SquareX Researchers Expose OAuth Attack on Chrome Extensions Days Before Major Breach

Category Details Threat Actors Attackers impersonating Chrome Store and using phishing tactics to hijack extensions.…

Beijing-linked hackers penetrated Treasury systems

Category Details Threat Actors Chinese state-sponsored actor (linked to groups like Volt Typhoon and Salt…

Dark Web Profile: Gamaredon APT

Category Details Threat Actors Gamaredon APT (also known as Primitive Bear, Actinium, UAC-0010, Aqua Blizzard,…

Chinese State-Sponsored Threat Actors Breach U.S. Treasury Department in Major Cybersecurity Incident

Category Details Threat Actors Chinese state-sponsored APT group (potentially Salt Typhoon). Campaign Overview Breach of…

APT28’s 2024 Cyber Operations: A Comprehensive Roundup

Overview APT28, also known as Fancy Bear, Sofacy, or Forest Blizzard, has been a popular…

PlugX worm disinfection campaign feedbacks

Category Details Threat Actors PlugX worm (associated with Mustang Panda) Campaign Overview Disinfection of systems…

Dark Web Profile: Trinity Ransomware

Category Details Threat Actors Trinity Ransomware (possibly linked to previous variants like Zeoticus, Venus, 2023Lock)…

Cloud Atlas Deploys VBCloud Malware: Over 80% of Targets Found in Russia

Category Details Threat Actors Cloud Atlas (also known as Clean Ursa, Inception, Oxygen, and Red…

Dark Web Profile: Storm-842 (Void Manticore)

Category Details Threat Actors Storm-842 (Void Manticore), linked to Iranian MOIS, also operating under 'HomeLand…

CISA Adds Acclaim USAHERDS Vulnerability to KEV Catalog Amid Active Exploitation

Category Details Threat Actors • China-linked APT41 (previously attributed to exploiting CVE-2021-44207 in 2021). Campaign…