Sponsor of the Day:
Jerkmate
https://threatpost.com/solarwinds-hack-linked-turla-apt/162918/
SolarWinds Hack Potentially Linked to Turla APT | Threatpost
Jan 11, 2021 - Researchers have spotted notable code overlap between the Sunburst backdoor and a known Turla weapon.
solarwinds hackpotentiallylinkedturlaapt
https://blog.talosintelligence.com/tinyturla/
TinyTurla - Turla deploys new malware to keep a secret backdoor on victim machines
Aug 24, 2022 - News summary * Cisco Talos recently discovered a new backdoor used by the Russian Turla APT group. * We have seen infections in the U.S., Germany and, more...
deploys newsecret backdoorturlamalwarekeep
https://thehackernews.com/2025/09/russian-hackers-gamaredon-and-turla.html
Russian Hackers Gamaredon and Turla Collaborate to Deploy Kazuar Backdoor in Ukraine
ESET confirms Russian hackers Gamaredon and Turla joined forces in Feb 2025 to deploy the Kazuar backdoor on Ukrainian targets, exposing FSB espionage
russian hackersturlacollaboratedeploybackdoor
https://detection.fyi/sigmahq/sigma/emerging-threats/2017/ta/turla/win_system_apt_turla_service_png/
Turla PNG Dropper Service | Detection.FYI
This method detects malicious services mentioned in Turla PNG dropper report by NCC Group in November 2018
service detection fyiturlapngdropper