Category: Threat Intel Reports


  • Threat actors exploiting zero-days faster than ever – Week in security with Tony Anscombe

    VideoThreat actors exploiting zero-days faster than ever — Week in security with Tony Anscombe==========================================================================================The average time it takes attackers to…


  • Cobalt Strike Beacon Detected – 39[.]106[.]216[.]88:888

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 39-[.-]106-[.-]216-[.-]88:888==============================================================[October 20, 2024](https://www.redpacketsecurity.com/2024/10/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Open source LLM tool primed to sniff out Python zero-days

    #### [Security](/security/)**2** Open source LLM tool primed to sniff out Python zero-days=========================================================**2** The static analyzer uses Claude AI to identify…


  • Cobalt Strike Beacon Detected – 116[.]198[.]229[.]197:6666

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 116-[.-]198-[.-]229-[.-]197:6666=================================================================[October 20, 2024](https://www.redpacketsecurity.com/2024/10/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • [HUNTERS] – Ransomware Victim: Michael J Gurfinkel

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[HUNTERS-] — Ransomware Victim: Michael J Gurfinkel=====================================================[October 19, 2024](https://www.redpacketsecurity.com/2024/10/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[HUNTERS] – Ransomware Victim: Michael J Gurfinkel…


  • Cobalt Strike Beacon Detected – 124[.]71[.]192[.]162:443

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 124-[.-]71-[.-]192-[.-]162:443===============================================================[October 20, 2024](https://www.redpacketsecurity.com/2024/10/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • [HUNTERS] – Ransomware Victim: KMC Controls

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[HUNTERS-] — Ransomware Victim: KMC Controls==============================================[October 19, 2024](https://www.redpacketsecurity.com/2024/10/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[HUNTERS] – Ransomware Victim: KMC Controls 1’)Ransomware Group:…


  • Cobalt Strike Beacon Detected – 122[.]51[.]105[.]65:8085

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 122-[.-]51-[.-]105-[.-]65:8085===============================================================[October 20, 2024](https://www.redpacketsecurity.com/2024/10/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • [RANSOMHUB] – Ransomware Victim: mh-mech[.]com

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[RANSOMHUB-] — Ransomware Victim: mh-mech-[.-]com===================================================[October 20, 2024](https://www.redpacketsecurity.com/2024/10/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[RANSOMHUB] – Ransomware Victim: mh-mech[.]com 1’)Ransomware Group: **RANSOMHUB**===============================### VICTIM…


  • North Korean IT Workers in Western Firms Now Demanding Ransom for Stolen Data

    ![North Korean IT Workers](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEilleKZkFdelhDoVbNhtZtk-Ocl5bfbSbxUpCYLe3LmMAR6nFV6UNyetmh2-KEP4fcVCTvOH8l_2iP5ihfoI2SUyCd6Zd6r4rr-bVmhhXnnE8Pa8MnNjp9QqxU1dFVrFIhrVLuSK06XVj1hLL-7fPh6fttYL-BQb553fYZzN2SXkR930MaLhyphenhyphen1MPBTNHZW4/s728-rw-e365/server.png ‘North Korean IT Workers’)North Korean information technology (IT) workers who obtain employment under false identities in…