomware gangs Dec 2024 Russia sentences Hydra dark web market leader to life in prison Dec 2024 Operation “Destabilise” Operation Destabilise: NCA disrupts $multi-billion Russian money laundering networks with links to, drugs, ransomware and espionage, resulting in 84 arrests Dec 2024 EU issues first-ever sanctions over ‘Russian hybrid threats’ Jan 2025 Treasury Sanctions Entities in Iran and Russia That Attempted to Interfere in the U.S. 2024 Election Jan 2025 Three Russian-German Nationals Charged with Espionage for Russian Secret Service https://apt.etda.or.th/cgi-bin/showcard.cgi?u=d8af7e66-0392-4082-bdb9-f7157083d079 Page 3 of 4 Jan 2025 Cyber-attacks: three individuals added to EU sanctions list for malicious cyber activities against Estonia May 2025 Russian hybrid threats: EU lists further 21 individuals and 6 entities and introduces sectoral measures in response to destabilising activities against the EU, its member states and international partners Jul 2025 UK sanctions Russian spies at the heart of Putin’s malicious regime Information Last change to this card: 16 August 2025 Download this actor card in PDF or JSON format Source: https://apt.etda.or.th/cgi-bin/showcard.cgi?u=d8af7e66-0392-4082-bdb9-f7157083d079 https://apt.etda.or.th/cgi-bin/showcard.cgi?u=d8af7e66-0392-4082-bdb9-f7157083d079 Page 4 of 4