Trending

#threatintel

Latest posts tagged with #threatintel on Bluesky

Latest Top
Trending

Posts tagged #threatintel

U.S. Treasury Sanctions Entities Linked to $800 Million North Korean Crypto Heist - Falcon News

U.S. Treasury Sanctions Entities Linked to $800 Million North Korean Crypto Heist - Falcon News

Sanctions? After $800M is gone? Brilliant strategy. 🔥

Smart money tracks the money BEFORE it vanishes.

Real ones know the drill: verify, then ape. That bot everyone whispers about? Yeah, that one. Use it.

🔗 news.falconcyber.online/en/news/20260314-12e2c35...
#crypto #OSINT #threatintel

1 0 0 0
Preview
CyberAv3ngers IRGC-CEC Affiliated ICS/OT Advanced Persistent Threat Modus Operandi Analysis INTRODUCTION

Latest Threat Profile on the dangerous CyberAv3ngers. #iran #cybersecurity #ThreatIntel #cyberattacks

CyberAv3ngers IRGC-CEC Affiliated ICS/OT Advanced Persistent Threat Modus Operandi Analysis open.substack.com/pub/cyberwar...

0 0 0 0

Revenue: $0. Customers: 18. IOCs: 1,009,231. Epstein docs: 400,713. Blog posts: 685.

Not retired. But the snake is definitely eating.

Full post: www.dugganusa.com/post/pi-day-the-snake-eats-its-tail

#cybersecurity #threatintel #AIPM

1 0 0 0

All 23 IOCs are live in our free STIX feed and OPNsense blocklists. 1,009,231 indicators and counting.

Search any of them: analytics.dugganusa.com/epstein/

Register for API access: epstein.dugganusa.com/register

#STIX #OPNsense #threatintel

0 0 0 0

Pi Day Threat Intel Drop: 23 IOCs indexed in 60 seconds.

9 Chinese military espionage C2 IPs (CL-STA-1087). 7 malware hashes. AppleChris + MemFun backdoors targeting SE Asian military.

Source: Unit 42. Now in our STIX feed + OPNsense blocklists.

#threatintel #cybersecurity

0 0 1 0

For all the unrelated (with varying degrees of validity) screetching, this is one hell of an oopsie by Companies House:

https://x.com/DanNeidle/status/2032506756786511908

#threatintel, #ukplcltd

0 0 0 0

I'll add more information on my blog this weekend, but reckoned what with the recent filestamps and lack of VT detections, I should put this out sooner rather than later. MSI upload to VT in progress.
#malware #threatintel #soceng

0 0 1 0
Malicious Packagist Themes Ship FUNNULL Malware

~Socket~
Six malicious Packagist themes deploy trojanized jQuery to exfiltrate URLs and redirect to FUNNULL infrastructure.
-
IOCs: union. macoms. la, userstat. net, 23. 225. 52. 67
-
#Malware #PHP #SupplyChain #ThreatIntel

0 0 0 0
Geopolitical Cyberthreat Surge

~Akamai~
Akamai reports a 245% spike in cyberattacks targeting global critical sectors amid 2026 geopolitical conflicts, with Handala claiming data-wiping attacks.
-
IOCs: (None identified)
-
#CyberSecurity #Hacktivism #ThreatIntel

0 0 0 0
AI in Vulnerability Discovery

~Akamai~
AI-generated false positives are overwhelming bug bounty programs and CVE databases, requiring strict human oversight.
-
IOCs: (None identified)
-
#AI #BugBounty #ThreatIntel

0 0 0 0
Iranian Threat Actor Initial Access TTPs

~Sophos~
Iranian threat groups favor phishing, password spraying, RMM abuse, and exploiting public vulnerabilities for initial access.
-
IOCs: CVE-2021-44228, CVE-2021-34473, CVE-2018-13379
-
#Iran #TTPs #ThreatIntel

0 0 0 0
March Patch Tuesday

~Sophos~
Microsoft patched 84 CVEs, including 8 Critical flaws and 2 publicly disclosed issues.
-
IOCs: CVE-2026-21536, CVE-2026-21262, CVE-2026-23668
-
#PatchTuesday #ThreatIntel #Vulnerability

0 0 0 0
CISA Adds 2 Flaws to KEV Catalog

~Cisa~
CISA added two actively exploited Google vulnerabilities (Skia and Chromium V8) to its KEV catalog, urging immediate patching.
-
IOCs: CVE-2026-3909, CVE-2026-3910
-
#CISA #KEV #ThreatIntel

0 0 0 0
Preview
GitHub - spmedia/Threat-Actor-Usernames-Scrape: A collection of intel and usernames scraped from various cybercrime sources & forums. DarkForums, HackForums, Patched, Cracked, BreachForums, LeakBase, ... A collection of intel and usernames scraped from various cybercrime sources & forums. DarkForums, HackForums, Patched, Cracked, BreachForums, LeakBase, XSS, Dread, & more - spmedia/Threat-A...

500k+ threat actor usernames atm and quickly growing.

Should be able to hit 1M+ in 2026 :)

#cti #threatintel #osint #infosec #cybersecurity #hacking #threatactors #usernames #darkforums #hackforums #dread #oguser #xss #darknetarmy #ogu #leakbase #breachstars

github.com/spmedia/Thre...

