TTPs stories
Ransomware activity stays high as new groups surge
Yesterday
#
ransomware
#
advanced persistent threat protection
#
supply chain
GuidePoint says ransomware attacks stayed elevated in Q1 as The Gentlemen surged, construction became a top target and extortion-only tactics spread.
Former Black Basta affiliates target executives in Teams
2 days ago
#
uc
#
mfa
#
phishing
ReliaQuest says suspected former Black Basta operators are bombarding staff with emails and posing as IT support in Microsoft Teams to reach senior executives.
Cybercrooks abuse Keitaro tracker for AI scam campaigns
Last month
#
malware
#
phishing
#
martech
Cybercriminals exploit Keitaro ad tracker to cloak AI trading scams and malware, tying some 15,500 malicious domains into a hidden network.
SmarterMail flaw exploited in China-linked ransomware push
Thu, 12th Feb 2026
#
firewalls
#
vpns
#
ransomware
China-linked Warlock ransomware group exploits SmarterMail flaw for admin takeovers, chaining features to gain full Windows control.
Bitsight unveils dark web tool to secure supply chains
Wed, 11th Feb 2026
#
data protection
#
martech
#
advanced persistent threat protection
Bitsight launches an AI-driven dark web monitoring tool to give organisations earlier warning of cyber threats targeting key suppliers.
Espionage Without Noise: Understanding APT36's Enduring Campaigns
Wed, 11th Feb 2026
#
ddos
#
surveillance
#
supply chain
Indian defence faces a decade-long silent siege as APT36 refines cross-platform cyber espionage with stealthy, persistent RAT campaigns.
DivisionHex launches new framework to streamline exposure management
Sat, 6th Dec 2025
#
cloud security
#
advanced persistent threat protection
#
breach prevention
DivisionHex launches a new framework leveraging Tenable One to help firms prioritise cyber exposure risks and improve security defence strategies.
Black Kite unveils ASI for targeted third-party cyber risk
Sat, 9th Aug 2025
#
ransomware
#
advanced persistent threat protection
#
supply chain
Black Kite has launched its Adversary Susceptibility Index to help firms spot which suppliers are most exposed to specific cyber threat actors, enhancing risk management.
Silobreaker launches AI dashboards to boost threat reporting
Wed, 4th Jun 2025
#
advanced persistent threat protection
#
risk & compliance
#
ai
Silobreaker launches AI dashboards to automate and personalise threat intelligence reporting, helping teams deliver tailored insights swiftly to stakeholders.
Silent Push unveils enhanced threat intelligence with Feed Scanner
Wed, 30th Apr 2025
#
semiconductors
#
siem
#
advanced persistent threat protection
Silent Push launches upgraded Threat Intelligence Management with Feed Scanner interface to boost enterprises' early cyber threat detection and response.
Gartner report criticises SOAR systems, Acora defends approach
Fri, 6th Sep 2024
#
siem
#
cybersecurity
#
support
A new Gartner report criticising SOAR systems for high costs and unmet promises has stirred controversy, with Acora defending its approach to optimising SOAR technology.
Threat actor abuses Cloudflare tunnels to deliver RATs
Wed, 14th Aug 2024
#
advanced persistent threat protection
#
cybersecurity
#
law
Cybercriminals exploit Cloudflare Tunnels, delivering remote access trojans via TryCloudflare abuse, notes Proofpoint, with evolving attack methods pushing past defences.
Defending against APTs: A learning exercise with Kimsuky
Wed, 17th Jul 2024
#
malware
#
advanced persistent threat protection
#
cybersecurity
Rapid7 Labs' new paper reveals Kimsuky's sophisticated tactics, providing vital insights for security teams to bolster defences against these advanced persistent threats.
ReliaQuest reveals BlackSuit ransomware details in 2024 customer incident
Wed, 29th May 2024
#
vpns
#
ransomware
#
dlp
In April 2024, ReliaQuest uncovered a cyberattack by the BlackSuit ransomware group, highlighting critical vulnerabilities and the need for improved security measures.
AI bolsters security response times, reveals ReliaQuest report
Fri, 29th Mar 2024
#
mfa
#
phishing
#
email security
ReliaQuest's annual threat report reveals AI and automation technologies improve organisations' response time to security incidents by up to 99% year on year.
Mandiant uncovers intricate UNC5325 cyber attacks on Ivanti devices
Wed, 28th Feb 2024
#
malware
#
advanced persistent threat protection
#
cybersecurity
Cybersecurity company Mandiant has identified that actor UNC5325 exploits an Ivanti zero-day vulnerability, utilising evasive techniques and malware to persistently infiltrate devices.
Alarming lack of API visibility among enterprises: Cequence
Fri, 19th May 2023
#
api
#
cybersecurity
#
ciso
New research highlights APIs are now a leading attack vector, posing new and significant threats to organisations.