On July 1, 2026, the US Department of Justice and the FBI announced the extradition of a...
Cybercriminals
At a glance: Actor/Group: TAG-182 threat cluster (suspected Iran-nexus) Activity Type: Cyber surveillance and malware distribution Targets/Victims:...
In March 2026, HiAnime abruptly announced its closure and issued a farewell statement. This platform was arguably...
At a glance Actor TeamPCP Activity type Software supply chain compromise Targets Enterprise developers, security tools Scale...
At a glance Actor Suspected North Korean Lazarus-linked group (attribution by TTP similarity) Activity npm supply chain...
Security analysts recently discovered the ToddyCat APT Umbrij tool. It hijacks corporate Gmail accounts without triggering standard...
At a glance Group Mustang Panda (China-aligned APT; also tracked as Hive0154) Activity Cyberespionage, spear-phishing, cloud-service C2...
At a glance Group The Gentlemen (ransomware-as-a-service) Activity Ransomware, data-leak extortion, custom tool development Targets Large firms...
At a glance Actor: Suspected Russian state-sponsored actors and proxies Activity type: Covert information operations and hacktivism...
At a glance Actor or Group: Scattered Spider (Octo Tempest, UNC3944, 0ktapus) Activity Type: Data extortion, computer...
At a glance Actor: UNC1151 (Ghostwriter / Frosty Neighbor) Activity type: Spear-phishing and credential theft Targets: Belarusian...
At a glance Actor: Suspected China-nexus threat cluster Activity type: Spear-phishing and cyber espionage Targets: Indian taxpayers,...
At a glance Actor: Unknown threat actor Activity type: Phishing and multi-stage intrusion Targets: Hospitality and hotel...
At a glance Actor or Group: CL-STA-1062 (suspected Chinese-speaking actors) Activity Type: Cyber espionage and network infiltration...
At a glance Actor: Suspected unknown threat cluster (tracked by Seqrite Lab) Activity Type: Spear-phishing, credential theft,...
At a Glance Actor or Group: Unnamed digital piracy networks Activity Type: Copyright infringement Targets or Victims:...
At a Glance Actor / group UNC5792 (linked to FSB Border Guards); UNC4221 (Russian military) Activity Phishing...
At a glance Actor: Unknown threat actor Activity Type: Privilege escalation and zero-day exploitation Targets: Service provider...
At a glance Actor: Suspected Chinese-speaking threat actor (low confidence) Activity Type: Malware distribution and silent RMM...
At a glance Actor: Suspected cybercriminal networks (e.g., “Supplier Carl” and “Homborg Online Handel”) Activity Type: Fake...
At a glance Actor: Suspected Indonesian-origin threat actor (“Wong Gen Deng”) Activity Type: Unauthenticated Remote Code Execution...
At a Glance Actor / group SocGholish operator (TA569), linked to Russia’s Evil Corp; Amadey and StealC...