COLDRIVER Creeps Closer with LOSTKEYS Malware

Amber | Attack Report
Download PDF

Russia-backed hacking group COLDRIVER, also known as Star Blizzard, has upped its espionage game with a new malware called LOSTKEYS. Discovered active in early 2025, this stealthy tool uses clever social engineering tricks to breach high-value targets, steal sensitive files, and evade detection. The campaign signals a sharp escalation in COLDRIVER’s tactics, reinforcing the rising cyber threat from state-sponsored actors in today’s volatile geopolitical climate.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox