Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Kimsuky 'Operation GitPower' Evolves: AI-Generated Decoys, GitHub PAT C2, and LNK-Based PowerShell Loaders — OTX Detection Pack
Kimsuky 'Operation GitPower' Evolves: AI-Generated Decoys, GitHub PAT C2, and LNK-Based PowerShell Loaders — OTX Detection Pack Threat Summa...
BengalSEO MayaBot SEO Poisoning Operation: OTX Pulse Analysis — Enterprise Detection Pack for Search Engine Poisoning & Tech Support Scam Infrastructure
BengalSEO MayaBot SEO Poisoning Operation: Enterprise Detection & Response Briefing Threat Summary OTX pulse data published 2026-09-07 detai...
Overlord RAT Fake Zoom macOS Chain + UNC6671 Vishing Extortion: OTX Pulse Detection Pack
Overlord RAT Fake Zoom macOS Chain + UNC6671 Vishing Extortion: OTX Pulse Detection Pack Threat Summary Two concurrent intrusion patterns st...
MacSync Stealer ClickFix Campaign: Fake CAPTCHA Terminal Commands Deploy Crypto-Draining Mach-O Payloads — OTX Pulse Analysis & Detection Pack
Threat Summary A live OTX pulse authored by AlienVault documents an active macOS stealer campaign attributed to the MacSync malware family, ...
TA416 Mustang Panda EU Espionage: PlugX/Korplug + TONESHELL/PUBLOAD OTX Detection Pack
Threat Summary Live OTX pulse data attributes renewed European government and diplomatic targeting to TA416, tracked as MUSTANG PANDA and as...
The Gentlemen Ransomware — TukTuk C2 v2.0 & GentleKiller BYOVD EDR Neutralization: OTX Detection Pack
The Gentlemen Ransomware — TukTuk C2 v2.0 & GentleKiller BYOVD EDR Neutralization: OTX Detection Pack Threat Summary A newly published OTX p...
Woodgnat 'Node.js Resurgence' Campaign: ClickFix → ModeloRAT + EtherHiding C2 — OTX Detection Engineering Pack
Threat Summary AlienVault OTX pulse "Node.js: Old Technique Makes a Comeback" (TLP:WHITE, modified 2026-09-03) documents a resurgence — obse...
Teams Helpdesk Impersonation + Node.js MSI Implant: Human-Operated Intrusion Chain — OTX Pulse Analysis & Detection Pack
Teams Helpdesk Impersonation + Node.js MSI Implant: Human-Operated Intrusion Chain — OTX Pulse Analysis & Detection Pack Threat Summary A ne...
Knight Office AiTM Phishing Kit: M365 Session Token Theft Campaign — OTX Pulse Analysis & Detection Pack
Threat Summary A single but high-fidelity OTX pulse from AlienVault (TLP:WHITE, modified 2026-09-02) details Knight Office, a newly document...