Must-Have Tools for Image Forensics and OSINT Investigations

Tool NameTinEyeTool Linkhttps://tineye.com/Tool DescriptionReverse image search engine to find image origins, track usage, or locate…

Analysis of Elpaco: a Mimic variant

Key Detail Information Threat Actors Unknown Campaign Overview Attackers accessed the victim’s server via RDP…

South Asian hackers target Pakistani entities in new espionage campaign

Category Details Threat Actors Mysterious Elephant (also tracked as APT-K-47), likely originating from South Asia.…

Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking

CategoryDetailsThreat ActorsPerfctl campaign (attributed to an unknown threat actor targeting Linux servers).Campaign OverviewExploits Linux servers…

New SteelFox Trojan mimics software activators, stealing sensitive data and mining cryptocurrency

CategoryDetailsThreat ActorsUnattributed (Crimeware authors behind "SteelFox").Campaign OverviewSteelFox crimeware bundle distributed via malicious torrents and forums,…

ElizaRAT
Cloudy With a Chance of RATs: Unveiling APT36 and the Evolution of ElizaRAT

CategoryDetailsThreat ActorsAPT36 (Transparent Tribe)Campaign OverviewTargeting Indian government organizations, diplomatic personnel, and military facilities. Focus on…

Best Laid Plans: TA453 Targets Religious Figure with Fake Podcast Invite Delivering New BlackSmith Malware Toolset

CategoryDetailsThreat ActorsIranian Threat actor TA453 (Charming Kitten), likely supporting Iranian government interests, specifically the IRGC…

Threat Actor Abuses Cloudflare Tunnels to Deliver RATs

CategoryDetailsThreat ActorsUnattributed cybercriminal group using Cloudflare Tunnel abuse to deliver malware, primarily targeting organizations for…

Threat Actor Abuses Gophish to Deliver New PowerRAT and DCRAT

CategoryDetailsThreat ActorsUnknown Threat actor using Open-Source Gophish ToolkitCampaign OverviewPhishing campaign using modular infection chains (Maldoc…

Beyond the Surface: the evolution and expansion of the SideWinder APT group

CategoryDetailsThreat ActorsSideWinder (also T-APT-04, RattleSnake)Campaign OverviewProlific APT group active since 2012, targeting military & government…