All actors
Linked to Russia by two sources.
6 August 2026
Hook, Line, and Token: Anatomy of the Kali365 / Octopi365 Phishing-as-a-Service Kit
date ORKL added it fromORKL
Archived copy on ORKL Detailsfor Hook, Line, and Token: Anatomy of the Kali365 / Octopi365 Phishing-as-a-Service Kit
31 July 2026
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
Malpedia library date fromORKL
Archived copy on ORKL Detailsfor CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
29 May 2025
Defending against evolving identity attack techniques | Microsoft Security Blog
Archived copy on ORKL Detailsfor Defending against evolving identity attack techniques | Microsoft Security Blog
13 February 2025
Storm-2372 conducts device code phishing campaign | Microsoft Security Blog
Archived copy on ORKL Detailsfor Storm-2372 conducts device code phishing campaign | Microsoft Security Blog
Newest first. Details opens the report in Explore.