
Weekly Intelligence Snapshot – Week 31
We report on SentinelOne’s findings on LockBit’s latest method which employs the MpCmdRun.exe executable, which is extremely difficult to detect.
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

We report on SentinelOne’s findings on LockBit’s latest method which employs the MpCmdRun.exe executable, which is extremely difficult to detect.

This week we cover a spearphishing campaign attributed to Evilnum, which is targeting DeFi platforms in Europe.

QuoIntelligence analyzes the consequences of China’s strategy for critical industries particularly exposed to cyber espionage as well as its effects

QuoIntelligence is tracking activity related to the use of fake job offers and job applications to compromise companies for monetary

QuoIntelligence gathered and processed the different Microsoft product updates in order to provide a clear overview of the different topics

After Kaspersky ICS CERT published their findings of an active shadowPad infection, QuoIntelligence analyzed the activity further in our report.

Quointelligence is analyzing the use of Follina vulnerability in the campaign targeting entities in Ukraine reported by the CERT-UA, allegedly

We analyzed the encryption software samples used in HelloXD’s Ransomware operation and provide an update of the latest legislation regarding

This week we provide analysis into IndustrialSpy and their encryption software, which they recently leveraged in cyber operations.

Quointelligence reported on the Gamaredon group activity characterized by the use of SFX archives to deliver #malware. In this weekly,
Try searching our blog

Threat Actor Exploits Infostealer Logs to Access Global Enterprise Infrastructure | US Captures Venezuelan President In Unprecedented Military Operation

Third Shai-Hulud Wave Emerged on 28 December, New NPM Package Vulnerable | Escalation In US – Venezuela Tensions: US Reportedly Strikes Drug Boat Loading Facility Inside Venezuela

Malicious Chrome Extensions Found Intercepting Traffic And Exfiltrating Credentials From Developers And Trade Personnel | Ukraine Strikes Russian Shadow Fleet Tanker In Mediterranean For the Fist Time

Browser Native ClickFix Alternative Known as ConsentFix Hijacks OAuth Grants for Account Takeover | Italy Tightens Public Sector Ban on Russian-Linked Cybersecurity Products