Another teenage hacker charged as feds continue Scattered Spider crackdown

Attribute Details Threat Actors Remington Ogletree, member of the hacking group Scattered Spider Campaign Overview…

FSB Uses Trojan App to Monitor Russian Programmer Accused of Supporting Ukraine

Category Details Threat Actors Federal Security Service (FSB) of Russia; possible reuse of Monokle spyware…

Pirated corporate software infects Russian businesses with info-stealing malware

Attribute Details Threat Actors Unknown attackers targeting Russian businesses Campaign Overview Ongoing information-stealing campaign targeting…

Major USAID contractor Chemonics says 263,000 affected by 2023 data breach

Category Details Threat Actors Unknown hackers, U.S.-based cybercriminals Campaign Overview Data breach at Chemonics, exposing…

Report: Russian authorities seized phone from detainee, infected it with spyware

Category Details Threat Actors Russian authorities, Law enforcement, Government spyware developers Campaign Overview Infiltration of…

RedLine, A License to Steal: The Rudometov Story & Operation Magnus

Category Details Threat Actors RedLine Infostealer, Maxim Rudometov (developer/administrator) Campaign Overview RedLine Infostealer emerged in…

U.S. Organization in China Targeted by Attackers

Category Details Threat Actors Likely China-based attackers; potential links to Daggerfly and Crimson Palace espionage…

OSINT Updates for December 4 , 2024

https://twitter.com/HugoRen111/status/1864279895674622277 @Hugo Rena Identified some potential Military Activities in Aksai Chin Region . https://twitter.com/GeoPioneerInc/status/1864326293317120317 Troops…

Russian money laundering networks uncovered linking narco traffickers, ransomware gangs and Kremlin spies

Category Details Threat Actors Russian money laundering networks, Trickbot/Conti/Ryuk ransomware groups, Russian oligarchs, state-linked entities,…

Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet Activity

CategoryDetailsThreat ActorsAndroxgh0st botnet, leveraging Mozi botnet payloads.Campaign OverviewExploitation of decade-old CVE-2014-2120 in Cisco ASA, alongside…