
Weekly Intelligence Snapshot – Week 24
We analyzed the encryption software samples used in HelloXD’s Ransomware operation and provide an update of the latest legislation regarding
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

We analyzed the encryption software samples used in HelloXD’s Ransomware operation and provide an update of the latest legislation regarding

This week we provide analysis into IndustrialSpy and their encryption software, which they recently leveraged in cyber operations.

Quointelligence reported on the Gamaredon group activity characterized by the use of SFX archives to deliver #malware. In this weekly,

Quointelligence reported on the Gamaredon group activity characterized by the use of SFX archives to deliver #malware. In this weekly,

In this Weekly we report on how a threat actor, possibly Russian, is targeting users in Germany by using information

In this weekly we investigate the emerging threat of NodePacketManager (NPM) becoming an attack vector for supply chains and the

QuoIntelligence is tracking a campaign where the threat actors are using the remote template injection to deliver an espionage implant

This week we cover our observations of #Emotet development, including differences in #TTPs observed in recent samples. We also cover

This week, the QuoIntelligence research team observed a campaign of the Gamaredon group, where SFX archives are used to deliver

This week, QuoIntelligence reveals our internal investigation findings about an ongoing phishing campaign delivering the banking trojan known as Gozi
Try searching our blog

Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape | EU Launches 20th Russia Sanctions Package

APT28 Targeting Central and Eastern Europe through CVE‑2026‑21509 Exploitation | UK Opens First Investigations Over Breach Of Cyber Sanctions

New Wave of Vishing Campaigns Against Identity Providers Targets Okta, Microsoft, Google, and Cryptocurrency Platforms | France To Ditch US Platforms Microsoft Teams, Zoom For Sovereign Platform Citing Security Concerns
In this outlook report, QuoIntelligence assesses the expected threat landscape for 2026, examining key developments across eCrime, malware evolution, hacktivism, and state‑sponsored activity.