T1003.001 - Lsass Memory is a mitre_attack tracked by ThreatCluster, appearing in 9 threat clusters built from 9 intelligence report mentions.
T1003.001 - Lsass Memory is a mitre_attack tracked across 9 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed March 11, 2026; most recent activity July 24, 2026.
Researchers found an exposed server on a Russian bulletproof hosting provider containing a complete ransomware toolkit linked to TheGentlemen affiliate. The toolkit includes various utilities for credential dumping,…
In June 2026, a new ransomware family named Spirals executed a double extortion attack against an IT services company in South Asia, completing the operation in under 24 hours. The attackers gained initial access by…
From late April to mid-June 2026, ACR Stealer, a malware-as-a-service operation, has ramped up its activity targeting enterprise users by stealing browser credentials, session tokens, and sensitive documents. The attack…
A new malware campaign is targeting macOS users with the AMOS-linked Atomic Stealer, exploiting fake software update pages and the built-in Script Editor application. Victims are tricked into executing malicious…
Cyber attackers are increasingly using Microsoft Teams to impersonate IT helpdesk staff, employing social engineering tactics to gain remote access to enterprise systems. This method, known as 'cross-tenant helpdesk…
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
A state-aligned cyber-espionage group from Asia has compromised the critical infrastructure of 37 countries, targeting government organizations and ministries related to trade, natural resources, border control, and…
Swiss rail manufacturer Stadler Rail confirmed a cyberattack by the Everest ransomware gang, which demanded a ransom of CHF 10 million ($12.3 million) after breaching a data exchange platform shared with a supplier. The…
Phillip Durachinsky, a North Royalton man accused of developing the Fruitfly spyware, has been ordered released from Mahoning County Jail after over nine years in pretrial detention. U.S. District Judge Solomon Oliver's…
T1003.001 - Lsass Memory is a mitre_attack tracked by ThreatCluster, appearing in 9 threat clusters built from 9 intelligence report mentions.
The most recent intelligence report mentioning T1003.001 - Lsass Memory on ThreatCluster is dated July 24, 2026. Activity was first observed March 11, 2026, giving a tracked span from then to July 24, 2026.
Across ThreatCluster reporting, T1003.001 - Lsass Memory most frequently co-occurs with Cl-unk-1068, FAMOUS CHOLLIMA, Lazarus Group, Unc6692, Data Breach, among 12 tracked related entities.
The most significant recent cluster is “Ransomware Toolkit Exposed: TheGentlemen Affiliate's Operations Uncovered” (3 articles · Updated March 30, 2026). T1003.001 - Lsass Memory appears across 9 threat clusters in total, listed above with sources.
T1003.001 - Lsass Memory appears in 9 intelligence report mentions across 9 deduplicated threat clusters, aggregated from 17,000+ monitored sources.