Dark Web Market: Abacus Market

CategoryDetailsThreat ActorsAbacus MarketCampaign OverviewLaunched in September 2021 as a response to AlphaBay’s closure, now a…

IT threat evolution in Q3 2024. Non-mobile statistics

Category Details Threat Actors LockBit ransomware affiliates, Evil Corp (tracked as GOLD DRAKE), GOLD HERON…

IT threat evolution in Q3 2024. Mobile statistics

Category Details Threat Actors Cybercriminals spreading adware, downloaders (e.g., xHelper), and Trojans (e.g., Necro, Triada).…

IT Threat Evolution Q3 2024

Category Details Threat Actors CloudSorcerer, BlindEagle, Tropic Trooper, Twelve, DARKSTAR, Key Group, Mallox, Head Mare,…

LockBit Links to Evil Corp

CategoryDetailsThreat ActorsMaksim Yakubets, Igor Turashev, Aleksandr Ryzhenkov, members of GOLD DRAKE (Evil Corp) and their…

Encrypted Symphony: Infiltrating the Cicada3301 Ransomware-as-a-Service Group

CategoryDetailsGroup OverviewCicada3301 Ransomware group, discovered in June 2024, operates as a Ransomware-as-a-Service (RaaS) targeting organizations…

Stealthy Attributes of APT Lazarus: Evading Detection with Extended Attributes

CategoryDetailsThreat ActorsAPT LazarusCampaign OverviewNew technique for code smuggling using custom extended attributes (EAs) in macOS…

Embargo Ransomware: Rock’n’Rust

CategoryDetailsThreat ActorsEmbargo ransomware group (Rust-based ransomware).Campaign OverviewActive since June 2024; targets US companies; uses MDeployer…

RomCom exploits Firefox and Windows zero days in the wild

CategoryDetailsVulnerability IdentifiedCVE-2024-9680: A use-after-free bug in the animation timeline feature in Firefox, Thunderbird, and Tor…

Threat Hunting Case Study: Uncovering Turla

CategoryDetailsThreat ActorsTurla (FSB's Center 16), Russia's state-sponsored cyber espionage groupCampaign OverviewFocused on cyber espionage, targeting…