← Threat Actors & APT Groups

BlueDelta

Every article that identifies BlueDelta as responsible for or connected to reported activity.

Nation-StateSecurity Affairs·4 hours ago

Russian APT BlueDelta Uses HOOKEDGE to Target Defense and Diplomatic Organizations

Russian APT BlueDelta leverages webhook.site and Microsoft Edge to conceal command-and-control communications for HOOKEDGE espionage operations targeting European government defense and diplomatic entities. The group, linked to Russia's GRU and overlapping with APT28, exploits the legitimate webhook testing service to hide malicious traffic from detection. Recorded Future's Insikt Group documented the campaign, revealing how the threat actor abuses developer tools to conduct sustained espionage against European government infrastructure.