Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
ClickFix Surge: Potemkin, TELEPUZ, and OkoBot Credential Theft Campaigns — OTX Pulse Analysis
Threat Summary Recent OTX pulses reveal a significant convergence in adversary tactics, specifically the widespread adoption of "ClickFix" s...
OkoBot, MacSync Stealer & UNC6508: Multi-Vector Credential Harvesting Campaigns — Enterprise Detection Pack
OkoBot, MacSync Stealer & UNC6508: Multi-Vector Credential Harvesting Campaigns — Enterprise Detection Pack Threat Summary The OTX pulses fr...
OkoBot, LummaC2 & O-UNC-038: Credential Harvesting & Infostealer Surge — OTX Analysis
Threat Summary Recent OTX pulses indicate a converged threat landscape focused on credential theft and initial access via diverse vectors. A...
Jalisco Toolkit, Miasma v3 & TuxBot Botnet: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Recent OTX pulses indicate a convergence of sophisticated supply chain compromises, AI-enhanced phishing campaigns, and modul...
Miasma Infostealer & AsyncAPI Supply Chain Compromise: GitHub Actions 'Pwn Request' Analysis
Miasma Infostealer & AsyncAPI Supply Chain Compromise: GitHub Actions 'Pwn Request' Analysis Threat Summary OTX Pulse data reveals a critica...
Tomorrowland 2026 Credential Harvesting Campaign: OTX Pulse Analysis — Phishing Infrastructure
Threat Summary The analyzed OTX pulse reveals a targeted social engineering campaign capitalizing on the high demand for Tomorrowland 2026 t...
jscrambler npm Supply Chain Compromise: Native Binary Infostealer Injection
Threat Summary OTX Pulse data indicates a sophisticated supply chain attack targeting the JavaScript ecosystem. The jscrambler npm package (...
UNC6240 (ShinyHunters): CVE-2026-35273 Oracle PeopleSoft Zero-Day Exploitation with MeshCentral C2 Infrastructure
Threat Summary OTX pulse data reveals a sophisticated campaign by UNC6240 (also known as ShinyHunters) targeting the education sector, speci...
Supply Chain Attack: Malicious Injective SDK npm Package v1.20.21 Exfiltrating Web3 Wallet Keys
Threat Summary Intelligence confirms an active supply chain attack targeting the blockchain development sector. An adversary successfully co...