Advertisement
Jewelbug APT: Dual-Motivation Espionage & Crypto Heists
Jewelbug APT, a unique 'hackers-for-hire' group, conducts state-sponsored espionage and financially motivated cryptocurrency heists from a single operational panel.
DeepSeek AI & Hermes Agent: Autonomous Server Exploitation
A threat actor is leveraging DeepSeek AI and the Hermes Agent for autonomous attacks against vulnerable, internet-exposed servers, demanding urgent defense.
Google Gemini CLI Abused by 'bandcampro' for Botnet Operations
Russian-speaking threat actor 'bandcampro' is leveraging Google's Gemini CLI as a hacking agent and to command a small-scale botnet.
UNC6692 Leverages Teams, AWS S3 for Malware & Cloud Abuse
Newly discovered threat actor UNC6692 combines social engineering via Microsoft Teams with custom 'Snow' malware and AWS S3 cloud abuse in multi-pronged attacks.
The Gentlemen Ransomware Group: Rapid Escalation and Sophistication
An analysis of 'The Gentlemen' ransomware group, highlighting their rapid operational scaling and sophisticated attack methods impacting organizations globally.
TeamPCP Supply Chain Attacks Escalate Amidst Hacker Infighting
Runtime Rebel details how TeamPCP's supply chain attacks are leading to breaches, with ShinyHunters and Lapsus$ adding to the chaos.
Advertisement
Chinese Cyber Threat: Persistent Espionage in Critical Asian Sectors
An undefined Chinese-speaking actor conducts long-term cyber espionage against critical Asian sectors using custom malware and living-off-the-land binaries.
CyberStrikeAI Leveraged in AI-Driven FortiGate Attacks Across 55 Countries
An open-source AI platform, CyberStrikeAI, is deployed in sophisticated, AI-driven attacks targeting Fortinet FortiGate appliances globally.
BlackMesh Ransomware Group Pivots to Healthcare Infrastructure
The BlackMesh ransomware syndicate has shifted targeting to hospitals and healthcare networks across North America and Europe, leveraging stolen VPN credentials and…