⤷ Title: China-Linked Hackers Target Cisco Firewalls in Global Campaign
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 10:50:55 +0000
════════════════════════
⌗ Tags: #Security #China #Cisco #Cybersecurity #firewall #Storm_1849 #UAT4356 #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 10:50:55 +0000
════════════════════════
⌗ Tags: #Security #China #Cisco #Cybersecurity #firewall #Storm_1849 #UAT4356 #Vulnerability
Hackread
China-Linked Hackers Target Cisco Firewalls in Global Campaign
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
❤1
⤷ Title: Invisible Ransomware: Storm-0249 Weaponizes SentinelOne EDR in Stealth Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:38:43 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #EDR #Initial Access Broker #PowerShell #ransomware #ReliaQuest #SentinelOne #Storm_0249 #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:38:43 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #EDR #Initial Access Broker #PowerShell #ransomware #ReliaQuest #SentinelOne #Storm_0249 #supply chain attack
Penetration Testing Tools
Invisible Ransomware: Storm-0249 Weaponizes SentinelOne EDR in Stealth Attacks
The financially motivated group Storm-0249, long known as a broker of initial access for ransomware operators, has markedly
⤷ Title: Storm-0249 Abuses EDR Process via DLL Sideloading to Cloak Ransomware Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:11:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DLL Sideloading #EDR Bypass #IAB #initial access broker #LOLBIN #ransomware #SentinelOne #Storm_0249
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:11:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DLL Sideloading #EDR Bypass #IAB #initial access broker #LOLBIN #ransomware #SentinelOne #Storm_0249
Daily CyberSecurity
Storm-0249 Abuses EDR Process via DLL Sideloading to Cloak Ransomware Access
Storm-0249 IAB abuses the SentinelOne EDR process via DLL sideloading to evade detection. The group uses LoLBin tools for fileless execution and sells access to ransomware groups like LockBit.
⤷ Title: The Raccoon’s End: Nigerian Police Arrest Mastermind Behind RaccoonO365 PhaaS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 03:14:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BEC #Cybercrime 2025 #FBI #Joshua Ogundipe #Microsoft 365 #Okitipe Samuel #Phishing_as_a_Service #RaccoonO365 #Storm_2246 #Telegram Fraud #U.S. Secret Service
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 03:14:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BEC #Cybercrime 2025 #FBI #Joshua Ogundipe #Microsoft 365 #Okitipe Samuel #Phishing_as_a_Service #RaccoonO365 #Storm_2246 #Telegram Fraud #U.S. Secret Service
Information Security News
The Raccoon’s End: Nigerian Police Arrest Mastermind Behind RaccoonO365 PhaaS
Nigerian authorities have arrested an individual believed to be one of the developers behind RaccoonO365, a phishing-as-a-service platform that enabled criminals to mass-produce fake Microsoft log…
⤷ Title: Dismantling the Phish-Factory: Microsoft Seizes RedVDS Cybercrime Network
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 03:31:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BEC #cybercrime #Digital Crimes Unit #Europol #H2 Pharma #Infosec #Jan 2026 #Microsoft #phishing #RedVDS #Storm_2470
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 03:31:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BEC #cybercrime #Digital Crimes Unit #Europol #H2 Pharma #Infosec #Jan 2026 #Microsoft #phishing #RedVDS #Storm_2470
Penetration Testing Tools
Dismantling the Phish-Factory: Microsoft Seizes RedVDS Cybercrime Network
Microsoft has formally proclaimed the neutralization of RedVDS, a nefarious platform that, since 2019, provided cyber adversaries with
⤷ Title: Shadows in the Server: How the Warlock Group Weaponized a “Forgotten” VM to Breach SmarterTools
