
Weekly Intelligence Snapshot – Week 31
We report on SentinelOne’s findings on LockBit’s latest method which employs the MpCmdRun.exe executable, which is extremely difficult to detect.
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

We report on SentinelOne’s findings on LockBit’s latest method which employs the MpCmdRun.exe executable, which is extremely difficult to detect.

This week we cover a spearphishing campaign attributed to Evilnum, which is targeting DeFi platforms in Europe.

QuoIntelligence analyzes the consequences of China’s strategy for critical industries particularly exposed to cyber espionage as well as its effects

QuoIntelligence is tracking activity related to the use of fake job offers and job applications to compromise companies for monetary

QuoIntelligence gathered and processed the different Microsoft product updates in order to provide a clear overview of the different topics

After Kaspersky ICS CERT published their findings of an active shadowPad infection, QuoIntelligence analyzed the activity further in our report.

Quointelligence is analyzing the use of Follina vulnerability in the campaign targeting entities in Ukraine reported by the CERT-UA, allegedly

We analyzed the encryption software samples used in HelloXD’s Ransomware operation and provide an update of the latest legislation regarding

This week we provide analysis into IndustrialSpy and their encryption software, which they recently leveraged in cyber operations.

Quointelligence reported on the Gamaredon group activity characterized by the use of SFX archives to deliver #malware. In this weekly,
Try searching our blog

TrapDoor Campaign Plants 34 Malicious Packages Across npm, PyPI, and Crates.io to Steal Crypto and Developer Credentials | Norway to Join France-Led Nuclear Deterrence Program

GitHub Discloses Compromise of Internal Repositories Following TeamPCP Sale Listing on Underground Forum | Latvia Issues Drone Alert Amid Political Crisis Following Multiple Incidents Involving Stray Ukrainian Drones

Iran-Linked MuddyWater Targets Nine Organizations Globally in Espionage Campaign | Middle East Conflict Update: Kinetic Attacks, Maritime Incidents, and Diplomatic Deadlock

Suspected Chinese APT Salt Typhoon Targets Italian IT Service Provider | US Treasury Warns Shippers Not To Pay Hormuz Tolls, Even In Form of Charity