Skip to main content
← All Articles

Category

Threat Intel

1600 articles

Advertisement

INFO
Threat Intel

Evaluating AI SOC Agents: Gartner's Key Questions

Evaluate AI agents in your SOC effectively. Based on Gartner's insights, discover key questions to assess real impact, reduce alert fatigue, and enhance security…

Runtime Rebel Intel
5 min read · Mar 30, 2026
MEDIUM
Threat Intel

macOS Terminal ClickFix Protections: Blocking Malicious Shell Commands

Apple introduces Terminal warnings in macOS Sequoia 15.2 to combat ClickFix social engineering attacks that trick users into executing malicious shell scripts.

Runtime Rebel Intel
3 min read · Mar 30, 2026
Optimizing SOC Tier 1 Processes for Enhanced Productivity
INFO
Threat Intel

Optimizing SOC Tier 1 Processes for Enhanced Productivity

Learn how to optimize SOC Tier 1 processes by addressing fragmented workflows, manual triage, and limited visibility to boost productivity and response.

Runtime Rebel Intel
5 min read · Mar 30, 2026
Telecom Sleeper Cells and LLM Jailbreak Trends: Weekly Analysis
HIGH
Threat Intel

Telecom Sleeper Cells and LLM Jailbreak Trends: Weekly Analysis

An analysis of long-term persistence in telecom networks, LLM jailbreak methodologies, and regulatory shifts in UK age verification for Apple users.

Runtime Rebel Intel
3 min read · Mar 30, 2026
INFO
Threat Intel

Apple Camera Indicator Design: Mitigating Covert Surveillance

Examines Apple's camera indicator light system, its robust hardware-software integration, and how it protects users from malware-enabled covert surveillance and…

Runtime Rebel Intel
4 min read · Mar 30, 2026
HIGH
Threat Intel

Star Blizzard (APT28) Adopts DarkSword iOS Exploit Kit

Russian APT Star Blizzard (APT28) now uses the DarkSword iOS exploit kit to target government, finance, and academia, increasing mobile threat exposure.

Runtime Rebel Intel
5 min read · Mar 30, 2026

Advertisement

CTRL Toolkit: Russian Malware Hijacks RDP via FRP Tunnels
HIGH
Threat Intel

CTRL Toolkit: Russian Malware Hijacks RDP via FRP Tunnels

Analysis of the Russian-origin CTRL toolkit, a .NET malware framework using malicious LNK files and FRP tunnels to hijack RDP and steal private keys.

Runtime Rebel Intel
4 min read · Mar 30, 2026
HIGH
Threat Intel

Iranian Hackers Target Kash Patel: US Offers $10M Bounty

The FBI confirms Iranian state-sponsored hackers compromised Kash Patel’s personal email, leading the U.S. to offer a $10M reward for information.

Runtime Rebel Intel
4 min read · Mar 30, 2026
China-Linked APT Clusters Target SE Asian Government via HIUPAN
HIGH
Threat Intel

China-Linked APT Clusters Target SE Asian Government via HIUPAN

Three China-linked threat clusters targeted a Southeast Asian government in 2025 using HIUPAN, PUBLOAD, and EggStremeFuel malware in a complex espionage operation.

Runtime Rebel Intel
3 min read · Mar 30, 2026
MEDIUM
Threat Intel

PDF Incremental Updates: Detecting Hidden Malicious URLs

Discover how attackers use PDF incremental updates to obfuscate malicious URLs and learn forensic techniques to identify and extract hidden indicators.

Runtime Rebel Intel
3 min read · Mar 30, 2026
INFO
Threat Intel

Cowrie Honeypot Analysis: Detecting Automated Session Disconnects

Analyze DShield Cowrie honeypot data to distinguish between automated bot traffic and manual actor activity through session duration and exit commands.

Runtime Rebel Intel
4 min read · Mar 30, 2026
HIGH
Threat Intel

Iranian-Linked Handala Group Breaches Kash Patel's Personal Email

FBI confirms Iranian-linked Handala hackers breached Director nominee Kash Patel's personal email, leaking documents and highlighting spear-phishing risks.

