Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Cavern (Cav3rn) C2: Detecting DNS Tunneling and Google Apps Script Abuse by Iranian APT Operators
Cavern C2 Blends Into Legitimate Traffic — and Your Perimeter Won't Notice Kaspersky's ongoing tracking of the Cavern (aka Cav3rn) command-a...
Project CAV3RN Espionage Framework: Google Apps Script C2 + DNS Channel Rotation Targeting Israel — OTX Detection Pack
Threat Summary OTX pulse data confirms the continued evolution of Project CAV3RN, a modular espionage framework conducting targeted operatio...
TencShell/Vshell AI-Assisted Intrusions + Project CAV3RN Google Apps Script C2: OTX Pulse Analysis — Enterprise Detection Pack
TencShell/Vshell AI-Assisted Intrusions + Project CAV3RN Google Apps Script C2: OTX Pulse Analysis — Enterprise Detection Pack Two live OTX ...
LabubaRAT Rust Implant + Multi-Stage Phishing Relay Infrastructure: OTX Pulse Analysis — Enterprise Detection Pack
LabubaRAT Rust Implant + Multi-Stage Phishing Relay Infrastructure: OTX Pulse Analysis — Enterprise Detection Pack Two fresh pulses from Ali...
TrickBot DNS Tunneling Variant: C2 Infrastructure & Persistence Analysis
TrickBot DNS Tunneling Variant: C2 Infrastructure & Persistence Analysis Threat Summary A distinct variant of the TrickBot banking trojan (S...
Defend Against DNS-Based ClickFix: Abusing Nslookup for Payload Staging
Defend Against DNS-Based ClickFix: Abusing Nslookup for Payload Staging Social engineering remains the most effective initial access vector ...