Skip to main content

Glossary

Attribution

The process of identifying the individual, group, or nation responsible for a cyberattack, typically based on technical indicators (malware code reuse, infrastructure overlap), tradecraft (TTPs), and geopolitical context. Attribution is inherently difficult and often expressed with varying confidence levels because attackers can plant false flags.

Recent coverage mentioning Attribution

PEEP Backdoor Turns Browsers into OS Command Execution Tools
MEDIUM
Malware

PEEP Backdoor Turns Browsers into OS Command Execution Tools

PEEP toolkit leverages Chrome and Edge as post-compromise backdoors, enabling host command execution, data exfiltration, and session hijacking.

Runtime Rebel Intel
4 min read · Sep 7, 2026
INFO
Threat Intel

Leaked Russian Cyber-Ops Training Exposes Institutional Pathways

Leaked materials reveal Russia's institutional system for generating cyber capabilities, linking university recruitment to GRU and Sandworm units for diverse operations.

Runtime Rebel Intel
3 min read · Sep 1, 2026
INFO
Threat Intel

Malicious PE Stats: Compiler Analysis of Malware Samples

Analysis of 1.3TB of malware samples examines PE headers, compiler trends, and tools used by attackers over a multi-year dataset.

Runtime Rebel Intel
3 min read · Sep 1, 2026
HIGH
Threat Intel

Massive DDoS Disrupts Norway Government Digital Services

Norway's Digitalization Agency (Digdir) services, including e-IDs, face ongoing disruptions from a massive DDoS attack. No data breach reported.

Runtime Rebel Intel
3 min read · Aug 25, 2026
AI-Powered PLC Attacks Target Critical Infrastructure
MEDIUM
Threat Intel

AI-Powered PLC Attacks Target Critical Infrastructure

U.S. agencies warn that threat actors are using AI to target internet-exposed Siemens S7 Series PLCs in critical infrastructure sectors.

Runtime Rebel Intel
2 min read · Aug 24, 2026
MEDIUM
Supply Chain

North Korea's Sapphire Sleet Targets Rust Supply Chain via arrayref Crate

North Korean actor Sapphire Sleet compromised a Rust maintainer's account to publish malicious `arrayref` crate versions, targeting the Rust supply chain.

Runtime Rebel Intel
4 min read · Aug 23, 2026

Advertisement

← All 285 glossary terms