⤷ Title: Akira Ransomware Adapts to Target Linux and VMware ESXi Servers
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 28 Jan 2025 01:52:37 +0000
════════════════════════
⌗ Tags: #Malware #Akira ransomware #Akira v2 #CVE_2024_37085 #CVE_2024_40711 #Linux #Rclone #Rust #VMware ESXi #WinSCP
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 28 Jan 2025 01:52:37 +0000
════════════════════════
⌗ Tags: #Malware #Akira ransomware #Akira v2 #CVE_2024_37085 #CVE_2024_40711 #Linux #Rclone #Rust #VMware ESXi #WinSCP
Daily CyberSecurity
Akira Ransomware Adapts to Target Linux and VMware ESXi Servers
Discover the rise of Akira, a highly active Ransomware-as-a-Service (RaaS) group targeting organizations worldwide.
⤷ Title: RansomHub Breach: Six-Day Attack Leveraged RDP, RMM Tools & Mimikatz for Data Exfiltration & Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 02:09:12 +0000
════════════════════════
⌗ Tags: #Malware #Atera #cybersecurity #data exfiltration #DFIR Report #lateral movement #mimikatz #Password Spraying #RansomHub #ransomware #Rclone #RDP #Remote Desktop Protocol #Splashtop
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 02:09:12 +0000
════════════════════════
⌗ Tags: #Malware #Atera #cybersecurity #data exfiltration #DFIR Report #lateral movement #mimikatz #Password Spraying #RansomHub #ransomware #Rclone #RDP #Remote Desktop Protocol #Splashtop
Daily CyberSecurity
RansomHub Breach: Six-Day Attack Leveraged RDP, RMM Tools & Mimikatz for Data Exfiltration & Ransomware
A six-day RansomHub attack exploited RDP, used Atera/Splashtop RMM, Mimikatz, and Rclone to breach an enterprise, exfiltrate data, and deploy ransomware.
⤷ Title: BlackSuit: New Royal/Conti Rebrand Hits With Speed, Stealth, & Data Exfiltration
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:00:30 +0000
════════════════════════
⌗ Tags: #Malware #BlackSuit #Cobalt Strike #Conti #Cybereason #cybersecurity #data exfiltration #PsExec #ransomware #Rclone #Royal Ransomware #threat actor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:00:30 +0000
════════════════════════
⌗ Tags: #Malware #BlackSuit #Cobalt Strike #Conti #Cybereason #cybersecurity #data exfiltration #PsExec #ransomware #Rclone #Royal Ransomware #threat actor
Daily CyberSecurity
BlackSuit: New Royal/Conti Rebrand Hits With Speed, Stealth, & Data Exfiltration
BlackSuit, a rebranded Royal/Conti ransomware, unleashes destructive multi-stage attacks. It uses Cobalt Strike, rclone for data exfil, and deletes shadow copies for stealth and speed.
⤷ Title: Hamas-Affiliated APT Ashen Lepus Unveils AshTag Malware Suite for Wider Cyber-Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:26:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #.NET malware #APT #Ashen Lepus #AshTag #cyber_espionage #Hamas #In_Memory Execution #Rclone #WIRTE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:26:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #.NET malware #APT #Ashen Lepus #AshTag #cyber_espionage #Hamas #In_Memory Execution #Rclone #WIRTE
Daily CyberSecurity
Hamas-Affiliated APT Ashen Lepus Unveils AshTag Malware Suite for Wider Cyber-Espionage
Ashen Lepus (Hamas-APT) significantly evolved during the conflict, deploying the AshTag modular .NET malware suite. It uses in-memory execution and Rclone for stealthy cyber-espionage against diplomatic targets in the Middle East.
⤷ Title: Operation CamelClone: New Global Espionage Campaign Hijacks Public Cloud Tools
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 06:03:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #cyber_espionage #cybersecurity #HOPPINGANT Loader #infosec #MEGA Storage #Operation CamelClone #Rclone #Seqrite Labs #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 06:03:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #cyber_espionage #cybersecurity #HOPPINGANT Loader #infosec #MEGA Storage #Operation CamelClone #Rclone #Seqrite Labs #threat intelligence
Daily CyberSecurity
Operation CamelClone: New Global Espionage Campaign Hijacks Public Cloud Tools
Seqrite Labs exposes Operation CamelClone, a global cyber espionage campaign using the HOPPINGANT loader and public cloud services to evade detection.
