Lumen Black Lotus Labs
A security research division of Lumen Technologies that tracked QTFY activity for over 18 months and collaborated with the FBI.
A security research division of Lumen Technologies that tracked QTFY activity for over 18 months and collaborated with the FBI.
A now-patched command injection vulnerability in Zimbra Collaboration (ZCS), tracked as CVE-2026-73570 (CVSS 8.9), is under active exploitation in the wild, according…
RST Cloud documented a static API key across four confirmed C2 domains and identified additional candidates via recurring URI patterns, aiding in…
Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, by correlating endpoint and network…
GuidePoint Research and Intelligence Team (GRIT) is a cybersecurity firm that identified and analyzed the Ransom Busters scam, providing insights into the…
Ontinue's Cyber Defense Center discovered the TWINLOOT implant during an investigation into a campaign in July 2026. The company provided detailed technical…
A single threat actor has been systematically scraping data from Salesforce and ServiceNow customer portals for over a year, according to research…
DarkAtlas detailed APT42's use of TAMECAT malware in spear-phishing attacks targeting the nuclear energy sector, and highlighted the group's use of generative…
Cybersecurity researchers have uncovered a previously undocumented Linux botnet family named Evooo1Bot, which is derived from the Mirai botnet source code and…
Threat actors are increasingly acquiring expired domains—known as "dropcatch domains"—to inherit their reputation and traffic, redirecting victims to scams and malware. According…