Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor

Executive Summary

Russian state-sponsored threat group Star Blizzard has targeted over 100 U.S. and U.K. organizations linked to Ukraine since January. The campaign uses phishing emails that appear as legitimate event invitations, tricking recipients into downloading a Windows backdoor. Microsoft identified the malware and reported at least one compromised machine.


Intelligence Metadata - Source Publisher: The Hacker News - Published Date: 2026-09-29T17:20:08+00:00 - Category: threat-intel

Original Description: Russian state hackers known as Star Blizzard have been using fake event invitations to trick people into installing a backdoor on their Windows computers, according to Microsoft. The campaigns, aimed at people and organizations tied to Ukraine, have affected more than 100 organizations since January, mostly in the U.S. and U.K. At least one computer was infected, but the number of breached

"Success means having the courage, the determination, and the will to become the person you believe you were meant to be."

— George Sheehan
Source: The Hacker News