ProcDump is a tool tracked across 6 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed November 26, 2025; most recent activity July 24, 2026.
From mid-2024 to early 2026, the Vietnam-aligned APT group OceanLotus has intensified its focus on domestic espionage, utilizing the SPECTRALVIPER backdoor in two major campaigns. The first campaign targeted a…
Xu Zewei, a 33-year-old Chinese national, was extradited from Italy to the United States on April 27, 2026, following his arrest in Milan on July 3, 2025. He is accused of participating in cyberattacks directed by the…
A routine brute-force alert on exposed RDP led the Huntress Tactical Response Team to uncover a complex ransomware-as-a-service ecosystem. The investigation revealed unusual credential-hunting behavior and a network of…
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
Swiss rail manufacturer Stadler Rail confirmed a cyberattack by the Everest ransomware gang, which demanded a ransom of CHF 10 million ($12.3 million) after breaching a data exchange platform shared with a supplier. The…
The ToddyCat advanced persistent threat group has updated its methods to target Outlook emails and Microsoft 365 access tokens. Kaspersky Labs reported that between late 2024 and early 2025, ToddyCat refined its toolkit…