
Weekly Intelligence Snapshot – Week 16
Ransomware groups and APTs are resorting to Living-off-the-Land Binaries (LOLBINs) — legitimate software and tools preinstalled on infected systems.
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

Ransomware groups and APTs are resorting to Living-off-the-Land Binaries (LOLBINs) — legitimate software and tools preinstalled on infected systems.

As the use of ChatGPT rises, we analyze the current AI regulatory frameworks.

Kaspersky reports that some victims compromised in the SupplyChain attack against 3CX’s Desktop Application VoIP software also had the Gopuram

Vulnerability CVE-2023-23397 is being exploited to target private and public defense sector organizations. We analyze the campaign and also examine

QuoIntelligence outlines the main features of two EU legislation proposals, the Net Zero Industry Act and Critical Raw Materials Act,

Europe continues to come under cyber attack from a Russian Threat Actor and what is happening in the Banking sector.

Emotet, the popular MaaS Trojan and Infostealer is in the news with a new wave of activity.

Another busy week: Gamaredon is growing as we see a malicious document sample uploaded to malware analysis services, BlackLotus is

We track a campaign where a OneNote file delivers QakBot through politically-themed emails. China published its GSI concept and a

QuoIntelligence research team identified an ongoing phishing campaign targeting companies across all sectors worldwide.
Try searching our blog

Russian-Speaking eCrime Threat Actor Leverages Commercial AI Services to Compromise Over 600 FortiGate Devices | US Supreme Court Strikes Down Trump’s Global Tariffs

UNC6201 Exploiting Zero-day in Dell RecoverPoint to Achieve Persistent Access | Wave of Sabotage Acts Target Italian Railway Network Amid Winter Olympics

Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape | EU Launches 20th Russia Sanctions Package

APT28 Targeting Central and Eastern Europe through CVE‑2026‑21509 Exploitation | UK Opens First Investigations Over Breach Of Cyber Sanctions