Skip to main content
← All Articles

Category

Threat Intel

1439 articles

Advertisement

Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges
HIGH
Threat Intel

Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges

Ransomware actors are abandoning Cobalt Strike for native Windows tools as payment rates decline, leading to a significant surge in data theft.

Runtime Rebel Intel
5 min read · Mar 18, 2026
7-Stage Phishing Chain Targets Outpost24 C-Suite via Redirects
MEDIUM
Threat Intel

7-Stage Phishing Chain Targets Outpost24 C-Suite via Redirects

Security researchers identify a sophisticated 7-stage phishing attack targeting Outpost24 executives using legitimate domains to evade email gateways.

Runtime Rebel Intel
4 min read · Mar 17, 2026
TH
MEDIUM
Threat Intel

EU Sanctions China and Iran Entities for Critical Infrastructure Attacks

The EU Council imposes sanctions on Chinese and Iranian entities for cyberattacks targeting critical infrastructure and intellectual property theft.

Runtime Rebel Intel
3 min read · Mar 17, 2026
Warlock Ransomware: BYOVD Techniques and Post-Exploitation Analysis
HIGH
Threat Intel

Warlock Ransomware: BYOVD Techniques and Post-Exploitation Analysis

The Warlock ransomware group has evolved its tactics, utilizing BYOVD techniques and stealthy cross-network activity to bypass EDR and security controls.

Runtime Rebel Intel
3 min read · Mar 17, 2026
TH
MEDIUM
Threat Intel

Hiding Malicious Commands from AI via Font-Rendering Manipulation

Learn how attackers use font-rendering tricks to bypass AI safety filters and execute prompt injection attacks against LLM-powered assistants.

Runtime Rebel Intel
4 min read · Mar 17, 2026
TH
LOW
Threat Intel

Exploiting IPv4-Mapped IPv6 Addresses to Obfuscate Web Scanning

Attackers leverage RFC 4038 IPv4-mapped IPv6 addresses to bypass security filters and obfuscate scanning activities targeting proxy-related URLs.

Runtime Rebel Intel
3 min read · Mar 17, 2026
TH
INFO
Threat Intel

Tech Giants Sign Industry Pact to Combat Online Scams and Fraud

Leading tech firms including Google, Meta, and Microsoft sign a collaborative pact to enhance cross-platform intelligence sharing and fight online scams.

Runtime Rebel Intel
3 min read · Mar 17, 2026
TH
MEDIUM
Threat Intel

LeakNet Ransomware: Stealthy Exploitation via Deno and ClickFix

LeakNet ransomware adopts ClickFix social engineering and the Deno runtime for stealthy initial access and loader deployment in corporate environments.

Runtime Rebel Intel
4 min read · Mar 17, 2026
Konni Group Deploys EndRAT via Phishing and KakaoTalk Hijacking
HIGH
Threat Intel

Konni Group Deploys EndRAT via Phishing and KakaoTalk Hijacking

North Korean threat actor Konni leverages spear-phishing and KakaoTalk desktop exploitation to distribute EndRAT malware and facilitate lateral movement.

Runtime Rebel Intel
3 min read · Mar 17, 2026
Securing AI Infrastructure: Addressing the Skills Gap in Adversarial Testing
INFO
Threat Intel

Securing AI Infrastructure: Addressing the Skills Gap in Adversarial Testing

Pentera's 2026 report reveals significant gaps in AI security, highlighting how CISOs struggle with outdated tools and a lack of specialized skill sets.

Runtime Rebel Intel
4 min read · Mar 17, 2026
Earth Kaluu Cyberespionage Campaign Targets SE Asian Military Orgs
HIGH
Threat Intel

Earth Kaluu Cyberespionage Campaign Targets SE Asian Military Orgs

An investigation into the China-nexus Earth Kaluu campaign reveals long-term persistence in Southeast Asian military networks using custom backdoors.

Runtime Rebel Intel
4 min read · Mar 17, 2026
Olympic Cybersecurity: Lessons from Paris 2024 to Milan 2026
INFO
Threat Intel

Olympic Cybersecurity: Lessons from Paris 2024 to Milan 2026

Analyze the cybersecurity strategies from Paris 2024 used to protect global events and how they inform preparations for the Milan Cortina 2026 Winter Games.

