Tag: espionage
33 attack reports | 0 vulnerabilities
Attack reports
Published: October 10, 2024
Number of indicators: 0
The United States has experienced a significant increase in cyber attacks from June to October 2024, with over 800 organizations …
Published: September 20, 2024
Number of indicators: 2
This analysis details a sophisticated cyber attack attributed to the North Korean-linked Kimsuky APT group. The attack begins wit…
Published: September 10, 2024
Number of indicators: 58
This assessment evaluates several North Korean threat groups operating under the Reconnaissance General Bureau. It describes thei…
Published: September 2, 2024
Number of indicators: 27
Proofpoint researchers uncovered an unusual campaign delivering custom malware named "Voldemort". The activity impersonated tax a…
Published: August 21, 2024
Number of indicators: 111
An analysis by Insikt Group revealed a significant surge in cyber threat activities from GreenCharlie, an Iran-linked group assoc…
Published: August 19, 2024
Number of indicators: 82
The report provides an in-depth analysis of the Bitter APT Group, a threat actor primarily focusing on cyber espionage activities…
Published: August 9, 2024
Number of indicators: 30
Earth Baku, an advanced persistent threat actor, has broadened its operations from the Indo-Pacific region to Europe, the Middle …
Published: August 9, 2024
Number of indicators: 24
A report detailing an ongoing cyberattack campaign by the North Korean APT group Kimsuky, which is targeting university staff, re…
Published: August 7, 2024
Number of indicators: 64
TrendMicro highlights the dangers of internet-facing routers and elaborates on Pawn Storm's exploitation of EdgeRouters, compleme…
Published: August 7, 2024
Number of indicators: 20
Cyber threat actors, including nation-state groups, are utilizing legitimate cloud services like Microsoft OneDrive and Google Dr…
Published: August 7, 2024
Number of indicators: 20
In recent times, there has been a notable rise in the exploitation of legitimate cloud services by threat actors, including natio…
Published: August 6, 2024
Number of indicators: 16
South Korea's cybersecurity community, consisting of the National Intelligence Service, Prosecution Service, Police Agency, Defen…
Published: August 5, 2024
Number of indicators: 6
This analysis examines a campaign attributed to the Russian threat actor Fighting Ursa, also known as APT28, Fancy Bear, and Sofa…
Published: August 2, 2024
Number of indicators: 8
Elastic Security Labs uncovered a new Windows backdoor called BITSLOTH that utilizes the Background Intelligent Transfer Service …
Published: July 30, 2024
Number of indicators: 8
The report details a recent cyber attack campaign attributed to the APT-C-09 (Mozambique) threat group, which has historically ta…
Published: July 30, 2024
Number of indicators: 47
BlackBerry's researchers have uncovered a new campaign by the nation-state threat actor SideWinder. The group employs sophisticat…
Published: July 29, 2024
Number of indicators: 89
This report examines the convergence of tactics employed by Pakistani cyber threat groups, including Transparent Tribe, SideCopy,…
Published: July 29, 2024
Number of indicators: 24
Microsoft Threat Intelligence analyzes the activities of the North Korean threat actor Onyx Sleet, which conducts cyber espionage…
Published: July 15, 2024
Number of indicators: 50
An Iranian threat group known as MuddyWater, affiliated with the Ministry of Intelligence and Security, has significantly intensi…
Published: June 28, 2024
Number of indicators: 4
While cryptocurrency and blockchain have lost mainstream attention, cybercriminals continue to exploit these technologies through…
Published: June 24, 2024
Number of indicators: 148
A recently discovered threat actor, dubbed 'SneakyChef,' has been conducting an ongoing espionage campaign targeting government a…
Published: June 24, 2024
Number of indicators: 39
This comprehensive analysis delves into the intricate tactics employed by a suspected China-nexus cyber espionage actor, UNC3886.…
Published: June 21, 2024
Number of indicators: 20
This report analyzes a new threat campaign discovered in late May, featuring multiple layers and ultimately delivering a previous…
Published: June 20, 2024
Number of indicators: 47
Attackers using tools associated with Chinese espionage groups have breached multiple telecom operators in a single Asian country…
Published: June 18, 2024
Number of indicators: 149
Volexity identified a cyber-espionage campaign by a suspected Pakistan-based threat actor tracked as UTA0137 targeting government…
Published: June 14, 2024
Number of indicators: 142
Cisco Talos is disclosing a new malware campaign called 'Operation Celestial Force' conducted by a Pakistani nexus of threat acto…
Published: June 14, 2024
Number of indicators: 37
ESET researchers identified five campaigns targeting Android users with trojanized apps that deploy multistage Android spyware ca…
Published: May 24, 2024
Number of indicators: 47
An investigation by Bitdefender Labs uncovered a previously unidentified cyber threat actor called Unfading Sea Haze. This group …
Published: May 24, 2024
Number of indicators: 97
BlackBerry discovered the Pakistani-based advanced persistent threat group Transparent Tribe (APT36) targeting the Indian governm…
Published: May 23, 2024
Number of indicators: 38
Check Point Research has observed a significant shift in the activities and lures of Sharp Dragon, a Chinese threat actor, now ta…
Published: May 16, 2024
Number of indicators: 12
ESET researchers discovered two previously unknown backdoors – LunarWeb and LunarMail – compromising a European ministry of forei…
Published: May 6, 2024
Number of indicators: 3
CYFIRMA researchers identified an Android malware campaign, active for over a year, targeting Indian defense personnel by an unid…