Advertisement
APT28's HOOKEDGE Backdoor Targets European Diplomacy
Russian state-sponsored BlueDelta (APT28) leverages HOOKEDGE backdoor via macro-enabled documents to target European government and diplomatic entities.
Detecting AI-Driven Polymorphic Phishing Attacks
AI-powered phishing attacks leverage personalization and polymorphic evasion, challenging traditional filters. MSPs must focus on post-compromise detection.
NSO Group's WhatsApp Phishing Blocked: Meta Files Contempt Order
Meta detected and blocked new spear-phishing attacks by NSO Group targeting WhatsApp users, leading to a federal court contempt order filing.
China's Dual-Method Cyberattack Targets Czech, Taiwan Orgs with Azureveil
Nation-state actors linked to China employ dual-method spear-phishing with Azureveil malware to target Czech and Taiwan organizations for data theft.
Operation Dragon Weave: APT Targeting Czech Republic and Taiwan
China-aligned Operation Dragon Weave targets Czech and Taiwanese government and tech sectors using spear-phishing to deploy the AdaptixC2 agent framework.
FrostyNeighbor APT Targets Poland/Ukraine Gov with Spear-Phishing
Belarussian APT 'FrostyNeighbor' is deploying spear-phishing campaigns against Polish and Ukrainian government entities after unique victim fingerprinting, aiming for…
Advertisement
Chinese Spear-Phishing Campaign Targets NASA Defense Software
NASA OIG reveals a multi-year spear-phishing campaign by a Chinese national impersonating researchers to exfiltrate sensitive U.S. defense software.
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware
Runtime Rebel analyzes UAT-10362's sophisticated spear-phishing campaigns deploying new Lua-based LucidRook malware against Taiwanese NGOs and universities.
Star Blizzard (APT28) Adopts DarkSword iOS Exploit Kit
Russian APT Star Blizzard (APT28) now uses the DarkSword iOS exploit kit to target government, finance, and academia, increasing mobile threat exposure.
Iranian-Linked Handala Group Breaches Kash Patel's Personal Email
FBI confirms Iranian-linked Handala hackers breached Director nominee Kash Patel's personal email, leaking documents and highlighting spear-phishing risks.
TA446 Deploys Leaked DarkSword iOS Exploit Kit — Technical Analysis
Russian threat actor TA446 (Callisto) is targeting iOS users with the leaked DarkSword exploit kit. Learn how to detect and defend against this campaign.
SideWinder APT Expands Southeast Asia Espionage Campaign
SideWinder APT targets government and telecom sectors in Southeast Asia using spear-phishing and rotating infrastructure for persistent espionage operations.
Konni Group Deploys EndRAT via Phishing and KakaoTalk Hijacking
North Korean threat actor Konni leverages spear-phishing and KakaoTalk desktop exploitation to distribute EndRAT malware and facilitate lateral movement.
MuddyWater Deploys BugSleep Backdoor in Targeted Regional Campaigns
Iranian state actor MuddyWater introduces the custom BugSleep backdoor, targeting Middle Eastern and African entities using spear-phishing and RMM abuse.