Related Threat Clusters
-
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
16 articles · Updated July 22, 2026 -
Widespread Abuse of ScreenConnect to Deploy AsyncRAT via Fake Installers
A significant cybersecurity campaign has emerged, exploiting the legitimate remote access tool ScreenConnect to deploy AsyncRAT malware. Attackers utilized spoofed websites and typosquatted domains, masquerading as…
7 articles · Updated July 1, 2026 -
GrayAlpha Threat Actor Uses MaskBat Loader for NetSupport RAT Deployments
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…
2 articles · Updated August 6, 2026 -
Ransomware Fuels Surge in Global Cyberattacks
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
1910 articles · Updated February 12, 2026 -
Makop Ransomware Enhancements Target Indian Organizations
The Makop ransomware, a variant of the Phobos family, has been updated to include GuLoader malware for enhanced payload delivery. Recent attacks have primarily targeted Indian businesses, utilizing Remote Desktop…
4 articles · Updated December 11, 2025 -
New .NET Malware Conceals Lokibot in Image Files to Evade Detection
A new strain of .NET malware has been identified that embeds Lokibot malware within PNG and BMP files, allowing it to bypass traditional detection methods. This sophisticated technique poses risks to users who may…
3 articles · Updated November 19, 2025 -
New .NET Malware Hides Lokibot in PNG/BMP Files to Evade Detection
A new variant of .NET malware has been identified, utilizing steganography to conceal Lokibot malware within PNG and BMP files. This advanced evasion technique allows the malware to bypass detection mechanisms, posing…
3 articles · Updated November 19, 2025
Recent Intelligence Reports
- T1027 — attack.mitre.org · August 7, 2026
- T1620 — attack.mitre.org · July 23, 2026
- 001 — attack.mitre.org · July 23, 2026
- 012 — attack.mitre.org · July 1, 2026
- India Cyber Attacks Rise as INTERPOL Warns of Deepfake Fraud — Businessoutreach.In · June 17, 2026
- Makop ransomware: GuLoader and privilege escalation in attacks against Indian businesses — Acronis · December 8, 2025
- New .NET Malware Conceals Lokibot Inside PNG/BMP Files to Bypass Detection — Cyberpress · November 19, 2025
- New .NET Malware Hides Lokibot Malware within PNG/BMP Files to Evade Detection — Cybersecuritynews · November 19, 2025