Related Threat Clusters
-
Iranian APT MuddyWater Uses Chaos Ransomware as a False Flag for Espionage
In early 2026, the Iranian APT group MuddyWater, affiliated with the Ministry of Intelligence and Security, executed a sophisticated cyber operation disguised as a Chaos ransomware attack. Utilizing social engineering…
17 articles · Updated May 7, 2026 -
Smoke#Screen Campaign Uses Fake Updates to Install Remote Access Tool
The Smoke#Screen campaign exploits social engineering tactics to install the legitimate ScreenConnect RMM tool on compromised systems, providing attackers with remote access. Targeting both Windows and macOS, the…
8 articles · Updated August 4, 2026 -
Microsoft Teams Vishing Campaign Deploys GoGRPC Backdoor
A vishing campaign utilizing Microsoft Teams has been identified, targeting organizations through fake IT support calls. Attackers persuade victims to open Quick Assist links, enabling remote access to systems. The…
4 articles · Updated July 28, 2026 -
Vishing Campaigns Target Organizations via Microsoft Teams and New Operator Console
A vishing campaign, tracked as STAC4749, targeted North American organizations from February to June 2026, using Microsoft Teams to impersonate IT personnel and gain remote access. Attackers deployed a modular toolset,…
9 articles · Updated July 29, 2026 -
Ransomware Fuels Surge in Global Cyberattacks
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
1880 articles · Updated February 12, 2026 -
PDFSider Malware Targets Fortune 100 Finance Firm with Covert Backdoor Access
A new malware strain named PDFSider has been deployed on the network of a Fortune 100 company in the finance sector. The attackers utilized social engineering tactics to gain remote access and installed an encrypted…
2 articles · Updated January 19, 2026
Recent Intelligence Reports
- 826591 — www.cybersecuritydive.com · August 5, 2026
- New Chaos Ransomware — blog.talosintelligence.com · July 29, 2026
- Chaos in Teams vishing — Sophos · July 28, 2026
- Helpdesk Hijackers: Teams Vishing, Quick Assist, and GoGRPC Backdoor - Zscaler, Inc. — Zscaler · July 28, 2026
- Tr Muddying Tracks State Sponsored Shadow Behind Chaos Ransomware — www.rapid7.com · May 11, 2026
- MuddyWater hackers use Chaos ransomware as a decoy in attacks — Bleepingcomputer · May 6, 2026
- MuddyWater hackers use Chaos ransomware as a decoy in attacks — Bleepingcomputer · May 6, 2026
- New PDFSider Windows malware deployed on Fortune 100 firm's network — Bleepingcomputer · January 19, 2026