https://unit42.paloaltonetworks.com/vatet-pyxie-defray777/?pdf=print&lg=en&_wpnonce=b771331377
When Threat Actors Fly Under the Radar: Vatet, PyXie and Defray777
Jun 6, 2024 - Vatet, PyXie and Defray777 are all associated with a financially motivated threat group. We aim to get these malware families on the radar.
under the radarthreat actorsfly
https://www.techtarget.com/healthtechsecurity/news/366594687/Threat-Actors-Use-Evernote-Themed-Phishing-Scheme-to-Attack-Healthcare-Organizations
Threat Actors Use Evernote-Themed Phishing Scheme to Attack Healthcare Organizations | TechTarget
HC3 warned the healthcare sector of a phishing scheme that lures victims to an Evernote site that contains a downloadable Trojan file.
threat actors
https://www.microsoft.com/en-us/security/blog/2024/02/14/staying-ahead-of-threat-actors-in-the-age-of-ai/
Staying ahead of threat actors in the age of AI | Microsoft Security Blog
Apr 8, 2026 - Microsoft and OpenAI research on emerging AI threats focusing on threat actors Forest Blizzard, Emerald Sleet, Crimson Sandstorm.
staying aheadthreat actors
https://www.proofpoint.com/us/blog/email-and-cloud-threats/practitioners-update-understanding-threat-actors-and-their-objectives
Understanding Threat Actors & Their Objectives - TA Tracking | Proofpoint US
Jul 21, 2025 - Understand threat actors and their motives with Proofpoint Threat Actor Tracking. Identify the dynamics of threat actors, their objectives, motivations, and...
threat actorsunderstandingobjectivestrackingproofpoint
https://www.techtarget.com/healthtechsecurity/news/366595226/Threat-Actors-Can-Leverage-RDP-Servers-to-Amplify-DDoS-Attacks
Threat Actors Can Leverage RDP Servers to Amplify DDoS Attacks | TechTarget
According to Netscout data, threat actors can exploit Microsoft Windows RDP servers to amplify DDoS attacks. Researchers found 14,000 RDP endpoints susceptible...
threat actorsrdp serversddos attacksleverage
https://thehackernews.com/2023/01/threat-actors-turn-to-sliver-as-open.html?m=1
Threat Actors Turn to Sliver as Open Source Alternative to Popular C2 Frameworks
New findings indicate that the Sliver C2 framework is gaining popularity among threat actors as a versatile alternative to traditional C2 tools.
open source alternativethreat actors
https://miamisecurityauthority.com/miami-cybersecurity-threat-actors/
Threat Actors Targeting Miami Businesses and Infrastructure
Miami's position as a gateway between North America, Latin America, and the Caribbean creates a concentrated attack surface that draws threat actors operating...
threat actorstargetingmiamibusinessesinfrastructure
https://www.bitdefender.com/en-us/blog/hotforsecurity/anydesk-revokes-passwords-after-hacker-attack-threat-actors-advertise-stolen-data
AnyDesk Revokes Passwords After Hacker Attack; Threat Actors Advertise Stolen Data
Remote desktop software maker AnyDesk has issued a notice informing users that, due to a security breach, current login credentials will no longer work.
threat actorsanydeskrevokespasswordshacker
https://www.sophos.com/en-us/blog/tag/threat-actors
Threat Actors - Blog
threat actorsblog
https://www.codecademy.com/learn/cybersecurity-assessment-research/modules/threat-actors-and-vectors/cheatsheet
Cybersecurity Assessment and Research: Threat Actors and Vectors Cheatsheet | Codecademy
assessment and researchthreat actorscybersecurityvectorscheatsheet
https://www.techtarget.com/searchsecurity/answer/How-was-a-Cisco-firewall-vulnerability-exploited-by-threat-actors
How was a Cisco firewall vulnerability exploited by threat actors? | TechTarget
A vulnerability was recently confirmed within Cisco's firewall software and ASA device. Learn what this vulnerability is and how attackers exploited it.
cisco firewallthreat actors
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/threat-actors-use-encrypted-office-binary-format-evade-detection/
Threat Actors Use Encrypted Office Binary Format to Evade Detection | McAfee Blog
Jun 6, 2025 - Attacks leveraging the Sandworm vulnerability now include some interesting detection-evasion techniques, specifically an old format and encryption.
