Category: Threat Intel Reports


  • Google takes down fake news sites, wire services run by Chinese influence operation

    ![Tablet news](https://cms.therecord.media/uploads/format_webp/small_Tablet_news_sites_72f7eb9a54.jpg?w=3840)Image: Karolina Grabowska via Pexels [Jonathan Greig](/author/jonathan-greig)November 22nd, 2024 Google takes down fake news sites, wire services run by…


  • Experts warn of Palo Alto firewall exploitation after 2,000 compromises spotted

    ![Palo Alto Networks firewall](https://cms.therecord.media/uploads/format_webp/small_palo_alto_networks_firewall_4fd38ae307.jpg?w=3840) [Jonathan Greig](/author/jonathan-greig)November 22nd, 2024 Experts warn of Palo Alto firewall exploitation after 2,000 compromises spotted===============================================================================Thousands of…


  • RSA Conference to invest $5 million in sandbox contest finalists

    ![RSA](https://cms.therecord.media/uploads/format_webp/small_rsa_conference_eabf620027.jpg?w=3840)Image: RSA Conference/Flickr [Jonathan Greig](/author/jonathan-greig)November 22nd, 2024 RSA Conference to invest $5 million in sandbox contest finalists================================================================The owner of the…


  • Unveiling WolfsBane: Gelsemium’s Linux counterpart to Gelsevirine

    ESET ResearchUnveiling WolfsBane: Gelsemium’s Linux counterpart to Gelsevirine=================================================================ESET researchers analyzed previously unknown Linux backdoors that are connected to known Windows…


  • ZoomIn: A Closer Look into the Malware Artifacts, Behaviors and Network Communications

    FrostyGoop, an operational technology (OT) malware, disrupted critical infrastructure in Ukraine in early 2024, affecting heating systems for over 600…


  • Life on a crooked RedLine: Analyzing the infamous infostealers backend

    This article provides an in-depth analysis of RedLine Stealer, a notorious information-stealing malware. The research focuses on previously undocumented backend…


  • Fake AI video generators infect Windows, macOS with infostealers

    Threat actors are using fake AI image and video generators to distribute Lumma Stealer and AMOS information-stealing malware on Windows…


  • [BLACKSUIT] – Ransomware Victim: hetrhedens[.]nl

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[BLACKSUIT-] — Ransomware Victim: hetrhedens-[.-]nl=====================================================[November 17, 2024](https://www.redpacketsecurity.com/2024/11/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[BLACKSUIT] – Ransomware Victim: hetrhedens[.]nl 1’)Ransomware Group: **BLACKSUIT**===============================### VICTIM…


  • [STORMOUS] – Ransomware Victim: uatf[.]edu[.]bo

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[STORMOUS-] — Ransomware Victim: uatf-[.-]edu-[.-]bo======================================================[November 17, 2024](https://www.redpacketsecurity.com/2024/11/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[STORMOUS] – Ransomware Victim: uatf[.]edu[.]bo 1’)Ransomware Group: **STORMOUS**==============================### VICTIM…


  • Brute Ratel C4 Detected – 52[.]68[.]181[.]183:80

    * [Brute Ratel C4](https://www.redpacketsecurity.com/category/brute-ratel-c4/)Brute Ratel C4 Detected — 52-[.-]68-[.-]181-[.-]183:80=======================================================[November 17, 2024](https://www.redpacketsecurity.com/2024/11/) Brute Ratel C4 Detection Alerts > The Information provided…