Russians lure diplomats into malware trap with wine-tasting
- In January 2025, Check Point reported APT29 began a phishing campaign targeting European diplomatic entities.
- APT29, linked to Russia, aimed to gather intelligence from European governments and embassies.
- Attackers sent spoofed emails, pretending to be a European Ministry of Foreign Affairs, inviting targets to wine events.
- The emails used subject lines like 'Wine tasting event '; clicking the link downloaded a malicious archive.
- The campaign deployed GRAPELOADER and a new WINELOADER variant for reconnaissance, persistence, and data exfiltration.
19 Articles
19 Articles


Russia-linked hackers targeting European diplomats with invites to bogus wine tasting events
close Video Fox News Flash top headlines for April 15 Fox News Flash top headlines are here. Check out what’s clicking on Foxnews.com. A Russia-linked hacking group unleashed a new “advanced phishing campaign” targeting European diplomats with invites to fake wine tasting events, according to a report. Check Point Research said the APT29 group is trying to “impersonate a major European Ministry of Foreign Affairs to send out invitations to w…
Russian hackers sent fake wine tasting invitations to diplomats
A well-known Russian hacking group linked to the SVR intelligence service attempted to spread malware via invitations to wine tastings. The targets were primarily European diplomats, and the invitations were sent on behalf of the foreign ministry of one of the major EU countries. It is not known which one.
Coverage Details
Bias Distribution
- 78% of the sources are Center
To view factuality data please Upgrade to Premium
Ownership
To view ownership data please Upgrade to Vantage