Dark Web Profile: Trinity Ransomware
Category Details Threat Actors Trinity Ransomware (possibly linked to previous variants like Zeoticus, Venus, 2023Lock)…
Cloud Atlas Deploys VBCloud Malware: Over 80% of Targets Found in Russia
Category Details Threat Actors Cloud Atlas (also known as Clean Ursa, Inception, Oxygen, and Red…
Hackers Release Second Batch of Stolen Cisco Data
Category Details Threat Actors IntelBroker, known for prior breaches (Apple, AMD, Europol). Campaign Overview Second…
FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks
Category Details Threat Actors Botnet operators using Mirai variant (FICORA) and Kaiten variant (CAPSAICIN). Campaign…
Dark Web Profile: Storm-842 (Void Manticore)
Category Details Threat Actors Storm-842 (Void Manticore), linked to Iranian MOIS, also operating under 'HomeLand…
CISA Adds Acclaim USAHERDS Vulnerability to KEV Catalog Amid Active Exploitation
Category Details Threat Actors • China-linked APT41 (previously attributed to exploiting CVE-2021-44207 in 2021). Campaign…
Dark Web Profile: Bashe (APT73)
Category Details Threat Actors • Bashe (previously APT73 or Eraleig) – a ransomware group emerging…
Iran's Charming Kitten Deploys BellaCPP: A New C++ Variant of BellaCiao Malware
Category Details Threat Actors • Charming Kitten (APT35, CALANQUE, Mint Sandstorm, TA453, Yellow Garuda, etc.),…
DarkVision RAT: A Persistent Threat Delivered via PureCrypter
Category Details Threat Actors • Unknown threat actors using DarkVision RAT with PureCrypter loader. Campaign…
Cloud Atlas seen using a new tool in its attacks
Category Details Threat Actors • Cloud Atlas (known since 2014). Campaign Overview • Cloud Atlas…