Russian National in US custody in Phobos ransomware investigation

Category Details Threat Actors Phobos ransomware operators, including alleged administrator Evgenii Ptitsyn (aliases: "derxan" and…

Ransomware Gang Akira leaks unprecedented number of victims’ data in one day

Category Details Threat Actors Akira ransomware Group (Ransomware-as-a-Service). Campaign Overview Published data from 35 victims…

Security Brief: ClickFix Social Engineering Technique Floods Threat Landscape

CategoryDetailsThreat ActorsTA571, ClearFake, various financially motivated and espionage groups (e.g., UAC-0050, Russian espionage targeting Ukraine).Campaign…

OSINT Updates for November 18, 2024

https://twitter.com/marktsec46065/status/1858429053016912154 https://twitter.com/Ethic10Hackz/status/1858425229480976418 https://twitter.com/FalconFeedsio/status/1858299994794795372 https://twitter.com/DailyRansomware/status/1858422637107560596 https://twitter.com/fuxsociety1337/status/1858362542810190332 https://twitter.com/OSINTMilitia/status/1858371638452011326

Dissecting Sodinokibi Ransomware Attacks: Bringing Incident Response and Intelligence Together in the Fight

Category Details Threat Actors Sodinokibi (REvil), QakBot operators, Valak operators, Ransomware affiliates Campaign Overview Ransomware…

Malware being delivered by mail, warns Swiss cyber agency

CategoryDetailsThreat ActorsUnidentified fraudsters leveraging physical mail to distribute malware.Campaign OverviewFake letters claiming to offer a…

Malware Spotlight:  A Deep-Dive Analysis of WezRat

Key DetailInformationThreat ActorsEmennet Pasargad (affiliated with IRGC), operating under aliases such as Aria Sepehr Ayandehsazan…

Cybercriminals target victims in Spain, Germany, Ukraine with Strela Stealer malware

CategoryDetailsThreat ActorsHive0145Campaign OverviewFinancially motivated campaign targeting victims in Europe using Strela Stealer malware via phishing…

Iran-linked group aims malware at aerospace industry through fake job recruiters

CategoryDetailsThreat ActorsTA455 (Linked to Iranian Charming Kitten/APT35)Campaign OverviewEspionage campaign targeting the aerospace industry using fake…

Inside Intelligence Center: Financially Motivated Chinese Threat Actor SilkSpecter Targeting Black Friday Shoppers

CategoryDetailsThreat ActorsSilkSpecter, a financially motivated Chinese threat actor.Campaign OverviewPhishing campaign targeting e-commerce shoppers during Black…