Related Threat Clusters
-
DarkSword iOS Exploit Chain Targets Mobile Devices Globally
The Google Threat Intelligence Group has identified DarkSword, a full-chain iOS exploit affecting versions 18.4 to 18.7. This exploit leverages multiple zero-day vulnerabilities, including CVE-2025-31277 and…
2 articles · Updated July 11, 2026 -
Ripple Shares North Korean Threat Intelligence to Combat Evolving Cyber Attacks
On May 5, 2026, Ripple announced it will share internal threat intelligence regarding North Korean hackers with Crypto ISAC, aimed at enhancing security across the cryptocurrency industry. This initiative follows a…
19 articles · Updated May 5, 2026 -
Coruna and DarkSword iOS Exploit Kits Targeting Users Globally
The Coruna and DarkSword iOS exploit kits, initially limited to nation-state actors, are now being widely adopted by organized cybercriminals. iVerify has tracked around 17,000 domains associated with second-generation…
3 articles · Updated August 10, 2026 -
Global Takedown of Tycoon2FA Phishing Service Disrupts Major Cybercrime Operation
A coordinated international effort led by Microsoft and Europol has dismantled Tycoon2FA, a significant phishing-as-a-service platform responsible for bypassing multi-factor authentication and enabling large-scale…
59 articles · Updated March 5, 2026 -
FakeWallet Crypto Stealer Targets iOS Users via Phishing Apps
In March 2026, Kaspersky identified over twenty phishing applications in the Apple App Store that impersonate popular cryptocurrency wallets. These malicious apps redirect users to fraudulent web pages that mimic the…
7 articles · Updated April 20, 2026 -
Deepfake Scams Target Simcoe County Residents, Prompting Legislative Action
A surge of deepfake scams in Simcoe County has led to significant financial losses for residents, with some victims losing over $100,000. The scams involve AI-generated videos of public figures promoting fraudulent…
3 articles · Updated June 27, 2026 -
Deepfake Scams Target Australians Using AI Technology
Scammers in Australia are increasingly using AI-generated deepfake videos of celebrities and politicians, particularly Prime Minister Anthony Albanese, to promote fraudulent investment schemes. The Australian Securities…
13 articles · Updated August 16, 2026 -
2026 Smartphone Security Threats: Zero-Click Exploits and Banking Trojans Rise
In May 2026, a critical Android vulnerability (CVE-2026-0073) was disclosed, allowing remote device takeover without user interaction. This flaw, linked to the Android Debug Bridge, affects devices with ADB enabled,…
2 articles · Updated May 23, 2026 -
PCPJack Malware Targets TeamPCP Victims for Credential Theft
The newly discovered PCPJack malware framework is actively targeting cloud environments to steal credentials while removing remnants of the TeamPCP cybercrime group. This worm exploits exposed services such as Docker,…
11 articles · Updated May 7, 2026 -
Scattered Spider Reclassified as Decentralized Cybercrime Collective
Scattered Spider, a cybercrime entity linked to various high-profile attacks since 2022, has been reclassified as a decentralized collective rather than a unified group. Group-IB's analysis indicates that it consists of…
2 articles · Updated July 7, 2026
Recent Intelligence Reports
- Chrome Extension Malware Campaign Hits 19 Browser Add Ons — Coingabbar · August 29, 2026
- Crypto Scams 2026 — www.chainalysis.com · August 25, 2026
- Darksword — www.lookout.com · August 13, 2026
- Crypto Impersonation Scams Target Investors — Bitdefender · August 12, 2026
- ZachXBT: American female scammer...|BTC, ETH — Chaincatcher · August 10, 2026
- FBI: North Carolina man suspected of selling drugs on dark web tied to 2 local OD deaths — Local12 · July 27, 2026
- Connecting Scattered Spider — www.group-ib.com · July 8, 2026
- Insurance giant Aflac discloses data breach after subsidiary hack — Bleepingcomputer · June 30, 2026