REF5961: Group Using BLOODALCHEMY Backdoor
REF5961 is a threat group first documented by Elastic Security Labs in October 2023. It was observed using the BLOODALCHEMY backdoor in…
REF5961 is a threat group first documented by Elastic Security Labs in October 2023. It was observed using the BLOODALCHEMY backdoor in…
An unaffiliated East Asian threat actor has been conducting cyber attacks against Middle Eastern government entities, deploying TELESHIM, MIXEDKEY, and BINDCLOAK malware.…
The Israel National Cyber Directorate (INCD) published a bulletin describing DevMan as a threat actor with a high-profile online presence, often bragging…
TetrisPhantom is a highly skilled and resourceful threat actor first documented by Kaspersky in October 2023. It targets government entities in the…
Armored Likho is a previously undocumented threat actor targeting government agencies and electric power sectors in Russia, Brazil, and Kazakhstan. They blend…
A FedRAMP-authorized SD-WAN solution for U.S. government agencies, impacted by CVE-2026-20262.