Blog: www.recordedfuture.com/research/thr...
Blog: www.recordedfuture.com/research/thr...
Blog: www.recordedfuture.com/research/art...
Blog: www.recordedfuture.com/research/art...
We’ll address specific geopolitical risks, cybercriminal and hacktivist groups, state-sponsored cyber threats, influence operations, and more.
Registration: recordedfuture.registration.goldcast.io/webinar/4b72...
We’ll address specific geopolitical risks, cybercriminal and hacktivist groups, state-sponsored cyber threats, influence operations, and more.
Registration: recordedfuture.registration.goldcast.io/webinar/4b72...
I spoke on our recent efforts to disrupt traffer teams, infostealer operators, and global scam infrastructure.
It’s always an honor to represent Recorded Future!
I spoke on our recent efforts to disrupt traffer teams, infostealer operators, and global scam infrastructure.
It’s always an honor to represent Recorded Future!
GrayAlpha shows how financially motivated actors operate with APT-level tradecraft.
Time to retire old threat models. Think in terms of ecosystems, not just malware.
www.recordedfuture.com/research/gra...
GrayAlpha shows how financially motivated actors operate with APT-level tradecraft.
Time to retire old threat models. Think in terms of ecosystems, not just malware.
New reporting from @julianferdinand.bsky.social just dropped. It confirms that Predator C2 is very much alive and attracting new clients.
Targets? The same. Activists, politicians, journalists, executives. The spyware economy isn’t slowing — it’s adapting.
www.recordedfuture.com/research/pre...
New reporting from @julianferdinand.bsky.social just dropped. It confirms that Predator C2 is very much alive and attracting new clients.
Targets? The same. Activists, politicians, journalists, executives. The spyware economy isn’t slowing — it’s adapting.
🇷🇺 🇹🇯 This research examines a campaign targeting Tajikistan attributed to Russia-aligned TAG-110 — linked to BlueDelta (APT28). This campaign is likely targeting government, educational, and research institutions.
Link: www.recordedfuture.com/research/rus...
🇷🇺 🇹🇯 This research examines a campaign targeting Tajikistan attributed to Russia-aligned TAG-110 — linked to BlueDelta (APT28). This campaign is likely targeting government, educational, and research institutions.
Link: www.recordedfuture.com/research/rus...
🪦 Lumma Stealer 🪦
Link: www.europol.europa.eu/media-press/...
🪦 Lumma Stealer 🪦
Link: www.europol.europa.eu/media-press/...
This research examines US-China AI gap and the drivers of competition. Insikt Group assesses that China is unlikely to sustainably surpass the US on its desired timeline to become the world leader in AI by 2030.
Link: www.recordedfuture.com/research/mea...
This research examines US-China AI gap and the drivers of competition. Insikt Group assesses that China is unlikely to sustainably surpass the US on its desired timeline to become the world leader in AI by 2030.
Link: www.recordedfuture.com/research/mea...
Check out our conversation about my work on cryptoscam gangs, infostealer “traffer” teams, and the “Marko Polo” cybercriminal group.
Link: open.spotify.com/episode/70AY...
Check out our conversation about my work on cryptoscam gangs, infostealer “traffer” teams, and the “Marko Polo” cybercriminal group.
Link: open.spotify.com/episode/70AY...
This research uncovers two new malware families — TerraStealerV2 and TerraLogger — linked to the financially motivated threat activity group Golden Chickens (VENOM SPIDER).
Link: www.recordedfuture.com/research/ter...
This research uncovers two new malware families — TerraStealerV2 and TerraLogger — linked to the financially motivated threat activity group Golden Chickens (VENOM SPIDER).
Link: www.recordedfuture.com/research/ter...
This research examines MintsLoader, linked to groups like TAG-124 (LandUpdate808), to deploy capabilities like GhostWeaver and StealC.
Link: www.recordedfuture.com/research/unc...
This research examines MintsLoader, linked to groups like TAG-124 (LandUpdate808), to deploy capabilities like GhostWeaver and StealC.
Link: www.recordedfuture.com/research/unc...
This research examines the critical role of artificial intelligence in the future economic, regional influence, and national security interests of Iran, and the implementation of those capabilities.
Link: www.recordedfuture.com/research/ira...
This research examines the critical role of artificial intelligence in the future economic, regional influence, and national security interests of Iran, and the implementation of those capabilities.
Link: www.recordedfuture.com/research/ira...
“Many of the arrests have involved the possession of outlawed content on phones… sharing of content on social media…”
h/t: therecord.media/tibetans-arr...
“Many of the arrests have involved the possession of outlawed content on phones… sharing of content on social media…”
h/t: therecord.media/tibetans-arr...
h/t: therecord.media/hackers-use-...
h/t: therecord.media/hackers-use-...
Link: open.spotify.com/album/3XFwJR...
Link: open.spotify.com/album/3XFwJR...
h/t: blog.talosintelligence.com/unraveling-t...
h/t: blog.talosintelligence.com/unraveling-t...
h/t: therecord.media/gamaredon-re...
h/t: therecord.media/gamaredon-re...
“While no definitive attribution is currently available, a China nexus is suspected.”
h/t: dti.domaintools.com/newly-regist...
“While no definitive attribution is currently available, a China nexus is suspected.”
h/t: dti.domaintools.com/newly-regist...
Link: youtu.be/KUqppuhKVWI?...
Link: youtu.be/KUqppuhKVWI?...
“…identified as part of an investigation into a fire at a DHL warehouse in Birmingham.”
h/t: therecord.media/romanian-man...
“…identified as part of an investigation into a fire at a DHL warehouse in Birmingham.”
h/t: therecord.media/romanian-man...
Mythic HTA:
AFC7302D0BD55CFC603FDAF58F5483B0CC00D354274F379C75CFA17F6BA6F97D
“The group… has deployed a tool dubbed PowerModul that includes components designed specifically to target removable media.”
h/t: therecord.media/goffee-espio...
Mythic HTA:
AFC7302D0BD55CFC603FDAF58F5483B0CC00D354274F379C75CFA17F6BA6F97D
“The group… has deployed a tool dubbed PowerModul that includes components designed specifically to target removable media.”
h/t: therecord.media/goffee-espio...
“The group… has deployed a tool dubbed PowerModul that includes components designed specifically to target removable media.”
h/t: therecord.media/goffee-espio...