Related Threat Clusters
-
Iranian APT MuddyWater Uses Chaos Ransomware as a False Flag for Espionage
In early 2026, the Iranian APT group MuddyWater, affiliated with the Ministry of Intelligence and Security, executed a sophisticated cyber operation disguised as a Chaos ransomware attack. Utilizing social engineering…
17 articles · Updated May 7, 2026 -
Iranian APT Groups Target Israeli Organizations with Modular C2 Frameworks
In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular…
10 articles · Updated July 6, 2026 -
US Designates Brazil's PCC and CV as Terrorist Organizations, Heightening Compliance Risks
On May 28, 2026, the US Department of State designated Brazil's PCC and CV as Specially Designated Global Terrorists (SDGTs) and announced their Foreign Terrorist Organization (FTO) status effective June 5, 2026. This…
2 articles · Updated June 18, 2026 -
Global Takedown of Tycoon2FA Phishing Service Disrupts Major Cybercrime Operation
A coordinated international effort led by Microsoft and Europol has dismantled Tycoon2FA, a significant phishing-as-a-service platform responsible for bypassing multi-factor authentication and enabling large-scale…
59 articles · Updated March 5, 2026 -
Ransomware Threats Disrupt UK Construction Sector Operations
The UK construction industry is facing a surge in ransomware attacks, causing an average of 24 days of operational downtime per incident. In 2025, the sector saw a 410% increase in Internet of Things (IoT) malware…
2 articles · Updated August 20, 2026 -
Munich Re Warns of Escalating Cyber Threats Driven by AI and Geopolitical Tensions
Munich Re has reported that cyberattacks are becoming increasingly sophisticated and costly, driven by advancements in artificial intelligence. The reinsurer noted that cybercrime could soon rival the world's largest…
3 articles · Updated March 25, 2026 -
Foxconn Cyberattack: Nitrogen Ransomware Claims 8TB of Data Theft
Foxconn confirmed a cyberattack on its North American facilities, attributed to the Nitrogen ransomware group, which claims to have stolen 8 terabytes of data, including over 11 million files. The attack reportedly…
54 articles · Updated May 12, 2026 -
Smoke#Screen Campaign Uses Fake Updates to Install Remote Access Tool
The Smoke#Screen campaign exploits social engineering tactics to install the legitimate ScreenConnect RMM tool on compromised systems, providing attackers with remote access. Targeting both Windows and macOS, the…
8 articles · Updated August 4, 2026 -
Revival of Black Basta Tactics: Targeting Executives with Automated Phishing
A resurgence of cyber attacks has been linked to former affiliates of the defunct Black Basta ransomware group, focusing on senior executives across various sectors. Recent reports indicate that from March 1 to April 1,…
10 articles · Updated April 14, 2026 -
The Gentlemen Ransomware Group Expands Operations with New Tools
Kaspersky's research reveals that The Gentlemen ransomware group, active since mid-2025, is expanding its operations with new custom-built malware tools. This group targets various industries, including healthcare and…
3 articles · Updated July 1, 2026
Recent Intelligence Reports
- Williams Brothers Construction Company Data Breach — Classaction · August 20, 2026
- Cyber Threats Putting Uk Construction Projects At Risk Insurer Warns 574224 — www.insurancebusinessmag.com · August 20, 2026
- Cyber exposure in construction — Howdengroup · August 20, 2026
- U.S., South Korean government agencies caution to be on lookout for Gunra ransomware gang — Cyberscoop · August 10, 2026
- Unmasking The Gentlemen Ransomware — www.trendmicro.com · August 8, 2026
- 826591 — www.cybersecuritydive.com · August 5, 2026
- Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware — Gbhackers · July 30, 2026
- Between a Rock and a Hard Place | Agg — Agg-Net · July 20, 2026