
Weekly Intelligence Snapshot – Week 37
This week we report Emotet is still active. The DFIR Report describes an incident in May 2022 which began with
Explore our comprehensive archive organized by taxonomy. Discover a wealth of information categorized by subject, theme, or type to enhance your research and understanding.

This week we report Emotet is still active. The DFIR Report describes an incident in May 2022 which began with

This week we analyze the latest campaign of the alleged Russian #threatactor TA505 and how it uses ServHelper and TeslaGun

This week we focus on Mobile Banking Trojan Ermac, aimed at stealing credentials from financial and Cryptocurrency applications.

This week read how LockBit suffered a DDoS attack following its #ransomware attack on Entrust – not the first time

In this week’s summary our Cyber news features the collaboration of the Microsoft Threat Intelligence Center (MSTIC), Google Threat Analysis

Our Cyber news this week majors on Microsoft’s recent Patch Tuesday Vulnerability update which deals with 121 flaws.

We report on SentinelOne’s findings on LockBit’s latest method which employs the MpCmdRun.exe executable, which is extremely difficult to detect.

This week we cover a spearphishing campaign attributed to Evilnum, which is targeting DeFi platforms in Europe.

QuoIntelligence analyzes the consequences of China’s strategy for critical industries particularly exposed to cyber espionage as well as its effects

QuoIntelligence is tracking activity related to the use of fake job offers and job applications to compromise companies for monetary
Try searching our blog

Chinese Operators Breach Government Systems and Target Financial Firms Using AI Coding Tools | Houthis Say They Attacked Two Saudi Tankers in Red Sea

Russia Exploits European IP Cameras To Track Military Logistics | Iran Threatens to Block More Vital Seaways

TeamPCP Weaponizes Supply Chain Access to Enable Vect Ransomware Deployment | Intelligence Services Warn Russia Is Preparing Possible Provocation in Baltic States or Poland

Browser-Native Ransomware Abuse Path in DeepSeek-Attributed Sample | Iran and US Trade Attacks, Tanker Struck in Hormuz