Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
EvilProxy AiTM Phishing Campaign: Global Procurement Lures & Session Hijacking — OTX Pulse Analysis
Threat Summary Recent intelligence from OTX exposes an active Adversary-in-the-Middle (AiTM) phishing campaign active since May 2026. This o...
Operation STANDOFF: GitHub Redirect C2 & Multi-Loader Campaign (Raccoon, RedLine, Glupteba)
Threat Summary Operation STANDOFF represents a complex, multi-operator intrusion campaign characterized by the abuse of legitimate infrastru...
Operation STANDOFF: Multi-Vector Infostealer Campaign Leveraging GitHub Redirects
Operation STANDOFF: Multi-Vector Infostealer Campaign Leveraging GitHub Redirects Threat Summary Recent OTX pulse data highlights an active,...
TELESHIM, MIXEDKEY, BINDCLOAK: Targeted Middle East Government Attack — OTX Pulse Analysis
Threat Summary In July 2026, AlienVault OTX detected a sophisticated, multi-stage malware campaign specifically targeting government entitie...
JADEPUFFER ENCFORGE Ransomware & Kimsuky BirdTroy/DriveTroy: OTX Pulse Analysis
JADEPUFFER ENCFORGE Ransomware & Kimsuky BirdTroy/DriveTroy: OTX Pulse Analysis Excerpt Alert: JADEPUFFER targets AI infra with ENCFORGE ran...
APT-C-36 AsyncRAT Toolkit Evolution & O-UNC-066 Entra Passkey Vishing: OTX Pulse Analysis
Threat Summary Recent OTX pulses highlight a dual-vector threat landscape targeting financial credentials and identity infrastructure. APT-C...
Blind Eagle AsyncRAT Campaigns & Entra Passkey Vishing: OTX Pulse Analysis
Threat Intelligence Briefing Threat Summary OTX Pulse data for 2026-07-20 highlights two distinct but high-impact credential theft campaigns...
Operation FortiBleed: Fortinet SSL VPN Credential Harvesting & GPU Cracking Infrastructure
Threat Summary The "FortiBleed" campaign represents a sophisticated, large-scale credential compromise operation specifically targeting inte...
Popa Android Proxyware SDK: Residential Proxy Network Abuse — OTX Pulse Analysis
Threat Summary Recent intelligence from AlienVault OTX highlights the active distribution of the "Popa" Android SDK, a proxyware tool design...