MenuPass is a apt_group tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed January 9, 2026; most recent activity July 1, 2026.
MenuPass is an APT group associated with the China-Nexus espionage ecosystem, described as conducting targeted espionage campaigns. Reports link MenuPass to operations against telecommunications operators in South Asia, highlighting its focus on critical infrastructure and intelligence collection. This underscores ongoing state-linked activity targeting regional telecom networks for strategic gain.
A new threat actor, UAT-7290, has been identified conducting cyberattacks on telecommunications infrastructure in South Asia. This operation is linked to a China-Nexus state-sponsored advanced persistent threat (APT)…
A significant cybersecurity campaign has emerged, exploiting the legitimate remote access tool ScreenConnect to deploy AsyncRAT malware. Attackers utilized spoofed websites and typosquatted domains, masquerading as…
On May 20, 2026, The Oncology Institute, Inc. was notified of unauthorized access to its systems by Kroll, a third-party vendor. The incident, confirmed in an SEC filing on May 22, 2026, involved patient data…
Recent reports detail the tactics employed by various cyber adversaries to enumerate files and directories on compromised systems. Adversaries utilize command shell utilities and custom tools to gather sensitive…