Gunra ransomware, a ransomware-as-a-service derived from Conti code, has attacked at least 51 organizations globally, including hospitals and government agencies. The group exploits critical vulnerabilities in Fortinet…
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…