Related Threat Clusters
-
Supply Chain Attack Compromises DAEMON Tools with Malicious Backdoor
A supply chain attack has compromised the DAEMON Tools software installers, which began on April 8, 2026. Kaspersky identified that these trojanized installers, signed with legitimate digital certificates, have affected…
26 articles · Updated May 5, 2026 -
APT-Q-27 Targets Web3 Support Staff with Fake Screenshot Backdoor Campaign
A campaign linked to the Chinese threat group APT-Q-27 is targeting Web3 customer support teams by deploying a multi-stage backdoor via fake screenshot links. The attack exploits live chat workflows, utilizing signed…
2 articles · Updated March 26, 2026 -
Microsoft Defender Misflags DigiCert Certificates as Malware, Causing Widespread Alerts
Microsoft Defender has erroneously flagged legitimate DigiCert root certificates as Trojan:Win32/Cerdigent.A!dha due to a faulty signature update released on April 30, 2026. This has led to widespread false-positive…
14 articles · Updated May 3, 2026 -
APT-Q-27 Targets Corporate Networks with Stealthy Attacks
APT-Q-27 has initiated stealthy attacks on corporate networks, exploiting security weaknesses to evade detection. The attackers utilized a file named updat.log, designed to carry encrypted payloads, indicating a…
3 articles · Updated February 6, 2026
Recent Intelligence Reports
- Risky Bulletin: Extremely targeted supply chain attack hits DAEMON Tools — News.Risky.Biz · May 6, 2026
- Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dha — Bleepingcomputer · May 3, 2026
- Fake Screenshot Lures Used to Infect Web3 Support Staff With Multi — Cybersecuritynews · March 26, 2026
- APT-Q-27 Exploits Weaknesses In Corporate Security To Launch Silent, Undetected Attacks — Cyberpress · February 6, 2026
- APT-Q-27 Launches Stealthy Attacks on Corporate Networks, Evades Detection — Itsecuritynews.Info · February 6, 2026
- APT-Q-27 Launches Stealthy Attacks on Corporate Networks, Evades Detection — Gbhackers · February 6, 2026