threat actorsbinary format
https://www.techtarget.com/searchhrsoftware/feature/Thwart-nation-state-threat-actors-with-these-CISO-tips
Thwart nation-state threat actors with these CISO tips | TechTarget
Nation-state threat actors posing as remote employees can extract money and data. Learn CISO strategies to protect your company from this emerging threat.
nation statethreat actorsciso tipstechtarget
https://www.techtarget.com/searchsecurity/news/252458156/CrowdStrike-report-says-breakout-time-for-threat-actors-is-increasing
CrowdStrike report says breakout time for threat actors is increasing | TechTarget
Cybersecurity defenders need to embrace speed to detect and respond against intruders, according to CrowdStrike's 2019 Global Threat Report. Learn why...
time forthreat actorscrowdstrikereportsays
https://www.bitdefender.com/en-us/blog/hotforsecurity/threat-actors-spread-formbook-info-stealing-trojan-in-ongoing-phishing-campaign
Threat Actors Spread FormBook Info-Stealing Trojan in Ongoing Phishing Campaign
FormBook, the well-known data stealer and form grabber, has popped up once again, in a malicious phishing campaign that has spread globally.
threat actorsspreadformbookinfo
https://www.microsoft.com/en-us/security/blog/threat-intelligence/threat-actors/?source=mmpc&ep_date_filter=last-12-months
Threat actors | Latest Threats | Microsoft Security Blog
Read about the latest risks regarding Threat actors, and find helpful solutions from the digital security experts at Microsoft Security Blog.
threat actorsmicrosoft securitylatestthreatsblog
https://www.techtarget.com/searchsecurity/news/366613512/OpenAI-details-how-threat-actors-are-abusing-ChatGPT
OpenAI details how threat actors are abusing ChatGPT | TechTarget
Threat actors are using tools like ChatGPT for tasks such as malware development and political influence operations, OpenAI said Wednesday.
threat actorsopenaidetailsabusingchatgpt
https://thehackernews.com/2023/12/alert-threat-actors-can-leverage-aws.html?m=1
Alert: Threat Actors Can Leverage AWS STS to Infiltrate Cloud Accounts
AWS STS tokens can be stolen via malware, exposed credentials, or phishing. Threat actors are using these tactics to breach cloud accounts.
threat actorsaws stsalertleverage
https://unit42.paloaltonetworks.com/attackers-sell-your-bandwidth-using-sdks/?pdf=print&lg=en&_wpnonce=faca6070de
Your Connection, Their Cash: Threat Actors Misuse SDKs to Sell Your Bandwidth
Aug 21, 2025 - A campaign leverages CVE-2024-36401 to stealthily monetize victims' bandwidth where legitimate software development kits (SDKs) are deployed for passive...
threat actorsconnectioncash
https://www.trendmicro.com/vinfo/gb/security/news/cybercrime-and-digital-threats/gandcrab-threat-actors-possibly-behind-sodinokibi-ransomware
GandCrab Threat Actors Possibly Behind Sodinokibi Ransomware | Trend Micro (GB)
The GandCrab gang might be back to their old tricks. Various security researchers reported that the group might be responsible for releasing a more advanced...
threat actorstrend microgandcrabpossiblybehind
https://www.bitdefender.com/en-au/blog/hotforsecurity/threat-actors-spread-agent-tesla-disguised-as-covid-19-vaccination-registration
Threat Actors Spread Agent Tesla Disguised as COVID-19 Vaccination Registration
A recent phishing campaign targeting Windows machines is attempting to infect users with one of the most recent versions of the Agent Tesla remote access...
threat actorsagent teslaspread
https://www.proofpoint.com/au/blog/email-and-cloud-threats/which-threat-actors-are-targeting-my-organization-what-and-why
Identifying Threat Actors Targeting Your Organization | Proofpoint AU
Mar 15, 2024 - Proofpoint recently introduced a new capability that helps answer these types of questions: What threat actors are targeting my organization? How much activity...
threat actorsyour organizationidentifyingtargetingproofpoint
https://unit42.paloaltonetworks.com/vatet-pyxie-defray777/?pdf=print&lg=en&_wpnonce=949b5ed951
When Threat Actors Fly Under the Radar: Vatet, PyXie and Defray777
Jun 6, 2024 - Vatet, PyXie and Defray777 are all associated with a financially motivated threat group. We aim to get these malware families on the radar.
