Home
Glossary
Calisto
Table of content
5 min
H2 title on one or more lines.
Share
By
Updated on
June 22, 2026

Calisto

Calisto, also known as COLDRIVER, is a threat actor close to Russia, observed running phishing campaigns against military and strategic research targets such as NATO entities, defense contractors, NGOs, and think tanks.

Calisto is a reputed threat actor close to Russia and also known as COLDRIVER. Although he has not been publicly attributed to any Russian intelligence service, Calisto's past operations have shown objectives and victimology closely aligned with Russian strategic interests.

It mainly targets Western countries, especially the United States, and Eastern European countries. Specifically, he has been observed running phishing campaigns. These phishing campaigns targeted military and strategic research sectors such as NATO entities and a defense contractor based in Ukraine, as well as NGOs and think tanks.

Among its victims are also former intelligence officials, experts in Russian affairs and Russian citizens abroad.

We are a cybersecurity software publisher. We provide SOC and MSSP teams with a turnkey operational security platform (SOC platform). Through our XDR platform, CTI tool and threat intelligence platform, we enable our users to neutralize cyber threats, regardless of the attack surface.