At a glance Field Detail Malware family OctLurk (plugin-based backdoor); SilkLurk (plugin-based backdoor); LurkProxy (network proxy utility)...
cyber-espionage
At a glance Actor Mirage Kitten (also UNC1549, Smoke Sandstorm, Nimbus Manticore) Activity State-aligned cyber espionage and...
At a glance Actor or group APT42 (Iran-linked; also tracked as TA453) Activity type AI-assisted spear-phishing, credential...
At a glance Malware family GoSerpent backdoor, plus McMx, Stowaway, ThumbcacheService, and TmcLoader/TmcPayload Threat actor Unconfirmed. Kaspersky...
At a glance Actor / group DoNot (APT-C-35); assessed by multiple vendors as India-aligned Activity type Targeted...
At a Glance Actor or group Unnamed China-linked espionage group (per Symantec’s 2022 attribution) Activity type Suspected...
At a glance Malware family HOLLOWGRAPH, linked with high confidence to the Cavern backdoor framework Threat actor...
At a glance Actor UNK_MassTraction — suspected China-aligned espionage cluster Activity Roundcube exploitation for credential theft, webshells,...
At a glance Group Mustang Panda (China-aligned APT; also tracked as Hive0154) Activity Cyberespionage, spear-phishing, cloud-service C2...
At a glance Malware Family: STOCKSTAY Threat Actor: Turla (Confirmed: Center 16 of Russia’s FSB) Targets: Ukrainian...
At a glance Actor or Group: CL-STA-1062 (suspected Chinese-speaking actors) Activity Type: Cyber espionage and network infiltration...
At a Glance Actor: UNC6508 (suspected PRC-nexus threat actor) Activity Type: Cyber espionage, bespoke malware deployment, data...
A sophisticated cyber espionage operation has compromised several enterprise networks by targeting unguarded edge devices. Security investigators...
Severe Infrastructure Exposure Discovered An unknown threat actor recently executed a highly disciplined cyber operation against a...
Security researchers have discovered a highly targeted international cyber espionage offensive hitting public institutions. Specifically, the Seqrite...
The ENKI Whitehat Threat Research Team recently exposed an advanced cyber espionage operation. Specifically, the notorious Kimsuky...
Global cybersecurity researchers recently uncovered a massive wave of malicious email distributions hitting international organizations. Specifically, Intrinsec’s...
Security researchers recently uncovered a sophisticated cyber espionage campaign hitting infrastructure networks in Asia. Specifically, a new...
Security researchers have discovered an aggressive cyber espionage campaign targeting multiple nations. Specifically, Unit 42 recently exposed...
The Russian state-sponsored cyber-espionage threat group widely known as Secret Blizzard is fundamentally rewriting its technical playbook....
A routine investigation into a low-detection installer has blown the doors off a highly organized, financially motivated...
The prolific Korean-speaking threat actor known as Kimsuky is executing a major tactical evolution, incorporating modern programming...