Skip to main content
← All Articles

Tag

#Spear Phishing

14 articles

Advertisement

APT28's HOOKEDGE Backdoor Targets European Diplomacy
HIGH
Threat Intel

APT28's HOOKEDGE Backdoor Targets European Diplomacy

Russian state-sponsored BlueDelta (APT28) leverages HOOKEDGE backdoor via macro-enabled documents to target European government and diplomatic entities.

Runtime Rebel Intel
3 min read · Sep 1, 2026
INFO
Threat Intel

Detecting AI-Driven Polymorphic Phishing Attacks

AI-powered phishing attacks leverage personalization and polymorphic evasion, challenging traditional filters. MSPs must focus on post-compromise detection.

Runtime Rebel Intel
4 min read · Aug 21, 2026
NSO Group's WhatsApp Phishing Blocked: Meta Files Contempt Order
HIGH
Threat Intel

NSO Group's WhatsApp Phishing Blocked: Meta Files Contempt Order

Meta detected and blocked new spear-phishing attacks by NSO Group targeting WhatsApp users, leading to a federal court contempt order filing.

Runtime Rebel Intel
4 min read · Jun 8, 2026
China's Dual-Method Cyberattack Targets Czech, Taiwan Orgs with Azureveil
HIGH
Threat Intel

China's Dual-Method Cyberattack Targets Czech, Taiwan Orgs with Azureveil

Nation-state actors linked to China employ dual-method spear-phishing with Azureveil malware to target Czech and Taiwan organizations for data theft.

Runtime Rebel Intel
4 min read · Jun 2, 2026
Operation Dragon Weave: APT Targeting Czech Republic and Taiwan
HIGH
Threat Intel

Operation Dragon Weave: APT Targeting Czech Republic and Taiwan

China-aligned Operation Dragon Weave targets Czech and Taiwanese government and tech sectors using spear-phishing to deploy the AdaptixC2 agent framework.

Runtime Rebel Intel
4 min read · Jun 1, 2026
FrostyNeighbor APT Targets Poland/Ukraine Gov with Spear-Phishing
HIGH
Threat Intel

FrostyNeighbor APT Targets Poland/Ukraine Gov with Spear-Phishing

Belarussian APT 'FrostyNeighbor' is deploying spear-phishing campaigns against Polish and Ukrainian government entities after unique victim fingerprinting, aiming for…

Runtime Rebel Intel
4 min read · May 14, 2026

Advertisement

Chinese Spear-Phishing Campaign Targets NASA Defense Software
HIGH
Threat Intel

Chinese Spear-Phishing Campaign Targets NASA Defense Software

NASA OIG reveals a multi-year spear-phishing campaign by a Chinese national impersonating researchers to exfiltrate sensitive U.S. defense software.

Runtime Rebel Intel
3 min read · Apr 24, 2026
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware
HIGH
Threat Intel

UAT-10362 Targets Taiwanese NGOs with LucidRook Malware

Runtime Rebel analyzes UAT-10362's sophisticated spear-phishing campaigns deploying new Lua-based LucidRook malware against Taiwanese NGOs and universities.

Runtime Rebel Intel
4 min read · Apr 10, 2026
HIGH
Threat Intel

Star Blizzard (APT28) Adopts DarkSword iOS Exploit Kit

Russian APT Star Blizzard (APT28) now uses the DarkSword iOS exploit kit to target government, finance, and academia, increasing mobile threat exposure.

Runtime Rebel Intel
5 min read · Mar 30, 2026
HIGH
Threat Intel

Iranian-Linked Handala Group Breaches Kash Patel's Personal Email

FBI confirms Iranian-linked Handala hackers breached Director nominee Kash Patel's personal email, leaking documents and highlighting spear-phishing risks.

Runtime Rebel Intel
3 min read · Mar 30, 2026
TA446 Deploys Leaked DarkSword iOS Exploit Kit — Technical Analysis
HIGH
Threat Intel

TA446 Deploys Leaked DarkSword iOS Exploit Kit — Technical Analysis

Russian threat actor TA446 (Callisto) is targeting iOS users with the leaked DarkSword exploit kit. Learn how to detect and defend against this campaign.

Runtime Rebel Intel
4 min read · Mar 28, 2026
SideWinder APT Expands Southeast Asia Espionage Campaign
HIGH
Threat Intel

SideWinder APT Expands Southeast Asia Espionage Campaign

SideWinder APT targets government and telecom sectors in Southeast Asia using spear-phishing and rotating infrastructure for persistent espionage operations.

Runtime Rebel Intel
3 min read · Mar 18, 2026
Konni Group Deploys EndRAT via Phishing and KakaoTalk Hijacking
HIGH
Threat Intel

Konni Group Deploys EndRAT via Phishing and KakaoTalk Hijacking

North Korean threat actor Konni leverages spear-phishing and KakaoTalk desktop exploitation to distribute EndRAT malware and facilitate lateral movement.

Runtime Rebel Intel
3 min read · Mar 17, 2026
MuddyWater Deploys BugSleep Backdoor in Targeted Regional Campaigns
HIGH
Threat Intel

MuddyWater Deploys BugSleep Backdoor in Targeted Regional Campaigns

Iranian state actor MuddyWater introduces the custom BugSleep backdoor, targeting Middle Eastern and African entities using spear-phishing and RMM abuse.

Runtime Rebel Intel
4 min read · Feb 24, 2026