
Weekly Intelligence Snapshot – Week 26, 2023
SentinelOne, Bitdefender & Elastic have reported on the emerging threat actor JokerSpy that targets enterprise MacOS devices with multistage spyware.
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

SentinelOne, Bitdefender & Elastic have reported on the emerging threat actor JokerSpy that targets enterprise MacOS devices with multistage spyware.

Pro-Russia Hacktivist group Anonymous Sudan attacked Microsoft Azure, disrupting services for two hours.

UNC3886 — a Chinese Cyberespionage group — is targeting defense, tech, and telecom organizations in the US and APAC.

Creators of the Ransomware-as-a-Service dubbed NoEscape are actively recruiting affiliates to spread this wide-functionality RaaS which allows for defense evasion.

Threat Actor “Spyboy” is selling software claiming to terminate AV and EDR processes of EDRs.

G7 Summit: Leaders prioritize supply chain resilience and fair trade practices.

Officials in multiple European countries were targeted by a newly discovered malicious firmware implant called “Horse Shell”.

The National Security Agency (NSA) and partner agencies have identified the infrastructure for Snake malware, a Russian cyberespionage tool, in

QuoIntelligence observed a new backdoor called “Durtmovoy” that is currently in development by “Durt Team”, a newly observed Russian threat

We track a Phishing campaign targeting SCADA system providers in the DACH region that delivers the Remcos Trojan. We analyze
Try searching our blog

Russian-Speaking eCrime Threat Actor Leverages Commercial AI Services to Compromise Over 600 FortiGate Devices | US Supreme Court Strikes Down Trump’s Global Tariffs

UNC6201 Exploiting Zero-day in Dell RecoverPoint to Achieve Persistent Access | Wave of Sabotage Acts Target Italian Railway Network Amid Winter Olympics

Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape | EU Launches 20th Russia Sanctions Package

APT28 Targeting Central and Eastern Europe through CVE‑2026‑21509 Exploitation | UK Opens First Investigations Over Breach Of Cyber Sanctions