Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
DRAGONFORCE Ransomware: 25 New Victims — Manufacturing & Services Targeted via RMM & Firewall Exploits
Executive Summary DRAGONFORCE has posted 25 new victims to its leak site in the last week, marking a significant acceleration in attack cade...
Mini Shai-Hulud Campaign: Detecting Typosquatted npm Supply Chain Attacks
Introduction The "Mini Shai-Hulud" campaign represents a significant escalation in supply chain tactics, specifically targeting the software...
LofyStealer, JINX-0164 & GHOST STADIUM: Multi-Vector Infostealer Campaigns Targeting Crypto & Gaming
LofyStealer, JINX-0164 & GHOST STADIUM: Multi-Vector Infostealer Campaigns Targeting Crypto & Gaming Threat Summary Recent OTX pulses indica...
CISA AA26-138A: Nx Console & GitHub Supply Chain Compromise — Detection and Incident Response
Introduction On May 28, 2026, CISA released Alert AA26-138A detailing a critical supply chain compromise affecting the Nx Console—a popular ...
TwizAdmin MaaS & JINX-0164 Supply Chain: OTX Pulse Analysis — Enterprise Detection Pack
Intelligence Briefing: TwizAdmin MaaS & JINX-0164 Operations Threat Summary Recent OTX pulses indicate a convergence of sophisticated, finan...
TwizAdmin, JINX-0164 & GHOST STADIUM: Multi-Vector Infostealer & Supply Chain Assaults — OTX Pulse Analysis
Threat Summary Recent OTX pulses reveal a convergence of sophisticated credential theft operations and supply chain compromises targeting hi...
Download Pumping: npm Supply Chain Deception — Detection and Hardening Guide
Introduction The trust model in the open-source ecosystem is broken. For years, developers have relied on download counts as a primary heuri...
Cross-Platform Infostealer Surge: Laravel Supply Chain & FIFA Phishing Intelligence
Threat Summary Recent OTX Pulse data reveals a convergence of high-impact credential theft campaigns utilizing diverse initial access vector...
Git Tag Poisoning Attack: Laravel-Lang Composer Packages Compromise
Introduction A sophisticated supply-chain attack has targeted the PHP ecosystem, specifically impacting applications utilizing the popular L...