Runtime Rebel Intel
3 min read · Mar 30, 2026
Iran-Linked Handala Hackers Breach FBI Director, Target Stryker
HIGH
Threat Intel

Iran-Linked Handala Hackers Breach FBI Director, Target Stryker

Handala Hack Team compromised FBI Director Kash Patel's personal email and deployed destructive wiper malware against medical giant Stryker.

Runtime Rebel Intel
4 min read · Mar 28, 2026
HIGH
Threat Intel

ClickFix Social Engineering Drops Infiniti Stealer on macOS

Attackers use fake Cloudflare CAPTCHA pages and ClickFix tactics to deliver the Python-based Infiniti Stealer to macOS systems via terminal commands.

Runtime Rebel Intel
4 min read · Mar 28, 2026
TA446 Deploys Leaked DarkSword iOS Exploit Kit — Technical Analysis
HIGH
Threat Intel

TA446 Deploys Leaked DarkSword iOS Exploit Kit — Technical Analysis

Russian threat actor TA446 (Callisto) is targeting iOS users with the leaked DarkSword exploit kit. Learn how to detect and defend against this campaign.

Runtime Rebel Intel
4 min read · Mar 28, 2026
Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos
HIGH
Threat Intel

Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos

Chinese APT Red Menshen utilizes an upgraded BPFdoor backdoor to target global telecommunication companies, bypassing traditional defenses.

Runtime Rebel Intel
4 min read · Mar 27, 2026
HIGH
Threat Intel

Pro-Iranian Group Claims Hack of FBI Director's Personal Account

A pro-Iranian hacking group claims to have compromised the personal account of FBI Director Kash Patel, exfiltrating emails and documents.

Runtime Rebel Intel
4 min read · Mar 27, 2026
HIGH
Threat Intel

GitHub Malware Campaign: Fake VS Code Alerts Target Developers

Attackers exploit GitHub Discussions to push malware via fake VS Code security alerts. Learn the TTPs used to target developers and how to mitigate risk.

Runtime Rebel Intel
4 min read · Mar 27, 2026
Apple iOS Lock Screen Alerts Warn of Active Web-Based Exploits
HIGH
Threat Intel

Apple iOS Lock Screen Alerts Warn of Active Web-Based Exploits

Apple is now issuing direct Lock Screen notifications to warn users on outdated iOS versions about active web-based attacks and the need for urgent updates.

Runtime Rebel Intel
3 min read · Mar 27, 2026
Industrial OT Attacks With Physical Consequences Decline 25%
MEDIUM
Threat Intel

Industrial OT Attacks With Physical Consequences Decline 25%

Physical-impact cyberattacks on operational technology fell 25% in 2023, driven by a ransomware lull and complex technical barriers in OT environments.

Runtime Rebel Intel
3 min read · Mar 27, 2026
Geopolitical Exploitation of Compromised IP Cameras
HIGH
Threat Intel

Geopolitical Exploitation of Compromised IP Cameras

Nation-states including Russia and Iran are weaponizing compromised IP cameras for battlefield intelligence and critical infrastructure surveillance.

Runtime Rebel Intel
3 min read · Mar 27, 2026
MEDIUM
Threat Intel

Palo Alto Networks Recruiter Scam and Quantum Security Outlook

Threat actors are impersonating Palo Alto Networks recruiters to target security professionals, while Google sets a 2029 deadline for quantum computing.

Runtime Rebel Intel
3 min read · Mar 27, 2026
AitM Phishing Campaign Targets TikTok Business via Turnstile Evasion
MEDIUM
Threat Intel

AitM Phishing Campaign Targets TikTok Business via Turnstile Evasion

Security researchers have identified a sophisticated AitM phishing campaign using Cloudflare Turnstile to hijack TikTok for Business accounts for malvertising.

Runtime Rebel Intel
4 min read · Mar 27, 2026
Google Sets 2029 Deadline for Post-Quantum Cryptography Migration
INFO
Threat Intel

Google Sets 2029 Deadline for Post-Quantum Cryptography Migration

Google establishes a 2029 deadline for quantum-safe cryptography to mitigate harvest-now-decrypt-later risks. Learn how to prepare for PQC migration.

Runtime Rebel Intel
3 min read · Mar 27, 2026