Page 5 of 5
Earlier Research
Midnight Blizzard (APT29): Russian State-Sponsored Breach of Microsoft Corporate SystemsState-SponsoredData Breach
Russian state-sponsored group Midnight Blizzard (APT29) breached Microsoft's corporate environment via password spray against a legacy non-production test tenant, accessed executive and security team email, and exfiltrated OAuth tokens and source code — demonstrating sophisticated identity-based tradecraft without malware.
State-SponsoredData Breach
BROWSE BY CATEGORY16 CATEGORIES
1Data Breach
332Ransomware
113Financial Fraud
134State-Sponsored
145Social Engineering
156Malware
247Insider Threat
18Supply Chain Attack
169Darknet & Illicit Markets
610Cryptocurrency & Web3
511Botnet & DDoS
412Identity Theft
813Extortion & Blackmail
1314AI & Machine Learning
1215OT & Industrial Systems
316Surveillance & Lawful Intercept
1Weekly Digest
New research, once a week. No vendor pitches.
About ThreatPaper
Structured, technical research on real high-impact cybercrime incidents. Not news. Not CVE feeds. Verified, cited, educational.
Learn more →