Threat Advisories
Detailed information and guidance on threats and vulnerabilities, focusing on its characteristics, impact, and remediation steps, released daily and weekly to provide actionable intelligence and aid in rapid response and mitigation efforts.
Strengthen Your Defenses With the Latest Intelligence
Red | Vulnerability Report
Apache OFBiz Flaw Enables Attackers to Execute Remote Code
A pre-authentication remote code execution vulnerability, CVE-2024-38856, has been disclosed in Apache August 6, 2024 Amber | Attack Report
Bloody Wolf Targets Kazakhstan with STRRAT Malware
The Bloody Wolf threat group has been targeting organizations in Kazakhstan since August 6, 2024 Amber | Attack Report
Car Sale Scam: APT28 Delivers Malware Instead of the Vehicle
The Russian threat actor APT28, also known as, Fancy Bear, has been August 5, 2024 Amber | Attack Report
DEV#POPPER the North Korean Cyber Threat Hiding in Job Offers
The DEV#POPPER campaign, targeting software developers, has been identified with malware variants August 2, 2024 Red | Attack Report
Mint Stealer: A New Python-Based Information Stealer
The info stealer market is continuously evolving, with a recent addition being August 2, 2024 Amber | Attack Report
XDSpy Expands Arsenal with New Tool: XDSpy.DSDownloader
A phishing campaign orchestrated by the obscure cyber espionage group XDSpy has August 2, 2024 Red | Attack Report
Stargazers Ghost Network: 3,000 Rogue GitHub Accounts Fuel Malware Spread
Stargazer Goblin, a highly sophisticated cybercriminal group, operates the ‘Stargazers Ghost Network’ August 1, 2024 Red | Actor Report
Andariel: North Korea’s Evolving Cyber Threat Landscape
Andariel, a North Korean cyber espionage group active since 2009, is known August 1, 2024