Skip to main content
← All Articles

Category

Threat Intel

1439 articles

Advertisement

FIRESTARTER Backdoor Exploits Cisco Firepower ASA Software
HIGH
Threat Intel

FIRESTARTER Backdoor Exploits Cisco Firepower ASA Software

CISA and NCSC reveal FIRESTARTER, a persistent backdoor targeting Cisco Firepower devices running ASA software, used in federal agency compromises.

Runtime Rebel Intel
4 min read · Apr 25, 2026
AI-Powered Phishing Surges: Defending Against Advanced Attacks
HIGH
Threat Intel

AI-Powered Phishing Surges: Defending Against Advanced Attacks

Explore the surge in AI-powered phishing, how threat actors are leveraging it for personalized attacks, and critical defensive strategies for organizations.

Runtime Rebel Intel
4 min read · Apr 24, 2026
Beyond Code Security: Managing Your Expanding Attack Surface
HIGH
Threat Intel

Beyond Code Security: Managing Your Expanding Attack Surface

Organizations often overlook security gaps in shadow IT, SaaS, and AI agents. Learn to manage an expanding attack surface beyond just secure code.

Runtime Rebel Intel
5 min read · Apr 24, 2026
TH
HIGH
Threat Intel

Fast16 Sabotage Malware: Precursor to State-Sponsored Cyber Warfare

Analysis of Fast16, a pre-Stuxnet sabotage malware linked to US-Iran cyber tensions, designed to tamper with high-precision calculation software results.

Runtime Rebel Intel
4 min read · Apr 24, 2026
Chinese Spear-Phishing Campaign Targets NASA Defense Software
HIGH
Threat Intel

Chinese Spear-Phishing Campaign Targets NASA Defense Software

NASA OIG reveals a multi-year spear-phishing campaign by a Chinese national impersonating researchers to exfiltrate sensitive U.S. defense software.

Runtime Rebel Intel
3 min read · Apr 24, 2026
TH
HIGH
Threat Intel

UNC6692 Social Engineering: Deploying the SNOW Custom Malware Suite

UNC6692 leverages Microsoft Teams and S3-hosted payloads to deploy the SNOW modular malware ecosystem, targeting enterprise Windows environments.

Runtime Rebel Intel
4 min read · Apr 24, 2026
Tropic Trooper APT Targets Home Routers and Japanese Infrastructure
MEDIUM
Threat Intel

Tropic Trooper APT Targets Home Routers and Japanese Infrastructure

Tropic Trooper expands operations to target Japanese entities and home routers using specialized malware like Chinoiserie to obfuscate attack origins.

Runtime Rebel Intel
3 min read · Apr 24, 2026
Chinese State-Backed Actors Industrialize Botnets for Covert Ops
HIGH
Threat Intel

Chinese State-Backed Actors Industrialize Botnets for Covert Ops

Chinese state-backed groups are adopting industrialized botnets, utilizing compromised devices for low-cost, low-risk, and deniable cyber operations.

Runtime Rebel Intel
5 min read · Apr 24, 2026
UNC6692 Impersonates IT Helpdesk to Deploy SNOW Malware via Teams
HIGH
Threat Intel

UNC6692 Impersonates IT Helpdesk to Deploy SNOW Malware via Teams

UNC6692 threat actors are impersonating IT helpdesk staff via Microsoft Teams to deliver custom SNOW malware, highlighting risks in SaaS messaging apps.

Runtime Rebel Intel
4 min read · Apr 23, 2026
Building Digital Trust: The Imperative of Cyber Threat Intelligence
INFO
Threat Intel

Building Digital Trust: The Imperative of Cyber Threat Intelligence

Explore how cyber threat intelligence and collaboration cultivate digital trust, enabling secure innovation and proactive defense against evolving threats.

Runtime Rebel Intel
5 min read · Apr 23, 2026
State-Sponsored Cyber Operations Targeting Critical Mineral Supply Chains
HIGH
Threat Intel

State-Sponsored Cyber Operations Targeting Critical Mineral Supply Chains

Geopolitical tensions over critical minerals fuel a rising threat of state-sponsored cyber operations targeting the global mining sector and supply chains.

