Thursday, April 2, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

ESET Research: Russian FSB-linked Gamaredon and Turla team up to target high-profile Ukrainian entities

September 19, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 6 mins read
5
SHARES
243
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • In a first-of-its-kind discovery, ESET observed that the Gamaredon tool PteroGraphin was used to restart Turla group’s Kazuar backdoor on a machine in Ukraine. More recently, ESET detected that Turla’s backdoor was deployed using Gamaredon tools PteroOdd and PteroPaste.
  • ESET Research believes with high confidence that Gamaredon is collaborating with Turla.
  • Both groups are affiliated with the Federal Security Service (FSB), Russia’s main domestic intelligence and security agency.
  • Turla’s victim count is very low compared to the number of Gamaredon compromises, suggesting that Turla chose the most valuable machines.

MONTREAL and BRATISLAVA, Slovakia, Sept. 19, 2025 (GLOBE NEWSWIRE) — ESET Research has uncovered the first known cases of collaboration between Gamaredon and Turla. Both threat groups are associated with the main Russian intelligence agency, the FSB, and in tandem attacked high-profile targets in Ukraine. On the affected machines, Gamaredon deployed a wide range of tools, and on one of those machines, Turla was able to issue commands via Gamaredon implants.

“In the course of this year, ESET has detected Turla on seven machines in Ukraine. Since Gamaredon is compromising hundreds if not thousands of machines, this suggests that Turla is only interested in specific machines, probably those containing highly sensitive intelligence,” says ESET researcher Matthieu Faou, who discovered the Turla and Gamaredon collaboration in cooperation with ESET researcher Zoltán Rusnák.

Notably, in February 2025, ESET Research detected the execution of Turla’s Kazuar backdoor by Gamaredon’s PteroGraphin and PteroOdd on a machine in Ukraine. PteroGraphin was used to restart the Kazuar v3 backdoor, possibly after it crashed or was not launched automatically. Thus, PteroGraphin was probably used as a recovery method by Turla. This is the first time that anyone has been able to link these two groups together via technical indicators. In April and June 2025, ESET detected that Kazuar v2 was deployed using Gamaredon tools PteroOdd and PteroPaste.

Kazuar v3 is the latest branch of the Kazuar family, itself an advanced C# espionage implant that ESET believes is used exclusively by Turla; it was first seen in 2016. Other malware deployed by Gamaredon was PteroLNK, PteroStew, and PteroEffigy.

“Gamaredon is known for using spearphishing and malicious LNK files on removable drives, thus one of these was the most likely compromise vector. We believe with high confidence that both groups – separately associated with the FSB – are cooperating and that Gamaredon is providing initial access to Turla,” says Rusnák.

As already mentioned, both are part of the Russian FSB. According to Security Service of Ukraine, Gamaredon is thought to be operated by officers of Center 18 of the FSB (aka the Center for Information Security) in Crimea, which is part of the FSB’s counterintelligence service. As for Turla, the UK’s National Cyber Security Centre attributes the group to the Center 16 of the FSB, which is Russia’s main signals intelligence agency.

From an organizational perspective, it is worth noting that the two entities commonly associated with Turla and Gamaredon have a long history of reported collaboration, which can be traced back to the Cold War era. 2022’s full-scale invasion of Ukraine has probably reinforced this convergence, with ESET data clearly showing Gamaredon and Turla activities focusing on the Ukrainian defense sector in recent months.

Gamaredon has been active since at least 2013. It is responsible for many attacks, mostly against Ukrainian governmental institutions. Turla, also known as Snake, is an infamous cyberespionage group that has been active since at least 2004, possibly extending back into the late 1990s. It mainly focuses on high-profile targets, such as governments and diplomatic entities, in Europe, Central Asia, and the Middle East. It is known for having breached major organizations such as the US Department of Defense in 2008 and the Swiss defense company RUAG in 2014.

For a more detailed analysis and technical breakdown of Turla and Gamaredon’s interactions, check out the latest ESET Research blogpost “Gamaredon X Turla collab” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET

ESET® provides cutting-edge cybersecurity to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown – securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts, and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.
ShareTweet1ShareSendShare2
Previous Post

Virtune announces that selected crypto ETPs are now available for commission-free buying and monthly savings plans on Finanzen.net Zero

Next Post

Invitation to Netcompany’s Capital Markets Day 31 October 2025 – Unlocking the Potential

Related Posts

Vertical Data Inc. Begins Trading on the OTCQB Venture Market Under Ticker Symbol “VDTA”

Public Markets Access Accelerates Capital Deployment for Vertical Data's AI Infrastructure Expansion LAS VEGAS, NV / ACCESS Newswire / April 1, 2026 / Vertical Data Inc. (OTCQB:VDTA) ("Vertical Data" or the "Company"), an AI infrastructure company providing sovereign cloud, AI hardware, GPU financing, and edge data center solutions, today announced...

Read moreDetails

Nexscient(R) Acquires Flipside AI, Completing a $6.2M Deal to Expand Physical AI Data Capabilities

Appoints Anthony De Luna to Board of Directors, Names Him Chief Technology Officer LOS ANGELES, CA / ACCESS Newswire / April 1, 2026 / Nexscient, Inc. (OTCQB:NXNT), a leading innovator in artificial intelligence applications and intelligent enterprise solutions, today announced the successful closing of its previously announced acquisition of Flipside...