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 09:27:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Directory #CVE_2026_23760 #CVE_2026_24423 #Gold Salem #ransomware #SentinelOne #SmarterMail #SmarterTools #Storm_2603 #Tech News 2026 #Warlock Group #zero_day exploit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 09:27:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Directory #CVE_2026_23760 #CVE_2026_24423 #Gold Salem #ransomware #SentinelOne #SmarterMail #SmarterTools #Storm_2603 #Tech News 2026 #Warlock Group #zero_day exploit
Penetration Testing Tools
Shadows in the Server: How the Warlock Group Weaponized a "Forgotten" VM to Breach SmarterTools
SmarterTools has disclosed a comprehensive retrospective regarding a recent infiltration of its infrastructure, meticulously delineating the adversaries’ entry
⤷ Title: Email Under Siege: Storm-2603 Exploits SmarterMail to Deploy Warlock Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:28:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_23760 #CVE_2026_24423 #Email Security #living_off_the_land #Patch Alert #ReliaQuest #SmarterMail #Storm_2603 #Velociraptor #Warlock Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:28:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_23760 #CVE_2026_24423 #Email Security #living_off_the_land #Patch Alert #ReliaQuest #SmarterMail #Storm_2603 #Velociraptor #Warlock Ransomware
Daily CyberSecurity
Email Under Siege: Storm-2603 Exploits SmarterMail to Deploy Warlock Ransomware
Storm-2603 exploits SmarterMail vulnerability CVE-2026-23760 to deploy Warlock ransomware. Upgrade to Build 9511 immediately to prevent system compromise.
⤷ Title: The Fall of a Phishing Giant: How International Law Enforcement Crushed the Tycoon 2FA Empire
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 07:25:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ATO Jumping #cybercrime takedown #Europol #MFA Bypass #Microsoft 365 security #Phishing_as_a_Service #Saad Afridi #Session Hijacking #Storm_1747 #Tech News 2026 #Tycoon 2FA
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 07:25:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ATO Jumping #cybercrime takedown #Europol #MFA Bypass #Microsoft 365 security #Phishing_as_a_Service #Saad Afridi #Session Hijacking #Storm_1747 #Tech News 2026 #Tycoon 2FA
Penetration Testing Tools
The Fall of a Phishing Giant: How International Law Enforcement Crushed the Tycoon 2FA Empire
An international law enforcement operation has successfully dismantled Tycoon 2FA, one of the most formidable phishing-as-a-service platforms in
⤷ Title: Blitz Brigantine Weaponizes Email Bombing and DNS MX Records to Deploy AOBackdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 01:01:46 +0000
════════════════════════
⌗ Tags: #Malware #AOBackdoor #Black Basta #Blitz Brigantine #BlueVoyant #cybersecurity #DLL Sideloading #DNS tunneling #social engineering #Storm_1811 #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 01:01:46 +0000
════════════════════════
⌗ Tags: #Malware #AOBackdoor #Black Basta #Blitz Brigantine #BlueVoyant #cybersecurity #DLL Sideloading #DNS tunneling #social engineering #Storm_1811 #threat intelligence
Daily CyberSecurity
Blitz Brigantine Weaponizes Email Bombing and DNS MX Records to Deploy AOBackdoor
BlueVoyant exposes Blitz Brigantine's new tactics: using email bombing, Microsoft Teams lures, and covert DNS MX tunneling to deploy AOBackdoor.
⤷ Title: The Fake VPN Trap: Microsoft Warns of Storm-2561 SEO Poisoning Campaigns Stealing Corporate Credentials
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 02:00:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Theft #cybersecurity #Fake VPN #Hyrax Infostealer #infosec #Microsoft Defender Experts #Pulse Secure #SEO Poisoning #Storm_2561 #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 02:00:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Theft #cybersecurity #Fake VPN #Hyrax Infostealer #infosec #Microsoft Defender Experts #Pulse Secure #SEO Poisoning #Storm_2561 #threat intelligence
Daily CyberSecurity
The Fake VPN Trap: Microsoft Warns of Storm-2561 SEO Poisoning Campaigns Stealing Corporate Credentials
Microsoft Defender Experts warn of Storm-2561 using SEO poisoning to distribute fake enterprise VPN clients like Pulse Secure, stealing user credentials.