Runtime Rebel Intel
3 min read · Mar 16, 2026
TH
HIGH
Threat Intel

Remote Device Wiping Attack Hits Stryker via Microsoft Environment

An attack on medical technology firm Stryker resulted in the remote wiping of tens of thousands of devices by leveraging internal management tools and identity.

Runtime Rebel Intel
4 min read · Mar 16, 2026
TH
MEDIUM
Threat Intel

Analyzing Proxy Scanner Activity: Monitoring /proxy/ URI Patterns

Threat actors are shifting scanning patterns to identify open proxies using /proxy/ URI prefixes. Learn how to detect and mitigate these reconnaissance scans.

Runtime Rebel Intel
4 min read · Mar 16, 2026
TH
HIGH
Threat Intel

2025 Ransomware TTP Analysis: Virtualization and Data Theft Trends

Analysis of shifting ransomware TTPs in 2025, highlighting the surge in data theft extortion, virtualization targeting, and exploitation of edge vulnerabilities.

Runtime Rebel Intel
3 min read · Mar 16, 2026
LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users
MEDIUM
Threat Intel

LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users

Threat actors are leveraging legitimate LiveChat platforms to impersonate PayPal and Amazon support agents, stealing credit card and personal data.

Runtime Rebel Intel
4 min read · Mar 16, 2026
TH
MEDIUM
Threat Intel

Security Firm Executive Targeted via DKIM-Signed Phishing

A sophisticated phishing campaign bypassed security filters using DKIM-signed emails and Cloudflare-protected landing pages to target a security executive.

Runtime Rebel Intel
3 min read · Mar 16, 2026
TH
HIGH
Threat Intel

Oracle EBS Exploitation: Risks to Enterprise Financial Integrity

Analysis of the Oracle EBS hack affecting major corporations and the technical risks associated with unpatched ERP systems and financial data theft.

Runtime Rebel Intel
3 min read · Mar 16, 2026
Chrome Zero-Days and Router Botnets: Weekly Threat Intel Recap
HIGH
Threat Intel

Chrome Zero-Days and Router Botnets: Weekly Threat Intel Recap

Analysis of the latest Chrome zero-day vulnerabilities, router botnet infrastructure risks, and AWS cloud security breaches from March 2026.

Runtime Rebel Intel
3 min read · Mar 16, 2026
TH
INFO
Threat Intel

Quantum Factorization Research: Analyzing RSA Decryption Timelines

Analysis of a new preprint regarding theoretical improvements in quantum factorization and its potential impact on the security of RSA encryption standards.

Runtime Rebel Intel
4 min read · Mar 16, 2026
TH
HIGH
Threat Intel

Poland’s Nuclear Center Targeted in Suspected Iranian Cyberattack

Polish officials investigate a cyberattack at the NCBJ nuclear center. Initial evidence points to Iran, but investigators warn of potential false flag tactics.

Runtime Rebel Intel
4 min read · Mar 16, 2026
ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools
HIGH
Threat Intel

ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools

Threat actors use ClickFix social engineering tactics to deploy the MacSync infostealer on macOS systems via fraudulent AI software installers.

Runtime Rebel Intel
4 min read · Mar 16, 2026
Why Security Validation is Becoming Agentic: The Shift to AI Agents
INFO
Threat Intel

Why Security Validation is Becoming Agentic: The Shift to AI Agents

Explore the transition from fragmented security tools to agentic security validation using autonomous AI agents to simulate complex attack paths.

Runtime Rebel Intel
3 min read · Mar 16, 2026
Android 17 Restricts Accessibility API to Thwart Malware Abuse
MEDIUM
Threat Intel

Android 17 Restricts Accessibility API to Thwart Malware Abuse

Android 17 Beta 2 introduces restrictions on the Accessibility API under Advanced Protection Mode to prevent malware from hijacking system permissions.

Runtime Rebel Intel
4 min read · Mar 16, 2026