Read moreDetails

Intermap’s AI Flood Risk Platform Adopted Across Czech Insurance Market

DENVER, April 01, 2026 (GLOBE NEWSWIRE) -- Intermap Technologies (TSX: IMP; OTCQB: ITMSF) (“Intermap” or the “Company”), a global leader in 3D geospatial products and intelligence solutions, today announced that eight leading insurers, representing a majority of the Czech residential property insurance market, have adopted Intermap’s AI flood risk platform,...

Read moreDetails

Yuki Brings Real-Time Cost Optimization to BigQuery

Yuki Launches BigQuery Cost Optimization Platform, Eliminating 3-Year Commitments While Cutting BigQuery Spend by Up to 60% Yuki adds an autonomous optimization layer for BigQuery that routes every job to the most efficient compute option in real time, without code changes, manual tuning, or long-term reservation lock-in. NEW YORK, April...

Read moreDetails

QCI Introduces New Operational Solutions at IGA 2026

SAN DIEGO, April 01, 2026 (GLOBE NEWSWIRE) -- Quick Custom Intelligence (QCI), a leading provider of AI-driven operations software for tribal gaming resorts, is showcasing a range of new operational solutions and ongoing development efforts this week at the Indian Gaming Association Tradeshow & Convention (IGA) 2026. As part of...

Read moreDetails

Nasdaq Notification Regarding Minimum Market Value of Listed Securities

SINGAPORE, April 01, 2026 (GLOBE NEWSWIRE) -- Trident Digital Tech Holdings Ltd (“Trident” or the “Company,” NASDAQ: TDTH), a leading catalyst for digital transformation in technology optimization services and Web 3.0 activation based in Singapore, has received a notification letter, dated March 26, 2026, from the Listing Qualifications Department of...

Read moreDetails

Integer Technologies and South Carolina Critical Infrastructure Cybersecurity Program Announce Strategic Partnership to Strengthen Statewide Cyber Defense

COLUMBIA, S.C., April 01, 2026 (GLOBE NEWSWIRE) -- Integer Technologies, a leading provider of adaptive artificial intelligence (AI) defense technologies for cyber-physical resilience, today announced a strategic partnership with the South Carolina Critical Infrastructure Cybersecurity (SC CIC) Program to safeguard critical infrastructure and enhance statewide cybersecurity resilience. Through a newly...

Read moreDetails

Vadzo Imaging Launches HDR Camera Portfolio for Retail Applications Across USB Camera, MIP Camera, and GigE Camera Series

Vadzo HDR Cameras for Retail | Falcon USB 3.2 Gen 1, Bolt MIPI & Innova GigE | Smart Shelves, Checkout & In-Store Analytics | High Dynamic Range & Low-Light Optimized | Plug-and-Play Integration | VISPA ARC & Vadzo NXT SDK for OEMs 2MP - 13MP HDR Camera Portfolio | Onsemi...

Read moreDetails

Mamatha Chamarthi, Former Goodyear Executive and AI Transformation Leader, to Deliver Keynote on the Future of Work

ROCHESTER, MI / ACCESS Newswire / April 1, 2026 / AI transformation executive Mamatha Chamarthi will deliver a keynote address at Oakland University as part of the Michigan Council of Women in Technology (MCWT) Student Forum Speed Mentoring event, taking place Wednesday, April 1 from 5:30 to 8:00 p.m. ET...

Read moreDetails

Datavault AI Inc. (NASDAQ: DVLT) and Demora Foundation Execute Technology Integration Agreement to Power the K-Entertainment & K-Wave Global Platform

DVLT × Demora Foundation: Datavault AI's Enterprise AI Stack Deployed as the Data Intelligence & RWA Tokenization Layer for K-Pop, K-Drama, K-Entertainment, and K-Culture IP - Serving 200M+ Hallyu Fans Across 156 Countries Through K2Global's 500+ Korean SMB Network and Three US Innovation K-Wave Cities PHILADELPHIA, PA AND WILMINGTON, DE...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • 7 Best IPTV Services in the USA (March 2026 Updated): Tested & Ranked

    12 shares
    Share 5 Tweet 3
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    157 shares
    Share 63 Tweet 39
  • Discover 2025’s Top 5 Promising Low-Cap Crypto Gems

    95 shares
    Share 38 Tweet 24
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    51 shares
    Share 20 Tweet 13
  • VoluTools Launches the Most Advanced Pump.fun Volume Bot for Solana Token Creators in 2026

    5 shares
    Share 2 Tweet 1
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • ShopView Launches Free Heavy Duty Repair Shop Website Builder, Eliminating $3,000+ Cost Barrier for Independent Diesel Shops
  • Vertical Data Inc. Begins Trading on the OTCQB Venture Market Under Ticker Symbol “VDTA”
  • Nexscient(R) Acquires Flipside AI, Completing a $6.2M Deal to Expand Physical AI Data Capabilities
  • Selling a Business Checklist Released to Help Sell a Business in USA (2026 Guide)
  • Intermap’s AI Flood Risk Platform Adopted Across Czech Insurance Market

RSS Latest on Block3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age

RSS Latest on Meta3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.