Runtime Rebel Intel
4 min read · Apr 23, 2026
Chinese APT Leverages PlugX & ShadowPad with Cloud C2 for Mongolian Espionage
HIGH
Threat Intel

Chinese APT Leverages PlugX & ShadowPad with Cloud C2 for Mongolian Espionage

A Chinese state-sponsored APT is exploiting Microsoft Outlook, Slack, Discord, and file.io for C2, deploying PlugX and ShadowPad in espionage operations targeting…

Runtime Rebel Intel
4 min read · Apr 23, 2026
TH
INFO
Threat Intel

AI in Vulnerability Discovery: 360 Digital Security Group's Claims Examined

Runtime Rebel examines 360 Digital Security Group's claims of using AI to discover over 1,000 vulnerabilities, including at Tianfu Cup, and the implications for security…

Runtime Rebel Intel
5 min read · Apr 23, 2026
Analyzing the $290M DeFi Breach and macOS LotL Exploitation
HIGH
Threat Intel

Analyzing the $290M DeFi Breach and macOS LotL Exploitation

An analysis of the $290 million DeFi protocol hack, macOS living-off-the-land techniques, and ProxySmart SIM farming operations identified in recent reports.

Runtime Rebel Intel
3 min read · Apr 23, 2026
TH
HIGH
Threat Intel

China-Nexus Covert Networks: Defending Against SOHO-Based Botnets

CISA and international partners warn against the strategic use of SOHO and IoT botnets by China-nexus actors to mask malicious activity and target CNI.

Runtime Rebel Intel
4 min read · Apr 23, 2026
TH
MEDIUM
Threat Intel

iPhone Notification Database Forensic Extraction: Signal Privacy Risk

FBI forensic extraction recovered deleted Signal messages from the iOS notification database. Analyze the technical risks and learn how to secure your device.

Runtime Rebel Intel
3 min read · Apr 23, 2026
TH
HIGH
Threat Intel

Defensive Strategies for Routine Workflow Weaponization

Attackers are pivoting from technical exploits to weaponizing trusted workflows. Learn how to detect and mitigate these behavioral identity-based threats.

Runtime Rebel Intel
3 min read · Apr 23, 2026
TH
INFO
Threat Intel

Rilian Secures $17.5M Seed for AI-Native Security Orchestration

Rilian raises $17.5 million to scale its AI-native security orchestration platform, aiming to automate complex SOC workflows and reduce alert fatigue.

Runtime Rebel Intel
3 min read · Apr 23, 2026
TH
HIGH
Threat Intel

GopherWhisper APT Abuses Outlook and Slack for Stealthy C2

Newly discovered GopherWhisper APT group uses a Go-based toolkit and legitimate SaaS platforms like Slack and Outlook to conduct espionage against governments.

Runtime Rebel Intel
3 min read · Apr 23, 2026
Defeating Automated Exploitation in the Collapsing Exploit Window
HIGH
Threat Intel

Defeating Automated Exploitation in the Collapsing Exploit Window

AI-driven automation is accelerating the exploit lifecycle. Learn how the collapsing exploit window impacts vulnerability management and automated defense.

Runtime Rebel Intel
3 min read · Apr 23, 2026
AI Impact on Vulnerability Management: Real-World Trends and Risks
INFO
Threat Intel

AI Impact on Vulnerability Management: Real-World Trends and Risks

Analyze how artificial intelligence impacts vulnerability research and discovery, separating industry hype from technical reality for security professionals.

Runtime Rebel Intel
3 min read · Apr 23, 2026
Chinese Telegram Guarantee Marketplaces: Post-Huione Evolution
MEDIUM
Threat Intel

Chinese Telegram Guarantee Marketplaces: Post-Huione Evolution

Analysis of Chinese-language Telegram marketplaces using guarantee services to facilitate money laundering and fraud following the Huione Guarantee shutdown.

Runtime Rebel Intel
4 min read · Apr 23, 2026
The Gentlemen Ransomware Group: Rapid Escalation and Sophistication
HIGH
Threat Intel

The Gentlemen Ransomware Group: Rapid Escalation and Sophistication

An analysis of 'The Gentlemen' ransomware group, highlighting their rapid operational scaling and sophisticated attack methods impacting organizations globally.

Runtime Rebel Intel
4 min read · Apr 23, 2026
TH
INFO
Threat Intel

ICE Deploys Graphite Spyware: Privacy Implications and Risks

U.S. Immigration and Customs Enforcement (ICE) uses Graphite spyware, raising privacy concerns for individuals and potential civil liberty issues. Understand the…

Runtime Rebel Intel
5 min read · Apr 22, 2026