
Weekly Intelligence Snapshot – Week 45
In our latest Weekly #Intelligence Summary: ASEC Analysis Team has seen LockBit 3.0 Ransomware deployed through Amadey Bot, an Infostealer

In our latest Weekly #Intelligence Summary: ASEC Analysis Team has seen LockBit 3.0 Ransomware deployed through Amadey Bot, an Infostealer

Microsoft reports the RaspberryRobin worm is now part of a malware ecosystem and one of the largest active malware distribution

The US publishes its new #NationalSecurity Strategy focussed on China and Russia and emphasizing the key role of the Indo-Pacific

This week the Microsoft Threat Intelligence Center reports on ransomware, “Prestige”, which targets transportation and logistics sectors in Poland and

A CISA advisory reveals vulnerabilities exploited by China-sponsored groups. PatchTuesday: Microsoft fixes 84 #vulnerabilities (inc two 0-day).

This week, we analyze new espionage-driven campaigns related to the Lazarus/ZINC activity cluster.

We are closely following increased geopolitical tensions after the potential sabotage attacks to Nordstream pipelines in the Baltic sea.

Malware analyst 3xp0rt has uploaded a Lockbit 3 ransomware builder, allowing anyone to build executables for their own operation.

This week we analyze the latest campaign of the alleged Russian #threatactor TA505 and how it uses ServHelper and TeslaGun

This week we focus on Mobile Banking Trojan Ermac, aimed at stealing credentials from financial and Cryptocurrency applications.
Try searching our blog

New Android Trojan RemControl Targets Retail Bank Customers in Europe and Canada | Poland Suspects Fire at Starlink Station Was Act of Sabotage

Revolut Customer Data Breach Exposes Sensitive Personal and Financial Information After Attacker Impersonates Government Agency | Suspected Sabotage Disrupts Dutch Trains, After Similar Incident in France Causes Derailment

StyleSmuggler Zero-Day Exploited in Active Attacks Against Magento and Adobe Commerce | Norway, the UK, and the US Reportedly Foiled a Russian Subsea Cable Sabotage Plot

QuoIntelligence’s report tracks how app developers become an intermediary in the residential proxy supply chain through Software Development Kit (SDK) integration, and what that means for end users left carrying the risk.