⤷ Title: The HoppingAnt Trail: Unmasking Operation CamelClone’s Global Diplomatic Siege
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 09:44:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Algeria #cloud security #Cyberespionage #Data Exfiltration #Geopolitical Lures #HOPPINGANT #Kuwait #Mongolia #Operation CamelClone #Rclone #Seqrite Labs #threat intelligence 2026 #Ukraine
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 09:44:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Algeria #cloud security #Cyberespionage #Data Exfiltration #Geopolitical Lures #HOPPINGANT #Kuwait #Mongolia #Operation CamelClone #Rclone #Seqrite Labs #threat intelligence 2026 #Ukraine
Information Security News
The HoppingAnt Trail: Unmasking Operation CamelClone’s Global Diplomatic Siege - Information Security News
The specialists at Seqrite Labs have unearthed a sequence of cyberespionage incursions, christened Operation CamelClone. This campaign has simultaneously engulfed a multitude of nations, fixing its gaze upon sovereign state apparatuses, defense syndicates…
⤷ Title: The 24-Hour Blitz: Storm-1175 Weaponizes Zero-Days for High-Velocity Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 16:36:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cybersecurity #Double Extortion #infosec #Medusa Ransomware #Microsoft Threat Intelligence #N_Day Vulnerabilities #patch management #PDQ Deployer #Ransomware_as_a_Service #Rclone #Storm_1175 #Zero_Day Exploits
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 16:36:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cybersecurity #Double Extortion #infosec #Medusa Ransomware #Microsoft Threat Intelligence #N_Day Vulnerabilities #patch management #PDQ Deployer #Ransomware_as_a_Service #Rclone #Storm_1175 #Zero_Day Exploits
Daily CyberSecurity
The 24-Hour Blitz: Storm-1175 Weaponizes Zero-Days for High-Velocity Ransomware
Microsoft exposes Storm-1175: a high-speed threat actor deploying Medusa ransomware in under 24 hours via zero-day exploits. Learn how to stop the blitz.
⤷ Title: Rclone Critical Vulnerability Alert: Public PoC Released for Administrative Auth Bypass and RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 13:53:49 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #Cloud Storage Security #cybersecurity #infosec #PoC #proof_of_concept #rce #Rclone #Remote Code Execution #vulnerability disclosure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 13:53:49 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #Cloud Storage Security #cybersecurity #infosec #PoC #proof_of_concept #rce #Rclone #Remote Code Execution #vulnerability disclosure
Daily CyberSecurity
Rclone Critical Vulnerability Alert: Public PoC Released for Administrative Auth Bypass and RCE
Technical details and PoC for Rclone’s critical 9.2 CVSS vulnerabilities (CVE-2026-41176/41179) are now public. Patch to version 1.73.5 to prevent RCE.
⤷ Title: Microsoft Teams Exploited for Silent Enterprise Takeovers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 00:40:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Administrative Protocols #data exfiltration #infosec #lateral movement #Level RMM #Microsoft Defender #Microsoft Teams #Quick Assist #Rclone #social engineering #WinRM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 00:40:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Administrative Protocols #data exfiltration #infosec #lateral movement #Level RMM #Microsoft Defender #Microsoft Teams #Quick Assist #Rclone #social engineering #WinRM
Daily CyberSecurity
Microsoft Teams Exploited for Silent Enterprise Takeovers
Microsoft warns of a Teams campaign using fake IT support to hijack workstations via Quick Assist, move laterally with WinRM, and steal data using Rclone.
⤷ Title: Critical Rclone Command Execution Bug Threatens Cloud Environments
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 01:33:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Synchronization #Command Execution #CVE_2026_49980 #Rclone #Remote Control API #security patch #Subresource Requests
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 01:33:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Synchronization #Command Execution #CVE_2026_49980 #Rclone #Remote Control API #security patch #Subresource Requests
Daily CyberSecurity
Critical Rclone Command Execution Bug Threatens Cloud Environments
A critical rclone command execution flaw allows users to execute local commands. Secure your cloud synchronization setup against this risk.