Skip to main content
← All Articles

Tag

#Espionage

18 articles

Advertisement

Handala Brand Evolution: Iran MOIS Shifts to Hybrid Physical Attacks
HIGH
Threat Intel

Handala Brand Evolution: Iran MOIS Shifts to Hybrid Physical Attacks

Iran’s MOIS expands the Handala brand into hybrid operations, combining cyber espionage with physical sabotage targeting U.S. and Israeli interests.

Runtime Rebel Intel
3 min read·Jun 2, 2026
FrostyNeighbor APT Targets Poland/Ukraine Gov with Spear-Phishing
CRITICAL
Threat Intel

FrostyNeighbor APT Targets Poland/Ukraine Gov with Spear-Phishing

Belarussian APT 'FrostyNeighbor' is deploying spear-phishing campaigns against Polish and Ukrainian government entities after unique victim fingerprinting, aiming for

Runtime Rebel Intel
4 min read·May 14, 2026
SHADOW-EARTH-053: China-Linked APT Targets NATO and Asian Governments
HIGH
Threat Intel

SHADOW-EARTH-053: China-Linked APT Targets NATO and Asian Governments

Trend Micro uncovers SHADOW-EARTH-053, a China-aligned espionage group targeting defense sectors in Asia and a NATO member through advanced TTPs.

Runtime Rebel Intel
3 min read·May 1, 2026
Tropic Trooper APT Targets Home Routers and Japanese Infrastructure
HIGH
Threat Intel

Tropic Trooper APT Targets Home Routers and Japanese Infrastructure

Tropic Trooper expands operations to target Japanese entities and home routers using specialized malware like Chinoiserie to obfuscate attack origins.

Runtime Rebel Intel
3 min read·Apr 24, 2026
Chinese APT Leverages PlugX & ShadowPad with Cloud C2 for Mongolian Espionage
CRITICAL
Threat Intel

Chinese APT Leverages PlugX & ShadowPad with Cloud C2 for Mongolian Espionage

A Chinese state-sponsored APT is exploiting Microsoft Outlook, Slack, Discord, and file.io for C2, deploying PlugX and ShadowPad in espionage operations targeting

Runtime Rebel Intel
4 min read·Apr 23, 2026
TH
CRITICAL
Threat Intel

Russian Hackers Exploit Routers to Steal Microsoft Office Tokens

Russian military intelligence-linked hackers exploited known router flaws to harvest Microsoft Office authentication tokens from over 18,000 networks, posing a

Runtime Rebel Intel
5 min read·Apr 7, 2026
Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos
CRITICAL
Threat Intel

Red Menshen APT Deploys Upgraded BPFdoor Backdoor Against Telcos

Chinese APT Red Menshen utilizes an upgraded BPFdoor backdoor to target global telecommunication companies, bypassing traditional defenses. Active threat hunting is

Runtime Rebel Intel
4 min read·Mar 27, 2026
TH
CRITICAL
Threat Intel

M-Trends 2026: Evolving Ransomware, Persistence, and SaaS Attack Vectors

M-Trends 2026 reveals critical shifts in adversary TTPs: destructive ransomware, zero-day exploitation for persistence, and voice phishing for SaaS access.

Runtime Rebel Intel
5 min read·Mar 23, 2026
Chinese Nexus Actors Pivot to Qatar: Geopolitical Espionage
HIGH
Threat Intel

Chinese Nexus Actors Pivot to Qatar: Geopolitical Espionage

Analysis of Chinese Nexus actors' shift to targeting Qatari entities amid Iranian conflict. Understand their adaptable TTPs and fortify defenses.

Runtime Rebel Intel
4 min read·Mar 11, 2026
Chinese Cyber Threat: Persistent Espionage in Critical Asian Sectors
CRITICAL
Threat Intel

Chinese Cyber Threat: Persistent Espionage in Critical Asian Sectors

An undefined Chinese-speaking actor conducts long-term cyber espionage against critical Asian sectors using custom malware and living-off-the-land binaries.

Runtime Rebel Intel
4 min read·Mar 9, 2026
MA
CRITICAL
Malware

Coruna iOS Exploit Kit: Spyware-Grade Threat Targets Crypto

The sophisticated Coruna iOS exploit kit, leveraging 23 undocumented vulnerabilities, is now deployed in targeted espionage and crypto theft attacks.

Runtime Rebel Intel
4 min read·Mar 4, 2026
TH
CRITICAL
Threat Intel

Chinese Cyberspies Exploit SaaS APIs in Global Espionage Campaign

A suspected Chinese threat actor breached dozens of telecom firms and government agencies, using SaaS API calls to evade detection in a global espionage campaign.

Runtime Rebel Intel
4 min read·Feb 25, 2026