
Weekly Intelligence Snapshot – Week 08
We track a campaign where a OneNote file delivers QakBot through politically-themed emails. China published its GSI concept and a

We track a campaign where a OneNote file delivers QakBot through politically-themed emails. China published its GSI concept and a

It’s been a turbulent week, especially for Germany-based organizations. As Germany and the US announced they are to supply frontline

Microsoft releases its Patch Tuesday update with two Zero-Day vulnerabilities, one exploited in Malware distribution.
Regulatory landscapes more complex as

This week we highlight Telecommunication and business process outsourcing companies hit by SIM swapping operations. In geopolitics, we look at

This week we report Emotet is still active. The DFIR Report describes an incident in May 2022 which began with

In this Weekly we report on how a threat actor, possibly Russian, is targeting users in Germany by using information

In this weekly we investigate the emerging threat of NodePacketManager (NPM) becoming an attack vector for supply chains and the

QuoIntelligence is tracking a campaign where the threat actors are using the remote template injection to deliver an espionage implant

This week we cover our observations of #Emotet development, including differences in #TTPs observed in recent samples. We also cover

As the Russian invasion in Ukraine enters its third week, we analyze the latest cyber security events surrounding the invasion
Try searching our blog

Russian-Speaking eCrime Threat Actor Leverages Commercial AI Services to Compromise Over 600 FortiGate Devices | US Supreme Court Strikes Down Trump’s Global Tariffs

UNC6201 Exploiting Zero-day in Dell RecoverPoint to Achieve Persistent Access | Wave of Sabotage Acts Target Italian Railway Network Amid Winter Olympics

Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape | EU Launches 20th Russia Sanctions Package

APT28 Targeting Central and Eastern Europe through CVE‑2026‑21509 Exploitation | UK Opens First Investigations Over Breach Of Cyber Sanctions