Skip to main content
← All Articles

Tag

#APT

32 articles

Advertisement

Chinese State-Backed Actors Industrialize Botnets for Covert Ops
CRITICAL
Threat Intel

Chinese State-Backed Actors Industrialize Botnets for Covert Ops

Chinese state-backed groups are adopting industrialized botnets, utilizing compromised devices for low-cost, low-risk, and deniable cyber operations.

Runtime Rebel Intel
4 min read·Apr 24, 2026
MA
CRITICAL
Malware

FIRESTARTER Backdoor: Persistent Threat to Cisco Firepower & Secure Firewall

CISA and NCSC warn of FIRESTARTER, an APT-deployed backdoor maintaining persistence on Cisco Firepower and Secure Firewall devices post-patching.

Runtime Rebel Intel
6 min read·Apr 23, 2026
TH
CRITICAL
Threat Intel

GopherWhisper APT Abuses Outlook and Slack for Stealthy C2

Newly discovered GopherWhisper APT group uses a Go-based toolkit and legitimate SaaS platforms like Slack and Outlook to conduct espionage against governments.

Runtime Rebel Intel
3 min read·Apr 23, 2026
Sapphire Sleet's ClickFix: North Korea Targets macOS Users
HIGH
Threat Intel

Sapphire Sleet's ClickFix: North Korea Targets macOS Users

North Korea-backed Sapphire Sleet is deploying ClickFix malware via fake job offers and phony Zoom updates to steal macOS user credentials and data. Learn how to detect

Runtime Rebel Intel
4 min read·Apr 16, 2026
Iran Geopolitical Tensions: Cyber Implications & Preparedness
INFO
Threat Intel

Iran Geopolitical Tensions: Cyber Implications & Preparedness

Examine the potential cybersecurity implications of escalating geopolitical tensions involving Iran, focusing on nation-state TTPs and organizational preparedness

Runtime Rebel Intel
4 min read·Apr 14, 2026
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware
HIGH
Threat Intel

UAT-10362 Targets Taiwanese NGOs with LucidRook Malware

Runtime Rebel analyzes UAT-10362's sophisticated spear-phishing campaigns deploying new Lua-based LucidRook malware against Taiwanese NGOs and universities.

Runtime Rebel Intel
4 min read·Apr 10, 2026
TA416 Targets European Govts with PlugX & OAuth Phishing
CRITICAL
Threat Intel

TA416 Targets European Govts with PlugX & OAuth Phishing

China-linked TA416 has resumed targeting European government and diplomatic entities since mid-2025 using PlugX and OAuth-based phishing attacks.

Runtime Rebel Intel
4 min read·Apr 3, 2026
TH
HIGH
Threat Intel

Iranian Hackers Target Kash Patel: US Offers $10M Bounty

The FBI confirms Iranian state-sponsored hackers compromised Kash Patel’s personal email, leading the U.S. to offer a $10M reward for information.

Runtime Rebel Intel
4 min read·Mar 30, 2026
Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos
CRITICAL
Threat Intel

Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos

Chinese APT Red Menshen utilizes an upgraded BPFdoor backdoor to target global telecommunication companies, bypassing traditional defenses. Active threat hunting is

Runtime Rebel Intel
4 min read·Mar 27, 2026
Red Menshen BPFDoor Implants Target Telecom Networks for Espionage
CRITICAL
Threat Intel

Red Menshen BPFDoor Implants Target Telecom Networks for Espionage

Analysis of China-linked Red Menshen's long-term campaign using stealthy BPFDoor implants within telecom networks to conduct espionage against government entities.

Runtime Rebel Intel
4 min read·Mar 26, 2026
TH
HIGH
Threat Intel

Russian Intelligence Phishing Targets Signal and WhatsApp Users

The FBI warns of sophisticated phishing campaigns by Russian intelligence targeting Signal and WhatsApp users to harvest credentials and bypass encryption.

Runtime Rebel Intel
3 min read·Mar 21, 2026
TH
HIGH
Threat Intel

Bitrefill Attributes Cyberattack to North Korean Lazarus Group

Bitrefill identifies North Korean Lazarus Group as the perpetrator of a recent cyberattack, underscoring the persistent threat to crypto-focused businesses.

Runtime Rebel Intel
3 min read·Mar 19, 2026