• APT
  • November 22, 2024
UK drinking water supplies disrupted by record number of undisclosed cyber incidents

Category Details Threat Actors Not explicitly named; likely a mix of cybercriminals and nation-state actors…

OSINT Updates for November 22 , 2024

https://twitter.com/SecAI_AI/status/1859770564296225267 https://twitter.com/ClefTheHacker/status/1859892350392422731 https://twitter.com/FalconFeedsio/status/1859820207201714499 https://twitter.com/cyberfeeddigest/status/1859868387976806582 https://twitter.com/cyberfeeddigest/status/1859876230989857234 https://twitter.com/DailyRansomware/status/1859872936619802914 https://twitter.com/jamessecuritytr/status/1859854138881999316 https://twitter.com/DailyRansomware/status/1859845914887704755

  • APT
  • November 22, 2024
China-linked hackers target Linux systems with new spying malware

CategoryDetailsThreat ActorsGelsemium (China-linked state-sponsored threat actor).Campaign OverviewEspionage campaign targeting Linux systems, deploying malware strains WolfsBane…

Threat Brief: Operation Lunar Peek, Activity Related to CVE-2024-0012 and CVE-2024-9474 (Updated Nov. 22)

CategoryDetailsThreat ActorsUnnamed actors exploiting CVE-2024-0012 and CVE-2024-9474; activity includes manual/automated scans, web shells, and C2…

Microsoft shares latest intelligence on North Korean and Chinese threat actors at CYBERWARCON

Category Details Threat Actors DPRK (North Korea) actors: Sapphire Sleet and Ruby Sleet. China-based actor:…

Handala Group : Overview and Campaigns

CategoryDetailsThreat ActorsHandala Hacking Team, pro-Palestinian hacktivist group targeting Israeli organizations. Active since December 2023.Campaign OverviewExploited…

BlackSuit Ransomware

Key DetailInformationThreat ActorsIgnoble Scorpius (formerly Royal ransomware group)Campaign OverviewRamp-up of BlackSuit ransomware activity starting in…

Inc. Ransom

CategoryDetailsThreat ActorsInc. ransomwareCampaign OverviewMulti-extortion ransomware operation emerged in July 2023; steals and threatens to leak…

Qilin Ransomware: What You Need To Know

CategoryDetailsThreat ActorsQilin (also known as Agenda) ransomware groupCampaign OverviewRansomware-as-a-service operation; first posted on dark web…

Arcus Media Ransomware

CategoryDetailsThreat ActorsArcus MediaCampaign OverviewRansomware group known for double extortion; encrypts data and threatens to leak…