bleeping-computer · Crawled Jul 7, 2026
Spain arrests suspected member of pro-Russian hacktivist groups
3 Actors
Read original article ↗
AI Summary
Spanish authorities have arrested a man suspected of being an active member of the pro-Russian hacktivist groups CyberArmy of Russia Reborn (CARR) and Z-Pentest. He allegedly provided logistical and operational support to a Ukrainian hacker within CARR and facilitated escape routes to Russia. The groups have been linked to attacks on critical infrastructure in the U.S. and Europe, including SCADA systems, and are loosely associated with the Russian state-backed APT44 (Sandworm). The suspect also participated in operations attributed to the hacktivist group NoName057(16), which promotes pro-Russian and anti-Western narratives.
AI-extracted · verify before operational use
Extracted Entities 3 found
MITRE ATT&CK TTPs 17 techniques
T1012 Query Registry · Discovery T1048.003 Exfiltration Over Unencrypted Non-C2 Protocol · Exfiltration T1053.005 Scheduled Task · Execution T1059.001 PowerShell · Execution T1059.003 Windows Command Shell · Execution T1069.002 Domain Groups · Discovery T1070.001 Clear Windows Event Logs · Defense Evasion T1071.001 Web Protocols · Command And Control T1078.004 Cloud Accounts · Defense Evasion T1083 File and Directory Discovery · Discovery T1087.002 Domain Account · Discovery T1090 Proxy · Command And Control T1129 Shared Modules · Execution T1136.002 Domain Account · Persistence T1204.002 Malicious File · Execution T1217 Browser Information Discovery · Discovery T1566 Phishing · Initial Access