ProcDump - Tool

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
November 26, 2025
Last Seen
July 24, 2026

ProcDump is a tool tracked across 6 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed November 26, 2025; most recent activity July 24, 2026.

Related Threat Clusters

  • OceanLotus Shifts Focus to Domestic Espionage with SPECTRALVIPER Attacks

    From mid-2024 to early 2026, the Vietnam-aligned APT group OceanLotus has intensified its focus on domestic espionage, utilizing the SPECTRALVIPER backdoor in two major campaigns. The first campaign targeted a…

    17 articles · Updated June 11, 2026
  • Italy Extradites Chinese Hacker Xu Zewei to the U.S. for COVID-19 Research Theft

    Xu Zewei, a 33-year-old Chinese national, was extradited from Italy to the United States on April 27, 2026, following his arrest in Milan on July 3, 2025. He is accused of participating in cyberattacks directed by the…

    51 articles · Updated April 26, 2026
  • Brute Force Attack Reveals Ransomware Infrastructure Network

    A routine brute-force alert on exposed RDP led the Huntress Tactical Response Team to uncover a complex ransomware-as-a-service ecosystem. The investigation revealed unusual credential-hunting behavior and a network of…

    1 article · Updated March 4, 2026
  • Ransomware Fuels Surge in Global Cyberattacks

    As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…

    1553 articles · Updated February 12, 2026
  • Stadler Rail Rejects $12.3M Ransom Demand from Everest Ransomware Gang

    Swiss rail manufacturer Stadler Rail confirmed a cyberattack by the Everest ransomware gang, which demanded a ransom of CHF 10 million ($12.3 million) after breaching a data exchange platform shared with a supplier. The…

    6 articles · Updated July 22, 2026
  • ToddyCat APT Enhances Techniques for Email Compromise

    The ToddyCat advanced persistent threat group has updated its methods to target Outlook emails and Microsoft 365 access tokens. Kaspersky Labs reported that between late 2024 and early 2025, ToddyCat refined its toolkit…

    2 articles · Updated November 26, 2025

Recent Intelligence Reports

  • Everest Ransomware — www.provendata.com · July 24, 2026
  • Elastic Security Labs: SPECTRALVIPER — www.elastic.co · June 11, 2026
  • G0125 — attack.mitre.org · April 27, 2026
  • How a Brute Force Attack Unmasked a Ransomware Infrastructure Network — Bleepingcomputer · March 4, 2026
  • ToddyCat APT evolves to target Outlook archives and Microsoft 365 tokens — Csoonline · November 26, 2025

CVSS v3.1 Breakdown