Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
QILIN Ransomware Gang: 18 New Victims Posted — Critical Infrastructure & Tech Sector Targeting
QILIN Ransomware Gang: 18 New Victims Posted — Critical Infrastructure & Tech Sector Targeting Date: 2026-05-23 Analyst: Principal Security ...
QILIN Ransomware Campaign Targets Construction & Tech: 20 New Victims Identified
QILIN Ransomware Campaign Targets Construction & Tech: 20 New Victims Identified Date: 2026-05-22 Analyst: Security Arsenal Intelligence Uni...
Mini Shai Hulud: @antv npm Supply Chain Attack & CI/CD Credential Theft
Introduction The software supply chain has suffered a significant blow with the discovery of a malicious campaign targeting the @antv npm ec...
The Gentlemen RaaS, Webworm APT, and AI SEO Poisoning: OTX Pulse Analysis — Enterprise Detection Pack
Threat Intelligence Brief: OTX Pulse Synthesis Threat Summary Current OTX pulse data indicates a convergence of high-fidelity threats target...
TanStack npm Supply Chain Attack: Detecting Nx Console Compromise & GitHub Token Theft
Introduction GitHub has confirmed that the breach of 3,800 internal source code repositories was the direct result of a sophisticated supply...
QILIN Ransomware: Construction & Manufacturing Under Siege — ConnectWise & Exchange Exploitation Surge
QILIN Ransomware: Construction & Manufacturing Under Siege Date: 2026-05-22 Analyst: Security Arsenal Threat Intelligence Unit Source: Ranso...
GitHub Breach via Malicious Nx Console VS Code Extension: Detection & Hardening
GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension: Detection and Remediation Introduction On Wednesday, GitHu...
QILIN Ransomware Gang: 23 New Victims Posted — Construction & Manufacturing Sector Targeting Analysis & Detection Rules
QILIN Ransomware Gang: 23 New Victims Posted — Construction & Manufacturing Sector Targeting Analysis & Detection Rules Threat Actor Profile...
Fox Tempest MSaaS Takedown: Detecting Abuse of Microsoft Artifact Signing
On Tuesday, Microsoft announced the disruption of a sophisticated Malicious Software-Signing-as-a-Service (MSaaS) operation orchestrated by ...