1 0 0 0
Preview
Iran-Linked MuddyWater Hackers Target U.S. Networks With New Dindoor Backdoor Iran-linked MuddyWater hackers breached U.S. networks with new Dindoor malware as regional cyber attacks escalate amid Middle East conflict.

Iran-linked MuddyWater hackers are deploying a new Dindoor backdoor targeting sectors like banking, aviation, and software.

Nation-state cyber campaigns increasingly touch private companies too.

thehackernews.com/2026/03/iran...

#CyberSecurity #ThreatIntel #APT

0 0 0 0
Post image

Hive0163 Uses AI Malware For Ransomware
Read More: buff.ly/BMLssgq

#Hive0163 #Slopoly #AIgeneratedMalware #RansomwareThreat #LLMAbuse #CyberExtortion #ThreatIntel #Infosec

0 1 0 0
RSAC 2026: Akamai on AI Security

~Akamai~
Akamai highlights the shift toward AI-driven threats and the need for Zero Trust frameworks ahead of RSAC 2026.
-
IOCs: (None identified)
-
#AISecurity #RSAC2026 #ThreatIntel

0 0 0 0
XWorm RAT Dominates the Malware-as-a-Service Landscape with 174% Increase in Detections The XWorm RAT dominates the malware-as-a-service market, utilizing stealthy memory-only execution to bypass enterprise cybersecurity defenses.

Read the full analysis:
www.technadu.com/xworm-rat-do...

💬 What strategies should security teams adopt to detect malware that operates primarily in memory?
#Cybersecurity #Malware #Infosec #ThreatIntel #MaaS

1 0 0 0
Preview
Moving up the Assemblyline: Exposing malicious code in browser extensions How to use the open source Assemblyline tool to track browser extension updates and detect malicious code

Originally from Red Canary: Moving up the Assemblyline: Exposing malicious code in browser extensions ( :-{ı▓ #threatintel #redcanary #cyberresearch

0 0 0 0
Original post on swecyb.com

There are a lot of articles and discussions concerning the Handala Hack Team, and especially the recent attack on Stryker.

Multiple articles have been published regarding this threat actor and I have put together a "Threat Actor Profile" for Handala. It's as always reasonably well attributed to […]

1 2 1 0
Post image

One infostealer infection exposed a massive cyber operation.
• DPRK-linked actor inside crypto exchange
• Linked to Polyfill. io attack(100K+ sites)
• Automated crypto laundering
• Espionage targeting research infrastructure
Follow TechNadu for cybersecurity news
#CyberSecurity #ThreatIntel #InfoSec

0 0 1 0
China-Nexus Actor Targets Persian Gulf

~Zscaler~
A China-nexus group, likely Mustang Panda, is using Middle East conflict lures to deploy the PlugX backdoor in the Persian Gulf.
-
IOCs: 91. 193. 17. 117, www. 360printsol. com
-
#MustangPanda #PlugX #ThreatIntel

0 0 0 0
China-Linked Espionage Targets SE Asia Military

~Paloalto~
Suspected Chinese state actors (CL-STA-1087) are targeting SE Asian military entities using custom AppleChris and MemFun backdoors.
-
IOCs: 154. 39. 142. 177, 154. 39. 137. 203, 8. 212. 169. 27
-
#APT #Malware #ThreatIntel

0 1 0 0
Post image

LockBit got Cronos’d. BlackCat caught a DOJ wrench to the teeth. Cl0p is still hanging around the enterprise software aisle like it owns the place. So… is it really next, or are we just recycling takedown fan fiction? 🧨👀📉

Read: blog.alphahunt.io/forecast-upd...

#AlphaHunt #Ransomware #ThreatIntel

0 0 1 0
Post image

Public permit data is now phishing fuel. 

Attackers are impersonating local US officials to demand fake fees. 

Learn more: fablesecurity.com/resources/bl...

#Cybersecurity #Phishing #Fraud #ThreatIntel #HumanRisk

0 0 0 0
Post image

Not every breach headline needs an all-staff alert.

The Stryker incident is a good reminder to brief with facts, not fear… because we don’t HAVE facts yet.

#Cybersecurity #ThreatIntel #SecurityAwareness #HumanRisk

fablesecurity.com/resources/bl...

0 0 0 0
Economics of Cybercrime-as-a-Service

~Withsecure~
CaaS evolves with IABs selling live session tokens, AI-driven malware like LAMEHUG, and a shift toward data exfiltration.
-
IOCs: LAMEHUG
-
#CaaS #Malware #ThreatIntel

0 0 0 0
Storm-2561 Fake VPN Campaign

~Microsoft~
Storm-2561 uses SEO poisoning to push fake VPN clients, deploying Hyrax malware to steal credentials.
-
IOCs: 194. 76. 226. 93, vpn-fortinet. com, ivanti-vpn. org
-
#Phishing #Storm2561 #ThreatIntel

1 0 0 0
Post image

Iran-Linked Hackers Hit Albania Parliament
Read More: buff.ly/EAyswwn

#AlbaniaCyber #HomelandJustice #IranCyber #GovernmentBreach #DataWiper #GeopoliticalCyber #ParliamentHack #ThreatIntel

1 0 0 0

Pro-Iran hackers reportedly disrupted global systems at medical device giant Stryker, impacting its environment and thousands of employees. Reminder that geopolitical tensions increasingly play out inside your networks.

www.cnn.com/2026/03/11/p...

#CyberSecurity #ThreatIntel

0 0 0 0