Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Antino Backdoor Abuses Outlook and OneDrive for C2: Detection and Hardening Guide for China-Nexus Espionage Campaign
Introduction Cisco Talos has disclosed a previously undocumented backdoor, tracked as Antino, deployed in a targeted espionage campaign agai...
NeedyMantis China-Based Malware Framework: Detection and Remediation Guide for Telcos, Universities, Healthcare and Government
NeedyMantis: Treat This as an Access-Retention Campaign, Not a One-Off Malware Event Microsoft has attributed targeted intrusions to a China...
UAT-11587 'Antino' Rust Backdoor Campaign: China-Nexus APT Targeting Asian Governments via M365 C2 — OTX Detection Pack
Threat Summary AlienVault OTX pulse data, sourced from Cisco Talos research, exposes an active China-nexus intrusion cluster tracked as UAT-...
Mythic C2 Infrastructure Exposure + Operation QUICSILVER (QUICAgent): OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Two pulses published to AlienVault OTX on 2026-09-16 collectively paint a picture of how blurred the line has become between ...
C2Looper Rust Backdoor, Exposed Mythic C2 Fleet & Operation QUICSILVER: OTX Pulse Detection Pack — GitHub C2 Abuse, ClickFix Chains & QUIC Backdoors
Threat Summary Three AlienVault OTX pulses published 2026-09-16 collectively paint a picture of the modern intrusion ecosystem: commoditized...
China-Nexus Actors Targeted DoJ, NASA, Federal Reserve, and DoE: What the DoJ Correction Means for Defenders
Introduction On Friday, the U.S. Department of Justice issued a correction to a prior statement: several U.S. government agencies — includin...
Operation QUICSILVER: China-Nexus VHD-Delivered Go Backdoor and FTP Dead Drop RATs — Defender's Detection and Response Guide
Introduction The latest Security Affairs malicious software newsletter (Round 112) aggregates three research threads that deserve immediate ...
QScan + Fast Labyrinth 'Quartermaster' Infrastructure: China-Nexus Cyber Espionage Enablement Network — OTX Pulse Analysis & Detection Pack
Threat Summary A single but high-signal OTX pulse published by AlienVault reveals the inner workings of a China-nexus cyber espionage infras...
ValleyRAT Overwolf Sideload + Operation QUICSILVER + ASTERIX Crypto Fraud Pipeline: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Three concurrent OTX pulses reveal a threat landscape dominated by trusted-binary abuse and social engineering at industrial ...