BadBox Malware Compromises 30,000 Devices in Germany

Category Details Threat Actors Cybercriminals operating Command and Control (C2) infrastructure. Campaign Overview BadBox malware…

Germany Disrupts BADBOX Malware on 30,000 Devices Using Sinkhole Action

Category Details Threat Actors Unknown threat actors, primarily operating out of China Campaign Overview BSI…

Thai Officials Targeted in Yokai Backdoor Campaign Using DLL Side-Loading Techniques

Category Details Threat Actors Likely cybercriminals leveraging DLL side-loading; specific attribution unknown. Campaign Overview New…

Crypted Hearts: Exposing the HeartCrypt Packer-as-a-Service Operation

Category Details Threat Actors Unknown actors offering the HeartCrypt PaaS targeting various regions and industries.…

Critical OpenWrt Vulnerability Exposes Devices to Malicious Firmware Injection

Category Details Threat Actors Not specifically mentioned; potential threat actors include any malicious entity aiming…

Modular Java Backdoor Dropped in Cleo Exploitation Campaign

Attribute Details Threat Actors Unknown attackers exploiting Cleo software vulnerabilities Campaign Overview Multi-stage attack deploying…

PROXY.AM Powered by Socks5Systemz Botnet

CategoryDetailsThreat Actors- BaTHNK: Original creator of Socks5Systemz.- Boost: Reseller of BoostyProxy linked to Socks5Systemz.- Alexey…

Ultralytics AI Library Compromised: Cryptocurrency Miner Found in PyPI Versions

Category Details Threat Actors Unknown; exploited by an account named "openimbot," claiming association with the…

Hackers Using Fake Video Conferencing Apps to Steal Web3 Professionals' Data

Category Details Threat Actors Threat actors leveraging AI-generated fake companies for scams; malware delivered through…

OSINT Updates for December 6 , 2024

Update #1: Title: Syrian Rebels Begin Push into Strategic Hama CityDate: December 6, 2024 Source:…