
Weekly Intelligence Snapshot – Week 52
In its latest campaign, the Lazarus sub-group BlueNoroff has been operating an infrastructure of over 70 domains impersonating venture capital
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

In its latest campaign, the Lazarus sub-group BlueNoroff has been operating an infrastructure of over 70 domains impersonating venture capital

The malwareHunterTeam posted a warning about “Photo.apk” – an Android executable which QuoIntelligence determined might announce the imminent arrival

Microsoft releases its Patch Tuesday update with two Zero-Day vulnerabilities, one exploited in Malware distribution.
Regulatory landscapes more complex as

This week we highlight Telecommunication and business process outsourcing companies hit by SIM swapping operations. In geopolitics, we look at

China-nexus group uses new Malware families to infect USBs for Espionage.

Our tracking of the Mustang Panda group reveals a different DLL sideloading technique from those seen this year.

Pro-Russia hacktivist group From Russia With Love has been deploying Somnia Ransomware in Ukraine since spring 2022. But the #Malware

In our latest Weekly #Intelligence Summary: ASEC Analysis Team has seen LockBit 3.0 Ransomware deployed through Amadey Bot, an Infostealer

Microsoft reports the RaspberryRobin worm is now part of a malware ecosystem and one of the largest active malware distribution

The US publishes its new #NationalSecurity Strategy focussed on China and Russia and emphasizing the key role of the Indo-Pacific
Try searching our blog

ErrTraffic MaaS Distributes Infostealers Through Compromised WordPress Sites and ClickFix Lures | Italy Arrests Seven Over Anarchist Network Linked to Winter Olympics Rail Sabotage

NFCShare Android Trojan Steals Payment Card Data Through NFC from Italian and Spanish Bank Customers | Iran Strikes US Bases in Gulf After Trump Orders Attacks Near Hormuz

New Russian-Linked Threat Group GREYVIBE Uses AI to Accelerate Cyber Operations | OECD Warns Global Economic Outlook Weakens Amid Energy Shock and Rising Inflationary Pressures

TrapDoor Campaign Plants 34 Malicious Packages Across npm, PyPI, and Crates.io to Steal Crypto and Developer Credentials | Norway to Join France-Led Nuclear Deterrence Program