top of page

CYBER & INFOSEC

"blogger, InfoSec specialist, super hero ... and all round good guy" 

DISCUSSIONS, CONCEPTS & TECHNOLOGIES FOR THE WORLD OF

JOIN THE DISCUSSION

Midnight Blizzard: Guidance for responders on nation-state attack

  • Writer: Aamir Lakhani
    Aamir Lakhani
  • Mar 5, 2024
  • 1 min read





Microsoft research posted a very interesting blog post on a current nation state threat being tagged as Midnight Blizzard. Who is this threat actor?



Midnight Blizzard (also known as NOBELIUM) is a Russia-based threat actor attributed by the US and UK governments as the Foreign Intelligence Service of the Russian Federation, also known as the SVR. This threat actor is known to primarily target governments, diplomatic entities, non-governmental organizations (NGOs) and IT service providers, primarily in the US and Europe. Their focus is to collect intelligence through longstanding and dedicated espionage of foreign interests that can be traced to early 2018. Their operations often involve compromise of valid accounts and, in some highly targeted cases, advanced techniques to compromise authentication mechanisms within an organization to expand access and evade detection.



The article found HERE lists their attack techniques, tactics, and procedures as well as what can be done to reduce the risk of being compromised by their TTPs.

 
 
 

21 Comments



Long Notebook
Long Notebook
Sep 05, 2025
Like

Long Notebook
Long Notebook
Sep 05, 2025
Like

Long Notebook
Long Notebook
Sep 05, 2025
Like

Long Notebook
Long Notebook
Sep 05, 2025

“Insightful breakdown on defending against sophisticated nation-state threats—understanding attackers like Midnight Blizzard helps strengthen our digital defenses. And while we're safeguarding cyber systems, it’s reassuring to know that in Janakpuri, we also have a trusted best dentist in Janakpuri offering top-notch care with the same level of precision and reliability—whether it's implants, root canals, or emergency treatments. Balance is vital—both online and offline!”

Like

doctorchaos.com and drchaos.com is a blog dedicated to Cyber Counter Intelligence and Cybersecurity technologies. The posts will be a discussion of concepts and technologies that make up emerging threats and techniques related to Cyber Defense. Sometimes we get a little off-topic. Articles are gathered or written by cyber security professionals, leading OEMs, and enthusiasts from all over the world to bring an in-depth, real-world, look at Cyber Security. About this blog doctorchaos.com and drchaos.com and any affiliate website does not represent or endorse the accuracy or reliability of any information’s, content or advertisements contained on, distributed through, or linked, downloaded or accessed from any of the services contained on this website, nor the quality of any products, information’s or any other material displayed, purchased, or obtained by you as a result of an advertisement or any other information’s or offer in or in connection with the services herein. Everything on this blog is based on personal opinion and should be interoperated as such. Contact Info If you would like to contact this blog, you may do so by emailing ALAKHANI(AT)YMAIL(DOT)COM  

SOCIALS 

SUBSCRIBE 

Keeping you informed | Latest News

© 2018 Dr. Chaos 

bottom of page