CVE-2024-9264: A Critical Vulnerability in Grafana : Vulnerability Analysis and Exploitation

CategoryDetailsThreat ActorsNation-state Actors, Cybercriminals, and Insiders exploiting CVE-2024-9264.Campaign OverviewCVE-2024-9264 enables low-privilege users to execute arbitrary…

Sophos MDR blocks and tracks activity from probable Iranian state actor “MuddyWater”

Key Detail Description Threat Actors Iranian threat actor, MuddyWater (TA450). Campaign Overview Phishing campaign using…

Threat Assessment: Ignoble Scorpius, Distributors of BlackSuit Ransomware

CategoryDetailsThreat ActorsIgnoble Scorpius (formerly Royal ransomware, also tied to Conti)Campaign OverviewIncreased activity from March 2024…

FrostyGoop’s Zoom-In: A Closer Look into the Malware Artifacts, Behaviors and Network Communications

Category Details Threat Actors Russian Threat Actors (suspected based on the attack's origin). Campaign Overview…

  • APT
  • November 19, 2024
Unveiling LIMINAL PANDA: A Closer Look at China's Cyber Threats to the Telecom Sector

CategoryDetailsThreat ActorsLIMINAL PANDA, associated with China-nexus cyber operations.Campaign OverviewActive since at least 2020, LIMINAL PANDA…

Security Brief: ClickFix Social Engineering Technique Floods Threat Landscape

CategoryDetailsThreat ActorsTA571, ClearFake, various financially motivated and espionage groups (e.g., UAC-0050, Russian espionage targeting Ukraine).Campaign…

Dark Web Profile: Cadet Blizzard

CategoryDetailsThreat ActorsCadet Blizzard (DEV-0586), a Russian GRU-affiliated cyber threat group, part of Unit 29155.Campaign OverviewActive…

18th November – Threat Intelligence Report

CategoryDetailsChinese Cyber-Espionage CampaignFBI and CISA issued a joint statement on a major Chinese cyber-espionage campaign…

APT Profile – MUDDYWATER

CategoryDetailsThreat ActorsMuddyWater (also known as MERCURY, Seedworm, Static Kitten, TEMP.Zagros, Earth Vetala), Iranian government-affiliated APT…

Malware Spotlight:  A Deep-Dive Analysis of WezRat

Key DetailInformationThreat ActorsEmennet Pasargad (affiliated with IRGC), operating under aliases such as Aria Sepehr Ayandehsazan…