📂 Threat Actors & Campaigns

Showing 10 threats (week)

🔴 HIGHNation-State Espionage

APT24 Uses BADAUDIO Malware and Supply Chain Attacks Against Taiwan

APT24, a long-running China-linked hacking group also tracked as G0011, PITTY PANDA and Temp.Pittytiger, has conducted a three-year espionage campaign targeting Taiwanese organizations using a custom …

Category: Threat Actors & Campaigns / Nation-State Espionage

#apt24#china-apt#badaudio#supply-chain-attack#watering-hole#taiwan-targeting#espionage-campaign
🔴 HIGHNation-State Espionage

UNC1549 Expands Iran-Linked Espionage Against Aerospace via Third Parties

UNC1549 is an Iran-nexus espionage group conducting multi-year campaigns against aerospace, aviation and defense organizations in the Middle East and Europe, with Mandiant observing a surge in activit…

Category: Threat Actors & Campaigns / Nation-State Espionage

#unc1549#iran-apt#aerospace-defense#supply-chain-attack#dll-search-order-hijacking#credential-dumping#nation-state-espionage
🔴 HIGHMobile Banking Malware

Sturnus Android Malware Steals Banking Data and Encrypted Chats

The newly discovered Sturnus Android banking malware is a privately operated threat that combines classic overlay fraud with advanced accessibility abuse to capture banking credentials and read encryp…

Category: Threat Actors & Campaigns / Mobile Banking Malware

#sturnus#android-malware#banking-trojan#accessibility-abuse#overlay-attacks#mobile-security#encrypted-messaging
🔴 HIGHState-Aligned Operations

Iran-Linked Backdoor Malware Campaign Targets Global Systems

CVE-tracked Iranian backdoor malware operations were identified in a new Google Threat Analysis Group investigation, revealing advanced persistence techniques along with stealthy command-and-control c…

Category: Threat Actors & Campaigns / State-Aligned Operations

#iran#google#backdoor-malware#apt#espionage#threat-actors
Page 1 of 2