T1132 - Data Encoding is a mitre_attack tracked by ThreatCluster, appearing in 9 threat clusters built from 10 intelligence report mentions.
T1132 - Data Encoding is a mitre_attack tracked across 9 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed December 22, 2025; most recent activity July 21, 2026.
The Lazarus Group, a North Korea-linked cybercrime organization, has intensified its operations against financial and cryptocurrency sectors using a sophisticated fileless Remote Access Trojan (RAT) called RemotePE.…
In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular…
The Glassworm botnet, which has targeted software developers since early 2025, was taken down in a coordinated operation by CrowdStrike, Google, and the Shadowserver Foundation on May 26, 2026. This botnet utilized…
Since late March 2026, a large-scale phishing campaign has been observed utilizing disguised TrueType Font (.ttf) files to deliver Lua-based loaders and various malware, including Agent Tesla and Remcos. The attackers…
A malware campaign has infected approximately 1,980 WordPress websites by hiding command-and-control data within Steam Community profiles. Discovered by GoDaddy Security in July 2025, the malware uses invisible Unicode…
APT36, also known as Transparent Tribe, conducted a spear-phishing campaign targeting Indian government, strategic, and academic organizations. The campaign involved delivering malicious LNK files disguised as PDFs,…
Recent research by Cisco Talos reveals that attackers are increasingly leveraging native macOS features to execute code and move laterally within enterprise environments. With over 45% of organizations now using macOS,…
A sophisticated malware attack campaign has targeted manufacturing and government organizations in Europe and the Middle East, particularly in Italy, Finland, and Saudi Arabia. The campaign employs obfuscation…
A phishing campaign is utilizing LinkedIn private messages to deliver Remote Access Trojans (RATs) through a legitimate open-source penetration testing tool. Cybersecurity researchers from ReliaQuest have identified…
T1132 - Data Encoding is a mitre_attack tracked by ThreatCluster, appearing in 9 threat clusters built from 10 intelligence report mentions.
The most recent intelligence report mentioning T1132 - Data Encoding on ThreatCluster is dated July 21, 2026. Activity was first observed December 22, 2025, giving a tracked span from then to July 21, 2026.
Across ThreatCluster reporting, T1132 - Data Encoding most frequently co-occurs with Apt36, Lazarus Group, Silver Fox, Transparent Tribe, Unc6032, among 12 tracked related entities.
The most significant recent cluster is “Lazarus Group Escalates Attacks with Fileless RemotePE Trojan Targeting Crypto and Banks” (12 articles · Updated May 25, 2026). T1132 - Data Encoding appears across 9 threat clusters in total, listed above with sources.
T1132 - Data Encoding appears in 10 intelligence report mentions across 9 deduplicated threat clusters, aggregated from 17,000+ monitored sources.