Another teenage hacker charged as feds continue Scattered Spider crackdown
Attribute Details Threat Actors Remington Ogletree, member of the hacking group Scattered Spider Campaign Overview…
FSB Uses Trojan App to Monitor Russian Programmer Accused of Supporting Ukraine
Category Details Threat Actors Federal Security Service (FSB) of Russia; possible reuse of Monokle spyware…
Pirated corporate software infects Russian businesses with info-stealing malware
Attribute Details Threat Actors Unknown attackers targeting Russian businesses Campaign Overview Ongoing information-stealing campaign targeting…
Major USAID contractor Chemonics says 263,000 affected by 2023 data breach
Category Details Threat Actors Unknown hackers, U.S.-based cybercriminals Campaign Overview Data breach at Chemonics, exposing…
Report: Russian authorities seized phone from detainee, infected it with spyware
Category Details Threat Actors Russian authorities, Law enforcement, Government spyware developers Campaign Overview Infiltration of…
RedLine, A License to Steal: The Rudometov Story & Operation Magnus
Category Details Threat Actors RedLine Infostealer, Maxim Rudometov (developer/administrator) Campaign Overview RedLine Infostealer emerged in…
U.S. Organization in China Targeted by Attackers
Category Details Threat Actors Likely China-based attackers; potential links to Daggerfly and Crimson Palace espionage…
OSINT Updates for December 4 , 2024
https://twitter.com/HugoRen111/status/1864279895674622277 @Hugo Rena Identified some potential Military Activities in Aksai Chin Region . https://twitter.com/GeoPioneerInc/status/1864326293317120317 Troops…
Russian money laundering networks uncovered linking narco traffickers, ransomware gangs and Kremlin spies
Category Details Threat Actors Russian money laundering networks, Trickbot/Conti/Ryuk ransomware groups, Russian oligarchs, state-linked entities,…
Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet Activity
CategoryDetailsThreat ActorsAndroxgh0st botnet, leveraging Mozi botnet payloads.Campaign OverviewExploitation of decade-old CVE-2014-2120 in Cisco ASA, alongside…