Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
NagaPocker Mobile Credential Theft Campaign: QR Code Phishing Attacks Targeting Ukraine
NagaPocker Mobile Credential Theft Campaign: QR Code Phishing Attacks Targeting Ukraine Threat Summary This OTX pulse reveals a sophisticate...
BOOBA PROJECT: Critical Infrastructure Targeting & Check Point Firewall Exploitation Analysis
Threat Actor Profile — BOOBA PROJECT Aliases: None publicly confirmed / Independent operation. Model: Private RaaS or closed-group operation...
AI Agent LLMjacking & QR Code Phishing: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Recent intelligence from the AlienVault OTX community highlights two distinct yet concerning trends in credential theft: the ...
M3RX Ransomware Gang: 3 New Victims Posted — Manufacturing & Professional Services Under Siege
Threat Actor Profile — M3RX Aliases & Affiliation: M3RX operates as a relatively new but aggressive Ransomware-as-a-Service (RaaS) entity. W...
GoGRPC Backdoor & Teams Vishing Campaign: Helpdesk Hijacker IAB Tactics — OTX Pulse Analysis
Threat Summary The latest OTX pulse highlights an active Initial Access Broker (IAB) campaign, tracked since January 2026, that employs a so...
Mirage Kitten Campaign: NightLedger Backdoor & ArcBridge Toolset Analysis
Threat Summary A new wave of espionage activity has been detected attributed to the advanced persistent threat (APT) group Mirage Kitten (al...
CastleLoader, NeedleStealer & AI MCP Exploits: Multi-Vector Credential Theft — OTX Pulse Analysis
Threat Summary Recent OTX pulses indicate a convergence of sophisticated infostealer campaigns and emerging exploit vectors targeting AI inf...
SAFEPAY Ransomware: DACH Region Blitz — Retail & Education Sectors Under Siege via Critical VPN Flaws
Threat Actor Profile — SAFEPAY Aliases & Attribution: SAFEPAY is a relatively new but aggressive Ransomware-as-a-Service (RaaS) operation th...
CISA KEV Flash: 8 Critical CVEs Under Active Attack — Fortinet, Check Point & Microsoft Targeted
Active Exploitation Intelligence CISA has added 8 vulnerabilities to the Known Exploited Vulnerabilities (KEV) catalog between July 21 and J...