under the radarthreat actorsfly
https://thehackernews.com/2023/10/google-tag-detects-state-backed-threat.html
Google TAG Detects State-Backed Threat Actors Exploiting WinRAR Flaw
Google TAG security experts uncover Russian and Chinese state-backed threat actors exploiting WinRAR vulnerability (CVE-2023-38831)
google tagthreat actorsdetectsstatebacked
https://cio.economictimes.indiatimes.com/tag/threat+actors
Threat actors - Latest threat actors , Information & Updates - CIO -ET CIO
ETCIO.com brings latest threat actors news, views and updates from all top sources for the Indian CIO industry.
threat actorslatest informationupdatescioet
https://www.paloaltonetworks.com/blog/tag/threat-actors/
threat actors Blogs | Palo Alto Networks
Read the latest blogs and insights about threat actors from Palo Alto Networks experts.
threat actorspalo altoblogsnetworks
https://cloud.google.com/blog/topics/threat-intelligence/how-mandiant-tracks-uncategorized-threat-actors
DebUNCing Attribution: How Mandiant Tracks Uncategorized Threat Actors | Mandiant | Google Cloud...
threat actorsattributionmandianttracksuncategorized
https://www.computerweekly.com/news/366550532/Threat-actors-exploiting-unpatched-Juniper-Networks-devices
Threat actors exploiting unpatched Juniper Networks devices | Computer Weekly
A series of vulnerabilities in Juniper Networks firewalls and switches appear to be being exploited in the wild to enable remote code execution, with thousands...
threat actorsjuniper networksexploitingdevicescomputer
https://unit42.paloaltonetworks.com/revil-threat-actors/?pdf=download&lg=en&_wpnonce=8341ec8cef
Understanding REvil: REvil Threat Actors May Have Returned (Updated)
Jun 5, 2024 - Ransomware cases worked by Unit 42 consultants in the first six months of 2021 reveal insights into the preferred tactics of REvil threat actors.
threat actorsmay haveunderstandingrevilreturned
https://www.microsoft.com/en-us/security/blog/threat-intelligence/threat-actors/?source=mmpc&sort-by=newest-oldest
Threat actors | Latest Threats | Microsoft Security Blog
Read about the latest risks regarding Threat actors, and find helpful solutions from the digital security experts at Microsoft Security Blog.
threat actorsmicrosoft securitylatestthreatsblog
https://www.proofpoint.com/uk/blog/cloud-security/threat-actors-arsenal-how-hackers-target-cloud-accounts
Threat Actors' Arsenal: How Hackers Target Cloud Accounts | Proofpoint UK
Sep 30, 2025 - Introduction In today's interconnected world, cloud computing has become the backbone of countless businesses. However, with this rise in cloud adoption,...
threat actorscloud accountsarsenalhackerstarget
https://www.bitdefender.com/en-gb/blog/hotforsecurity/threat-actors-spread-agent-tesla-disguised-as-covid-19-vaccination-registration
Threat Actors Spread Agent Tesla Disguised as COVID-19 Vaccination Registration
A recent phishing campaign targeting Windows machines is attempting to infect users with one of the most recent versions of the Agent Tesla remote access...
threat actorsagent teslaspread
https://aws.amazon.com/es/blogs/security/how-aws-threat-intelligence-deters-threat-actors/
How AWS threat intelligence deters threat actors | AWS Security Blog
Oct 11, 2023 - Every day across the Amazon Web Services (AWS) cloud infrastructure, we detect and successfully thwart hundreds of cyberattacks that might otherwise be...
threat intelligenceawsactorssecurityblog
https://github.com/MISP/threat-actor-intelligence-server
GitHub - MISP/threat-actor-intelligence-server: A simple ReST server to lookup threat actors (by...
A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the known threat actors....
threat actor intelligence
https://unit42.paloaltonetworks.com/threat-brief-hancitor-actors/
Threat Brief: Hancitor Actors
Sep 21, 2020 - Read this Threat Brief to learn how Hancitor threat actors use fundamental business tactics to deliver attacks
threat briefactors
https://www.microsoft.com/en-us/security/blog/2024/11/22/microsoft-shares-latest-intelligence-on-north-korean-and-chinese-threat-actors-at-cyberwarcon/
Microsoft shares latest intelligence on North Korean and Chinese threat actors at CYBERWARCON |...
Apr 15, 2026 - At CYBERWARCON 2024, Microsoft Threat Intelligence analysts will share research and insights on North Korean and Chinese threat actors representing years of...
https://www.windowscentral.com/threat-actors-use-power-microsoft-azure-and-aws-spread-rats
Threat actors use the power of Microsoft Azure and AWS to spread RATs | Windows Central
Jan 12, 2022 - Many use the power of Azure and AWS for good. But threat actors have figured out ways to harness the cloud's utility for malicious intents.
https://www.bitdefender.com/en-us/blog/hotforsecurity/threat-actors-abuse-qr-code-usage-to-scam-unsuspecting-users-the-fbi-warns
Threat Actors Abuse QR Code Usage To Scam Unsuspecting Users, The FBI Warns
A recent FBI warning is alerting consumers about the security risks associated with QR code usage.
https://www.trendmicro.com/vinfo/gb/security/news/vulnerabilities-and-exploits/beware-of-mcp-hardcoded-credentials-a-perfect-target-for-threat-actors
Beware of MCP Hardcoded Credentials: A Perfect Target for Threat Actors | Trend Micro (GB)
Poor secret management in MCP servers can lead to serious consequences, including data breaches and supply chain attacks. This article examines the reality of...
https://thehackernews.com/2023/01/new-analysis-reveals-raspberry-robin.html
New Analysis Reveals Raspberry Robin Can be Repurposed by Other Threat Actors
New Analysis Reveals Raspberry Robin Attack Infrastructure Can be Repurposed by Other Threat Actors
new analysiscan be
https://www.digitaljournal.com/tech-science/voice-actors-warn-comic-con-over-rampant-ai-threat/article
Voice actors warn Comic-Con over rampant AI threat - Digital Journal
Jul 23, 2023 - North America's largest pop culture gathering is taking place during a major Hollywood strike.
voice actorscomic conai threatwarn
https://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/threat-modeling-api-gateways-a-new-target-for-threat-actors
Threat Modeling API Gateways: A New Target for Threat Actors? | Trend Micro (US)
In this article, we dive into API gateway functions and risks, the advantages of API gateways in hybrid and multi-cloud environments, and common API security...
threat modelingapi gateways
https://www.sophos.com/pt-br/cybersecurity-explained/threat-actors
What are the Types of Cyber Threat Actors?
A threat actor refers to an individual, group, or entity that carries out malicious activities to computer systems, networks, data, or other valuable assets.
types ofcyber threatactors
https://cloud.google.com/blog/topics/threat-intelligence/russia-targeting-signal-messenger/
Signals of Trouble: Multiple Russia-Aligned Threat Actors Actively Targeting Signal Messenger |...
Russia state-aligned threat actors target Signal Messenger accounts used by individuals of interest to Russia's intelligence services.
https://unit42.paloaltonetworks.com/north-korean-threat-actors-lure-tech-job-seekers-as-fake-recruiters/
Contagious Interview: DPRK Threat Actors Lure Tech Industry Job Seekers to Install New Variants of...
Oct 17, 2024 - Discover how North Korean attackers, posing as recruiters, used an updated downloader and backdoor in a campaign targeting tech job seekers. Discover how North...
https://au.rollingstone.com/culture/culture-features/actors-strike-sag-aftra-ai-one-year-later-63687/
One Year After the Actors' Strike, AI Remains a Persistent Threat
Jul 14, 2024 - Music, Film, TV and Political News Coverage
one yearthe actors
https://newsroom.ibm.com/2025-04-17-2025-ibm-x-force-threat-index-large-scale-credential-theft-escalates,-threat-actors-pivot-to-stealthier-tactics?ref=cybernewscentre.com
2025 IBM X-Force Threat Index: Large-Scale Credential Theft Escalates, Threat Actors Pivot to...
IBM released the 2025 X-Force Threat Intelligence Index highlighting that cybercriminals continued to pivot to stealthier tactics, with lower-profile...
https://www.sophos.com/en-gb/cybersecurity-explained/threat-actors
What are the Types of Cyber Threat Actors?
A threat actor refers to an individual, group, or entity that carries out malicious activities to computer systems, networks, data, or other valuable assets.
types ofcyber threatactors
https://www.proofpoint.com/us/blog/security-briefs/threat-actors-target-victims-promising-covid-19-relief-vaccines-and-variant
Security Brief: Threat Actors Target Victims by Promising COVID-19 Relief, Vaccines, and Variant...
Nov 19, 2021 - As COVID-19 vaccinations accelerate and the U.S. coronavirus relief package nears enactment, threat actors continue to use the ongoing crisis to exploit fears....
https://www.trendmicro.com/vinfo/it/security/news/vulnerabilities-and-exploits/beware-of-mcp-hardcoded-credentials-a-perfect-target-for-threat-actors
Beware of MCP Hardcoded Credentials: A Perfect Target for Threat Actors | Trend Micro (IT)
Poor secret management in MCP servers can lead to serious consequences, including data breaches and supply chain attacks. This article examines the reality of...
https://www.okta.com/es-es/blog/threat-intelligence/tycoon_2fa_phishing_actors_scatter/
Tycoon 2FA phishing actors scatter, branch into new attacks | Threat Intelligence
Okta Threat Intelligence studies changes in the Tycoon 2FA phishing operation after it was disrupted by law enforcement in March 2026.
tycoonphishingactorsscatter
https://www.sophos.com/de-de/cybersecurity-explained/threat-actors
What are the Types of Cyber Threat Actors?
A threat actor refers to an individual, group, or entity that carries out malicious activities to computer systems, networks, data, or other valuable assets.
types ofcyber threatactors
https://www.proofpoint.com/us/blog/security-briefs/threat-actors-pair-tax-themed-lures-covid-19-healthcare-themes
Security Brief: Threat Actors Pair Tax-Themed Lures With COVID-19, Healthcare Themes | Proofpoint US
Nov 19, 2021 - Proofpoint has observed over 30 tax-themed malicious email campaigns totaling over 800,000 email messages so far in 2021.
https://umbrella.cisco.com/blog/navigating-cybersecurity-during-a-pandemic-latest-malware-and-threat-actors
Navigating Cybersecurity During a Pandemic: Latest Malware and Threat Actors - Cisco Umbrella
Jul 1, 2020 - In this blog post, we discuss how threat actors are using the pandemic in malicious campaigns, and the increase in Internet requests related to this crisis
https://cloud.google.com/blog/topics/threat-intelligence/russia-targeting-signal-messenger?ref=blog.alphahunt.io
Signals of Trouble: Multiple Russia-Aligned Threat Actors Actively Targeting Signal Messenger |...
Russia state-aligned threat actors target Signal Messenger accounts used by individuals of interest to Russia's intelligence services.
https://www.pcgamer.com/software/security/a-17-year-old-excel-vulnerability-is-currently-being-exploited-by-threat-actors-and-its-been-flagged-by-the-us-cyber-defence-agency/
A 17-year-old Excel vulnerability is currently being exploited by threat actors, and it's been...
Apr 16, 2026 - The little exploit that could.
https://cloud.google.com/blog/topics/threat-intelligence/russia-targeting-signal-messenger
Signals of Trouble: Multiple Russia-Aligned Threat Actors Actively Targeting Signal Messenger |...
Russia state-aligned threat actors target Signal Messenger accounts used by individuals of interest to Russia's intelligence services.
https://cloud.google.com/blog/topics/threat-intelligence/accellion-fta-exploited-for-data-theft-and-extortion
Threat Actors Exploit Accellion FTA for Data Theft and Extortion | Google Cloud Blog
Threat actors exploit multiple zero-day vulnerabilities in Accellion's legacy File Transfer Appliance to install a newly discovered web shell named DEWMODE.
https://turtl.proofpoint.com/story/new-perimeters-issue-7-2024/page/9
IDENTITY RISK STOP THREAT ACTORS IN THEIR TRACKS - PREVENT PRIVILEGE ESCALATION AND LATERAL...
Human-Centric Security Put people at the center - protect them against threat, impersonation, identity and data loss risks.
https://fast.wistia.net/embed/iframe/au7pdtmsd3?web_component=true&seo=true
The Subtle Art of Cyber Deception: Outsmarting Threat Actors with a Magician's Touch with NetSPI