Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Operation Poisson: Havoc C2 & Python Keylogger Targeting French Automotive Sector — OTX Pulse Analysis
Threat Summary The 'Operation Poisson' campaign represents a targeted credential theft operation conducted by a French-speaking threat actor...
BLACKOUT Ransomware: Global Tech Sector Assault & Critical Infrastructure CVEs
Executive Summary Security Arsenal is tracking a resurgence in activity from the BLACKOUT ransomware operation. As of July 19, 2026, the gro...
AKIRA Ransomware Gang: US Infrastructure Under Siege — CVE Exploitation & Detection Engineering
AKIRA Ransomware Gang: US Infrastructure Under Siege — CVE Exploitation & Detection Engineering Date: 2026-07-18 Source: Ransomware.live / D...
Kratos PhaaS Microsoft 365 Credential Theft: OTX Pulse Analysis — Enterprise Detection Pack
Kratos PhaaS Campaign Targets Microsoft 365: US and EU Under Siege Threat Summary Recent intelligence from the AlienVault OTX community indi...
NOVA Ransomware Gang: Global Tech Sector Surge & Critical CVE Exploitation
Threat Actor Profile — NOVA NOVA is a rapidly emerging ransomware operation operating with a high degree of agility. While the group maintai...
NetSupport RMM via Python Side-Loading: MediaFire ZIP Attack Chain Analysis
Threat Intelligence Briefing: NetSupport RMM Campaign Threat Summary Recent intelligence from OTX pulses reveals an active campaign utilizin...
OkoBot Framework with TookPS + Rilide Injector: Multi-Stage Cryptojacking Infrastructure — OTX Pulse Analysis
OkoBot Framework with TookPS + Rilide Injector: Multi-Stage Cryptojacking Infrastructure — OTX Pulse Analysis Threat Summary The OkoBot fram...
NadMesh Cloud Botnet, Kratos PhaaS & Remcos RAT: OTX Pulse Analysis — Enterprise Credential Theft Surge
Threat Summary Recent OTX pulses indicate a coordinated surge in credential harvesting campaigns targeting cloud infrastructure, financial s...
INCRANSOM Gang: Surge in Agriculture & Manufacturing Targets — Detection Engineering & IOCs
Threat Actor Profile — INCRANSOM Operational Model: INCRANSOM operates as a closed-group operation rather than a traditional RaaS affiliate ...