Russian-speaking hacker group now focuses on government targets


  • Tomiris APT targets government agencies with multilingual malware implants
  • Group hides C2 traffic in Telegram/Discord, using phishing for initial access
  • Campaign focuses on state-level intelligence and hits institutions in Russia and Central Asia

Tomiris, a Russian-speaking APT hacking group, has targeted its attacks to target government ministries, intergovernmental organizations, and politically important institutions.

This is according to a new report from cybersecurity researchers Kaspersky, which claims that starting in early 2025, there was a wave of intrusions during which Tomiris deployed a vast arsenal of multilingual implants.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top