Topic
Reports

CTI Roundup: Gophish Toolkit Phishing, Malicious Virtual Hard Drive Files, Return of Bumblebee Malware
Learn about the Gophish toolkit for phishing, attackers bypassing secure email gateways and antivirus scanners, and the return of Bumblebee malware.

CTI Roundup: Callback Phishing, Time-to-Exploit Trends, and PureLogs Infostealer
Learn about threat actors spreading malware via callback phishing, Mandiant's analysis of time-to-exploit trends, and PureLogs targeting Chrome browsers.

CTI Roundup: Rise in File Hosting Services Misuse, Mamba 2FA, and Dark Angels Ransomware Attacks
News around Microsoft attacks using file hosting services, phishing campaigns mimicking Microsoft 365 login pages, and Dark Angels ransomware group updates.

CTI Roundup: Sniper Dz, Elastic 2024 Global Threat Report Insights, and Andariel Financial Attacks
Latest news around Sniper Dz, insights from Elastic Security Labs 2024 Global Threat Report, and Andariel financial attacks against U.S. organizations.

CTI Roundup: North Korean-Sponsored Remote IT Workers, Legitimate Sites Sending Spam, and Political Deepfakes
North Korea exploiting remote roles, third-party infrastructure used to send spam, and insights from new deepfakes report.

CTI Roundup: HTTP Headers Phishing Technique, Scattered Spider Back in the News, and UNC2970 Targets Job Seekers
Learn about a phishing campaign using HTTP headers, Scattered Spider, and UNC2970 exploiting job seekers.

CTI Roundup: Emansrepo Infostealer and Earth Lusca Multiplatform Backdoor
Emansrepo Stealer spreads via email, Palo Alto sheds light on top-level domains, and Earth Lusca deploys a new multiplatform backdoor.

CTI Roundup: Xeon Sender Targets Cloud APIs and MoonPeak Malware Updates
Xeon Sender targets cloud APIs, Cisco Talos reveals UAT-5394 infrastructure, and attackers leverage public .env files to extort victims.

CTI Roundup: Mad Liberator Ransomware Targets AnyDesk Users
New tools appear in ongoing social engineering campaign, Mad Liberator ransomware targets AnyDesk users, and Bitdefender explores the evolving cybercriminal underground.

CTI Roundup: SharpRhino RAT Threatens IT Admins, Phishers Leverage Google Drawings and WhatsApp Links
SharpRhino RAT threatens IT admins, ransomware gangs ramp up pressure on targets, and a new phishing scam leverages Google Drawings and WhatsApp links.

CTI Roundup: Cisco Talos Q2 IR Trends Report, New GenAI Scams on the Horizon
Cisco Talos releases its Q2 IR trends report, ransomware groups target ESXi flaw, and scammers exploit GenAI in domain registration and network attacks.

CTI Roundup: Evasive Panda Deploys New Malware, Macma Backdoor and Nightdoor
Evasive Panda deploys new versions of Macma backdoor and Nightdoor, cybercriminals work independently after RaaS takedowns, and a new Linux Play variant targets VMware ESXi systems.