Click here to download all references as Bib-File.
2023-09-19 ⋅ Recorded Future ⋅ Multi-year Chinese APT Campaign Targets South Korean Academic, Government, and Political Entities Korlia |
2023-08-07 ⋅ Recorded Future ⋅ RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global Scale Winnti Brute Ratel C4 Cobalt Strike FunnySwitch PlugX ShadowPad Spyder |
2023-08-02 ⋅ Recorded Future ⋅ BlueCharlie, Previously Tracked as TAG 53, Continues to Deploy New Infrastructure in 2023 |
2023-08-02 ⋅ Recorded Future ⋅ BlueCharlie, Previously Tracked as TAG-53, Continues to Deploy New Infrastructure in 2023 |
2023-07-27 ⋅ Recorded Future ⋅ BlueBravo Adapts to Target Diplomatic Entities with GraphicalProton Malware GraphDrop GraphicalNeutrino QUARTERRIG |
2023-06-20 ⋅ Recorded Future ⋅ BlueDelta Exploits Ukrainian Government Roundcube Mail Servers to Support Espionage Activities |
2023-06-20 ⋅ Recorded Future ⋅ BlueDelta Exploits Ukrainian Government Roundcube Mail Servers to Support Espionage Activities |
2023-03-30 ⋅ Recorded Future ⋅ With KEYPLUG, China’s RedGolf Spies On, Steals From Wide Field of Targets KEYPLUG Cobalt Strike PlugX |
2023-01-26 ⋅ Recorded Future ⋅ BlueBravo Uses Ambassador Lure to Deploy GraphicalNeutrino Malware GraphicalNeutrino APT29 |
2022-12-22 ⋅ Recorded Future ⋅ RedDelta Targets European Government Organizations and Continues to Iterate Custom PlugX Variant PlugX |
2022-12-05 ⋅ Recorded Future ⋅ Exposing TAG-53’s Credential Harvesting Infrastructure Used for Russia-Aligned Espionage Operations TAG-53 |
2022-12-05 ⋅ Recorded Future ⋅ Exposing TAG-53’s Credential Harvesting Infrastructure Used for Russia-Aligned Espionage Operations TAG-53 |
2022-12-05 ⋅ Recorded Future ⋅ Exposing TAG-53’s Credential Harvesting Infrastructure Used for Russia-Aligned Espionage Operations |
2022-11-29 ⋅ Recorded Future ⋅ Suspected Iran-Nexus TAG-56 Uses UAE Forum Lure for Credential Theft Against US Think Tank |
2022-09-28 ⋅ Recorded Future ⋅ 1 KEY FOR 1 LOCK: The Chinese Communist Party’s Strategy for Targeted Propaganda |
2022-09-22 ⋅ Recorded Future ⋅ Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan Targets 8.t Dropper LOWZERO |
2022-09-20 ⋅ Recorded Future ⋅ Threat Actors Continue to Abuse Google Tag Manager for Payment Card e-Skimming |
2022-09-19 ⋅ Recorded Future ⋅ Russia-Nexus UAC-0113 Emulating Telecommunication Providers in Ukraine Ave Maria Colibri Loader DCRat |
2022-08-16 ⋅ Recorded Future ⋅ RedAlpha Conducts Multi-Year Credential Theft Campaign Targeting Global Humanitarian, Think Tank, and Government Organizations RedAlpha |
2022-08-02 ⋅ Recorded Future ⋅ Initial Access Brokers Are Key to Rise in Ransomware Attacks Azorult BlackMatter Conti Mars Stealer Raccoon RedLine Stealer Taurus Stealer Vidar |