Risky Bulletin Newsletter
August 01, 2025
Risky Bulletin: Russia spies on foreign embassies using local ISPs
Presented by
News Editor
Russian intelligence services are hacking and spying on foreign embassies and their staff by tampering with their internet connections.
Russian espionage units are using the SORM traffic interception system installed at local ISPs to alter traffic and deliver malware payloads to embassy staff.
According to Microsoft, the campaign has been ongoing since at least last year. The company attributed the attacks to a group it tracks as Secret Blizzard, but more widely known as Turla.