Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
TrickBot DNS Tunneling Variant: C2 Infrastructure & Persistence Analysis
TrickBot DNS Tunneling Variant: C2 Infrastructure & Persistence Analysis Threat Summary A distinct variant of the TrickBot banking trojan (S...
Dolphin X Stealer & Kontraktnik AI-Driven Infostealer Campaign — Enterprise Detection Pack
Threat Summary Recent intelligence from the AlienVault OTX community has uncovered the "Dolphin X" stealer, a sophisticated infostealer and ...
Dolphin X & Phantom Stealer v3.5: AI-Driven & Multi-Stage Infostealer Campaigns — Enterprise Detection Pack
Threat Summary Recent OTX pulses reveal two concurrent infostealer campaigns actively targeting enterprise credentials and cloud infrastruct...
Icarus Threat Group: Klue Supply Chain Attack & OAuth Token Theft — Detection Engineering
Threat Summary The Icarus threat group has launched a sophisticated supply chain attack targeting Klue, a market intelligence platform used ...
Icarus Supply Chain Attack via Klue: OAuth Abuse & Salesforce CRM Data Exfiltration — OTX Pulse Analysis
Threat Summary A critical supply chain attack has been identified targeting enterprise CRM environments. On June 11, 2026, the Icarus threat...
ValleyRAT & Lampion Campaigns: Multi-Vector VBS/HTML Threats Targeting Finance & Global WhatsApp Users
Intelligence Briefing: ValleyRAT & Lampion Multi-Stage Campaigns Threat Summary Recent OTX pulses indicate a surge in distinct but technical...
Project CAV3RN Framework & AiTM Phishing Campaign: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Current OTX pulse data reveals two distinct but sophisticated threat campaigns requiring immediate enterprise attention: 1. A...
EvilProxy AiTM Phishing Campaign: Global Procurement Lures & Session Hijacking — OTX Pulse Analysis
Threat Summary Recent intelligence from OTX exposes an active Adversary-in-the-Middle (AiTM) phishing campaign active since May 2026. This o...
Operation STANDOFF: GitHub Redirect C2 & Multi-Loader Campaign (Raccoon, RedLine, Glupteba)
Threat Summary Operation STANDOFF represents a complex, multi-operator intrusion campaign characterized by the abuse of legitimate infrastru...