UTA0352 is a Russian threat actor attributed to phishing campaigns that exploit Microsoft OAuth 2.0 authentication workflows, often impersonating gove...

Threat Actor Profile

UTA0352

State-sponsored threat group originating from RU.

Real-Time Alerts

Actor Overview

Origin Country
RU

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on UTA0352 is published.

Actor Details

Primary Name
UTA0352
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →