Cyber Espionage Group UNK_SmudgedSerpent Targets Academics

A new threat group, UNK_SmudgedSerpent, has been identified as the perpetrator behind a series of cyber attacks targeting academics and foreign policy experts. The campaign, which occurred between June and August 2025, leveraged political lures and impersonated prominent figures to phish for credentials. The tactics resemble those of known cyber espionage groups, including the use of malicious URLs and Remote Monitoring and Management (RMM) software. The attacks aimed to gather intelligence on policy matters and academic research, hinting at evolving cooperation within the espionage ecosystem.

Latest mentioned: 11-05
Earliest mentioned: 11-05