Related Threat Clusters
-
Dark Caracal Unveils GoCaracal Malware for Cyber Espionage
The Lebanon-linked Dark Caracal threat group has introduced a new malware framework named GoCaracal, enhancing its cyberespionage capabilities. Discovered by Arctic Wolf during an intrusion investigation in Venezuela,…
13 articles · Updated August 26, 2026 -
GrayAlpha Threat Actor Uses MaskBat Loader for NetSupport RAT Deployments
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…
2 articles · Updated August 6, 2026 -
IT Support Impersonation via Microsoft Teams Leads to Domain Access
A human-operated intrusion campaign has been identified, exploiting Microsoft Teams for IT support impersonation. Threat actors socially engineer users into granting remote access, allowing them to deploy a malicious…
4 articles · Updated September 4, 2026 -
Critical Vulnerabilities Discovered in Mozilla Products
Multiple vulnerabilities have been identified in Mozilla products, with the most severe allowing for arbitrary code execution. Exploitation could enable attackers to install programs, access, modify, or delete data, and…
44 articles · Updated April 8, 2026 -
Cyber Adversaries Exploit File Enumeration and Data Collection Techniques
Recent reports detail the tactics employed by various cyber adversaries to enumerate files and directories on compromised systems. Adversaries utilize command shell utilities and custom tools to gather sensitive…
2 articles · Updated April 22, 2026 -
Chrome Vulnerabilities Allow Arbitrary Code Execution and System Crashes
Google has released a critical security update for Chrome, addressing two high-severity vulnerabilities that could allow arbitrary code execution and denial-of-service attacks. Users on Windows, macOS, and Linux are…
503 articles · Updated February 4, 2026
Recent Intelligence Reports
- MITRE ATT&CK technique T1566.003 — attack.mitre.org · September 4, 2026
- Dark Caracal Deploys New Go Malware With Ethereum — Securityaffairs.Co · August 27, 2026
- Dark Caracal's New Malware GoCaracal: From SVG Phishing to Ethereum Backup C2 — Ground.News · August 27, 2026
- Dark Caracal group enhances cyberespionage with new GoCaracal malware — Scworld · August 27, 2026
- T1189 — attack.mitre.org · August 7, 2026
- T1005 — attack.mitre.org · April 22, 2026
- T1083 — attack.mitre.org · April 22, 2026