Category: Threat Intel Reports


  • [QILIN] – Ransomware Victim: Imprimerie Peau

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[QILIN-] — Ransomware Victim: Imprimerie Peau===============================================[November 2, 2024](https://www.redpacketsecurity.com/2024/11/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[QILIN] – Ransomware Victim: Imprimerie Peau 1’)Ransomware Group:…


  • Noma Security Raises $32 Million to Safeguard Gen-AI Applications

    **Tel Aviv, Israel based Noma Security has emerged from stealth mode with $32 million in Series A funding led by…


  • Cobalt Strike Beacon Detected – 47[.]108[.]112[.]243:8443

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 47-[.-]108-[.-]112-[.-]243:8443================================================================[November 2, 2024](https://www.redpacketsecurity.com/2024/11/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Cobalt Strike Beacon Detected – 39[.]100[.]108[.]3:80

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 39-[.-]100-[.-]108-[.-]3:80============================================================[November 2, 2024](https://www.redpacketsecurity.com/2024/11/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Cobalt Strike Beacon Detected – 47[.]93[.]43[.]246:443

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 47-[.-]93-[.-]43-[.-]246:443=============================================================[November 2, 2024](https://www.redpacketsecurity.com/2024/11/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • qpdf: Extracting PDF Streams, (Sat, Nov 2nd)

    [qpdf: Extracting PDF Streams](/forums/diary/qpdf+Extracting+PDF+Streams/31406/)================================================================================* * [](http://www.facebook.com/sharer.php?u=https%3A%2F%2Fisc.sans.edu%2Fforums%2Fdiary%2F31406 ‘Share on Facebook’)* [](http://twitter.com/share?text=qpdf%3A%20Extracting%20PDF%20Streams&url=https%3A%2F%2Fisc.sans.edu%2Fforums%2Fdiary%2F31406&via=SANS_ISC ‘Share on Twitter’) **Published** : 2024-11-02. **Last Updated** : 2024-11-02…


  • DDoS Attacks Service Provider Websites Seized by Authorities

    In a coordinated international effort, authorities have conducted a significant crackdown on cybercrime, arresting two suspects, seizing online platforms used…


  • Stonefly: Extortion Attacks Continue Against U.S. Targets

    In several of the attacks, Stonefly’s custom malware Backdoor.Preft (aka Dtrack, Valefor) was deployed. This tool is exclusively associated with…


  • OpenAI’s new ChatGPT Search Chrome extension feels like a search hijacker

    ![ChatGPT logo](https://www.bleepstatic.com/content/hl-images/2023/11/08/ChatGPT.jpg)OpenAI’s new ‘ChatGPT search’ Chrome extension feels like nothing more than a typical search hijacker, changing Chrome’s settings so…


  • [RANSOMHUB] – Ransomware Victim: www[.]sym-global[.]com

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[RANSOMHUB-] — Ransomware Victim: www-[.-]sym-global-[.-]com==============================================================[November 1, 2024](https://www.redpacketsecurity.com/2024/11/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[RANSOMHUB] – Ransomware Victim: www[.]sym-global[.]com 1’)Ransomware Group: **RANSOMHUB**===============================### VICTIM…