Operation CamelClone Trending Topics TRENDING TOPICS MAR 16, 2026 Operation CamelClone: Stealthy Multi‑Region Government Espionage
ISPsystem Trending Topics Bulletproof hosts abuse ISPsystem VM templates for ransomware infrastructure. Dragon Breath (APT-Q-27) deploys a signed .PIF dropper for fileless backdoor access via Zendesk tickets. Screensaver files silently install RMM agents for remote access.
Spiderman Phishing Trending Topics TRENDING TOPICS DEC 11, 2025 Spiderman Phishing Toolkit Expands into High-Volume
SmudgedSerpent Trending Topics SmudgedSerpent targets U.S. Iran policy experts, tied to Charming Kitten and MuddyWater. Scattered Spider (UNC3944), LAPSUS$, and ShinyHunters (UNC6040) merge into a cybercrime alliance. NGate enables NFC-relay ATM theft. APT-C-60 refines VHDX phishing.
DeskRAT Trending Topics DeskRAT targets Indian government Linux systems via TransparentTribe (APT36). MuddyWater expands espionage beyond the Middle East using Phoenix v4 backdoor. Warlock ransomware ties APT27 (Budworm) and APT31 (Sheathminer) to Chinese hybrid cybercrime.
ECScape Trending Topics ECScape flaw lets ECS containers steal AWS credentials from neighbors. Windows UAC bypass abuses eudcedit.exe for silent elevation. SocGholish, run by TA569 (Gold Prelude, Mustard Tempest, Purple Vallhund, UNC1543), sells access to ransomware crews.
COLDRIVER Trending Topics TRENDING TOPICS MAY 08, 2025 COLDRIVER Deploys LOSTKEYS Malware in Targeted Espionage
State Sponsored Monthly Wrap - March 2025 Lazarus Group uses CAPTCHA phishing and Lumma Stealer to hit crypto wallets. APT41 exploits Check Point VPN flaw to deploy ShadowPad. LockBit hits Confluence CVE-2023-22527 for fast ransomware deployment. Mustang Panda and Kimsuky continue espionage campaigns.
State Sponsored Monthly Wrap - February 2025 February 2025 wrap: Vo1d botnet compromises 1.5M Android TVs. Lazarus Group and Mustang Panda continue espionage campaigns. Sandworm (APT44) targets Ukraine via fake Windows activators. LockBit and Cl0p exploit zero-days.