Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Supply Chain Poisoning & Multi-Stage Infostealers: TwizAdmin, TeamPCP & Trigona Analysis
Threat Summary The current threat landscape is defined by a aggressive convergence of supply chain compromises and sophisticated credential ...
QILIN Ransomware: Surge in Manufacturing & Financial Services Attacks — Detection Rules for CVE-2023-21529 & SmarterMail Exploits
QILIN Ransomware Gang: 15 New Victims Posted — Critical Infrastructure Targeting & Detection Engineering Threat Actor Profile — QILIN Aliase...
macOS LotL Abuse & Supply Chain Compromise: ThreatsDay Defense Guide
Introduction The ThreatsDay Bulletin this week paints a stark picture of the modern threat landscape: a $290M DeFi heist, rampant abuse of m...
UK Biobank Data Breach: Detecting Medical Data Exfiltration and Third-Party Risks
UK Biobank Data Breach: Detecting Medical Data Exfiltration and Third-Party Risks Introduction A UK government Minister has confirmed a dist...
Windows Update Restart Controls: Operational Continuity and Configuration Guide
Introduction Microsoft is rolling out significant improvements to the Windows Update mechanism aimed at reducing disruption caused by forced...
Threat Intel: Detecting 'fast16' – Pre-Stuxnet Lua Malware Targeting Engineering Applications
Threat Intel: Detecting 'fast16' – Pre-Stuxnet Lua Malware Targeting Engineering Applications SentinelOne uncovers 'fast16', a 2005-era Lua ...
TwizAdmin Infostealer, DinDoor Backdoor, and ClickFix Attacks: Multi-Platform Threat Analysis
Threat Summary Recent OTX pulses indicate a surge in sophisticated, multi-platform threats targeting enterprise environments. Three distinct...
TwizAdmin & ClickFix Campaigns: Infostealer & Supply Chain Attacks — OTX Pulse Analysis
Threat Summary The latest OTX pulses indicate a convergence of high-risk credential theft activity and ransomware preparation. We are tracki...
QILIN Ransomware Gang: Global Campaign Targets Manufacturing & Finance — Exchange & Firewall Exploits Detected
Threat Actor Profile — QILIN Aliases: Agenda (formerly). Operational Model: RaaS (Ransomware-as-a-Service). The Qilin group operates a highl...