
Weekly Intelligence Snapshot – Week 42
This week the Microsoft Threat Intelligence Center reports on ransomware, “Prestige”, which targets transportation and logistics sectors in Poland and
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

This week the Microsoft Threat Intelligence Center reports on ransomware, “Prestige”, which targets transportation and logistics sectors in Poland and

A CISA advisory reveals vulnerabilities exploited by China-sponsored groups. PatchTuesday: Microsoft fixes 84 #vulnerabilities (inc two 0-day).

This week, we analyze new espionage-driven campaigns related to the Lazarus/ZINC activity cluster.

We are closely following increased geopolitical tensions after the potential sabotage attacks to Nordstream pipelines in the Baltic sea.

Malware analyst 3xp0rt has uploaded a Lockbit 3 ransomware builder, allowing anyone to build executables for their own operation.

This week we report Emotet is still active. The DFIR Report describes an incident in May 2022 which began with

This week we analyze the latest campaign of the alleged Russian #threatactor TA505 and how it uses ServHelper and TeslaGun

This week we focus on Mobile Banking Trojan Ermac, aimed at stealing credentials from financial and Cryptocurrency applications.

This week read how LockBit suffered a DDoS attack following its #ransomware attack on Entrust – not the first time

In this week’s summary our Cyber news features the collaboration of the Microsoft Threat Intelligence Center (MSTIC), Google Threat Analysis
Try searching our blog

ErrTraffic MaaS Distributes Infostealers Through Compromised WordPress Sites and ClickFix Lures | Italy Arrests Seven Over Anarchist Network Linked to Winter Olympics Rail Sabotage

NFCShare Android Trojan Steals Payment Card Data Through NFC from Italian and Spanish Bank Customers | Iran Strikes US Bases in Gulf After Trump Orders Attacks Near Hormuz

New Russian-Linked Threat Group GREYVIBE Uses AI to Accelerate Cyber Operations | OECD Warns Global Economic Outlook Weakens Amid Energy Shock and Rising Inflationary Pressures

TrapDoor Campaign Plants 34 Malicious Packages Across npm, PyPI, and Crates.io to Steal Crypto and Developer Credentials | Norway to Join France-Led Nuclear Deterrence Program