Security News Russian APT28 Runs Credential-Stealing Campaign Targeting Energy and Policy Organizations TheHackerNews Daniel Bender 09 Jan 2026 Russian-linked APT28 ran credential-harvesting attacks in 2025 using fake Microsoft, Google, and VPN login pages, PDF lures, and legitimate web servic