Avast Q1/2024 Threat Report

Category Details Threat Actors Unknown actors targeting XZ/liblzma; Lazarus Group; operators of Twizt, DDosia, and…

LightSpy Malware Variant Targeting macOS | Huntress

Category Details Threat Actors Unknown actors using LightSpy framework Campaign Overview Analysis of a macOS…

ToddyCat is making holes in your infrastructure

Category Details Threat Actors ToddyCat (APT group) Campaign Overview Attackers target governmental organizations, some defense-related,…

DuneQuixote campaign targets Middle Eastern entities with “CR4T” malware

Category Details Threat Actors Unnamed group behind the "DuneQuixote" campaign Campaign Overview Targets government entities…

Lazarus and the FudModule Rootkit: Beyond BYOVD with an Admin-to-Kernel Zero-Day

CategoryDetailsThreat ActorsLazarus GroupCampaign OverviewExploitation of a zero-day vulnerability in the appid.sys AppLocker driver to gain…

BlackCat Ransomware Affiliate TTPs | Huntress

Category Details Threat Actors ALPHV/BlackCat Ransomware group, using Ransomware-as-a-service (RaaS). Campaign Overview Attack targeting healthcare…

Decrypted: HomuWitch Ransomware

Category Details Threat Actors No specific group identified; HomuWitch ransomware targets individual end-users. Campaign Overview…

Ransomware Deployment Attempts Via TeamViewer | Huntress

Category Details Threat Actors Unknown actor, possibly related to LockBit 3.0 Ransomware campaigns. Campaign Overview…

Comrades in Arms? | North Korea Compromises Sanctioned Russian Missile Engineering Company

Category Details Threat Actors ScarCruft (APT37, Inky Squid, Group123), Lazarus Group Campaign Overview Compromise of…

Top-Ranking Banking Trojan Ramnit out to steal payment card data

Category Details Threat Actors Ramnit Gang Campaign Overview Ongoing campaigns targeting e-commerce brands and hospitality…