https://github.com/marktsec
www.greynoise.io/blog/palo-al...
www.greynoise.io/blog/palo-al...
• Updated Edge module to extract the new v20 key
• Expanded crypto-wallet targeting (incl. LTC/Dash Core, Trezor Suite, MEW Desktop, AtomicDEX & more)
• Improved C2 marker parsing + performance fixes
#ThreatIntel #InfoSec
• Updated Edge module to extract the new v20 key
• Expanded crypto-wallet targeting (incl. LTC/Dash Core, Trezor Suite, MEW Desktop, AtomicDEX & more)
• Improved C2 marker parsing + performance fixes
#ThreatIntel #InfoSec
ipurple.team/2025/11/18/l...
ipurple.team/2025/11/18/l...
www.cybereason.com/blog/the-gen...
www.cybereason.com/blog/the-gen...
Denis Obrezko is allegedly part of the notorious group Void Blizzard
edition.cnn.com/2025/11/15/a...
Denis Obrezko is allegedly part of the notorious group Void Blizzard
edition.cnn.com/2025/11/15/a...
blog.nviso.eu/2025/11/13/c...
blog.nviso.eu/2025/11/13/c...
github.com/watchtowrlab...
github.com/watchtowrlab...
www.bleepingcomputer.com/news/securit...
www.bleepingcomputer.com/news/securit...
intelinsights.substack.com/p/intel-drop...
intelinsights.substack.com/p/intel-drop...
blog.sekoia.io/phishing-cam...
blog.sekoia.io/phishing-cam...
www.reuters.com/investigatio...
www.reuters.com/investigatio...
theravenfile.com/2025/11/04/c...
theravenfile.com/2025/11/04/c...
krebsonsecurity.com/2025/11/alle...
krebsonsecurity.com/2025/11/alle...
deepstrike.io/blog/kuberne...
deepstrike.io/blog/kuberne...
Advertised on underground forums with:
• Anti-kill, watchdog, persistence & injection modules
• AV evasion claims (C + ASM)
• Targets Windows 8.1 → Server 2025
• Seller offering only 5 “licenses”
#ThreatIntel #Cryptomining #InfoSec
Advertised on underground forums with:
• Anti-kill, watchdog, persistence & injection modules
• AV evasion claims (C + ASM)
• Targets Windows 8.1 → Server 2025
• Seller offering only 5 “licenses”
#ThreatIntel #Cryptomining #InfoSec
1. Girls phone voice callers to call CEOs/AI voice-spoofers.
2. Social-media “black ad” operators.
3. Offering a paid “Premium” panel with auto-activation via invoice.
#Nova #Ransomware #ThreatIntel #InfoSec
1. Girls phone voice callers to call CEOs/AI voice-spoofers.
2. Social-media “black ad” operators.
3. Offering a paid “Premium” panel with auto-activation via invoice.
#Nova #Ransomware #ThreatIntel #InfoSec
www.proofpoint.com/us/blog/thre...
www.proofpoint.com/us/blog/thre...
krebsonsecurity.com/2025/10/aisu...
krebsonsecurity.com/2025/10/aisu...
www.iranintl.com/202510230171
blog.narimangharib.com/posts/2025%2...
Public searchable database: ravin-academy.com
www.iranintl.com/202510230171
blog.narimangharib.com/posts/2025%2...
Public searchable database: ravin-academy.com