Entering the spotlight this week is the new “DoppelPaymer” ransomware, which bears resemblance to the “Indrik Spider”-associated “BitPaymer” ransomware.
Weekly highlights include: New target sectors and motives potentially attributed to the “Buhtrap” threat group, reported targeting government entities in Eastern Europe and Central Asia; new iOS and Android implants, associated with the “FinSpy” spyware; and a new Internet of Things (IOT) botnet, which could be related to the “Mirai” botnet family.
Error - something went wrong!
Weekly Intelligence Summary 18 Jul - 25 Jul 2019
Highlight: A cyber attack against a contractor of Russia’s national intelligence service, resulting in the ...
Error - something went wrong!
Most Recent Flipbooks
Weekly Intelligence Summary 17 Jan 2020
The cyber-extortion landscape has shown real signs of strength and advancement in the past three months...
Weekly Intelligence Summary 10 Jan 2020
In the spotlight this week: Iranian cyber response neither impossible nor guaranteed
Weekly Intelligence Summary 12 Dec - 19 Dec 2019
Despite a decline in overall exploit kit activity during 2018 and 2019, several new variants have emerged with new techniques and a geographical focus, making them likely to retain their threatening p
Weekly Intelligence Summary 05 Dec - 12 Dec 2019
“Lazarus Group” has been linked to a new trojanized Mac OS X application, demonstrating the threat group’s preference for employing OS X malware over the past two years.
Weekly Intelligence Summary 28 Nov - 05 Dec 2019
The Digital Shadows Intelligence Team discusses the risks of information exposure by Internet users, challenging contemporary thinking about standard security practices.
Weekly Intelligence Summary 21 Nov - 28 Nov 2019
In the spotlight this week is a technique that enables the bypass of security products to initiate ransomware infections.
Weekly Intelligence Summary 14 Nov - 21 Nov 2019
Digital Shadows reviewed nation-state–linked advanced persistent threat (APT) activity in 2019, and highlighted several trends. Some are likely to continue into 2020, and will be supplemented by ...
Weekly Intelligence Summary 07 Nov - 14 Nov 2019
Multiple reports of successful ransomware attacks have highlighted the risk to organizations of all sizes but, despite the media attention, other extortion tactics are being overlooked.
Weekly Intelligence Summary 31 Oct - 07 Nov 2019
A string of data breach incidents affecting perceptively smaller organizations this week has outlined the need for all companies, regardless of size, to take a proactive security stance in preference
Weekly Intelligence Summary 24 Oct - 31 Oct 2019
In the spotlight this week: A card skimming operation targeted the online retailer First Aid Beauty and evaded notice for months.
Weekly Intelligence Summary 17 Oct - 24 Oct 2019
In the spotlight this week: Russia-linked threat group “Turla” was reported to be using cyber-attack tools associated with Iran-linked threat group “APT34”, in conjunction with Turla’s own tools.
Weekly Intelligence Summary 10 Oct - 17 Oct 2019
In the spotlight this week is the “Simjacker” exploit, publicly disclosed in September 2019 and now potentially affecting entities across 29 countries.
Weekly Intelligence Summary 03 Oct - 10 Oct 2019
In the spotlight this week is the Iran-linked threat group “APT35”, which took aim at the email accounts of political entities in the United States and prominent Iranians living outside Iran.
Weekly Intelligence Summary 26 Sep - 03 Oct 2019
In the spotlight this week is a variety of new attack methods demonstrated by “Magecart Five”. The threat group is probably testing them out, and will highly likely implement the most successful metho
Weekly Intelligence Summary 19 Sep - 26 Sep 2019
In the spotlight this week is a newly identified threat group named Tortoiseshell, which has reportedly conducted supply-chain cyber attack campaigns against 11 IT providers in Saudi Arabia.
Weekly Intelligence Summary 12 Sep - 19 Sep 2019
The Iran-linked cyber-threat group “Cobalt Dickens” targeted 60-plus universities worldwide with a phishing campaign designed to capture credentials. Higher-education institutions have been popular...
Weekly Intelligence Summary 05 Sep - 12 Sep 2019
In the spotlight this week: Following reports that “APT3” used Equation Group tools prior to their public leak by the “Shadow Brokers” in 2016, cyber security researchers have provided additional ...
Weekly Intelligence Summary 29 Aug - 05 Sep 2019
In the spotlight this week: A surge in financially motivated cyber-attack campaigns has been attributed to “Silence”, which is a probably Russian cybercriminal group.
Weekly Intelligence Summary 22 Aug - 29 Aug 2019
Weekly highlights: A new campaign by the “Gamaredon” group may have targeted Ukrainian government bodies, a new ransomware variant dubbed Nemty was likely distributed through compromised remote desk
Weekly Intelligence Summary 15 Aug - 22 Aug 2019