Cyberespionage

This list includes only articles designated for public release.

Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms

Aleksandar Milenkoski, Sreekar Madabushi (Validin), Kenneth Kinion (Validin)

Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets

Aleksandar Milenkoski, Tom Hegel

Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries

Tom Hegel, Aleksandar Milenkoski, Jim Walter

Ransomware’s New Masters: How States Are Hijacking Cybercrime

Aleksandar Milenkoski, Jiro Minier (Deutsche Cyber-Sicherheitsorganisation - DCSO), Julian-Ferdinand Vögele (Recorded Future), Max Smeets (Virtual Routes), Taylor Grossman

Censorship as a Service | Leak Reveals Public-Private Collaboration to Monitor Chinese Cyberspace

Alex Delamotte, Aleksandar Milenkoski, Dakota Cary

Operation Digital Eye | Chinese APT Compromises Critical Digital Infrastructure via Visual Studio Code Tunnels

Aleksandar Milenkoski, Luigi Martire (Tinexta Cyber)

ChamelGang & Friends | Cyberespionage Groups Attacking Critical Infrastructure with Ransomware

Aleksandar Milenkoski, Julian-Ferdinand Vögele (Recorded Future)

ChamelGang & Friends | Cyberespionage Groups Attacking Critical Infrastructure with Ransomware (Full Report)

Aleksandar Milenkoski, Julian-Ferdinand Vögele (Recorded Future)

Doppelgänger | Russia-Aligned Influence Operation Targets Germany

Aleksandar Milenkoski

Unmasking I-Soon | The Leak That Revealed China’s Cyber Operations

Dakota Cary, Aleksandar Milenkoski

ScarCruft | Attackers Gather Strategic Intelligence and Target Cybersecurity Professionals

Aleksandar Milenkoski, Tom Hegel

Gaza Cybergang | Unified Front Targeting Hamas Opposition

Aleksandar Milenkoski

Sandman APT | China-Based Adversaries Embrace Lua

Aleksandar Milenkoski, Bendik Hagen (PwC), Microsoft Threat Intelligence

The Israel-Hamas War | Cyber Domain State-Sponsored Activity of Interest

Tom Hegel, Aleksandar Milenkoski

Sandman APT | A Mystery Group Targeting Telcos with a LuaJIT Toolkit

Aleksandar Milenkoski, in collaboration with QGroup

Chinese Entanglement | DLL Hijacking in the Asian Gambling Sector

Aleksandar Milenkoski, Tom Hegel

Comrades in Arms? | North Korea Compromises Sanctioned Russian Missile Engineering Company

Tom Hegel, Aleksandar Milenkoski

Kimsuky Strikes Again | New Social Engineering Campaign Aims to Steal Credentials and Gather Strategic Intelligence

Aleksandar Milenkoski

Kimsuky | Ongoing Campaign Using Tailored Reconnaissance Toolkit

Aleksandar Milenkoski, Tom Hegel

Kimsuky Evolves Reconnaissance Capabilities in New Global Campaign

Tom Hegel, Aleksandar Milenkoski

Transparent Tribe (APT36) | Pakistan-Aligned Threat Actor Expands Interest in Indian Education Sector

Aleksandar Milenkoski

SmoothOperator | Ongoing Campaign Trojanizes 3CXDesktopApp in Supply Chain Attack

Juan Andres Guerrero-Saade, Asaf Gilboa, David Acs, James Haughom, Phil Stokes, SentinelLabs

Operation Tainted Love | Chinese APTs Target Telcos in New Attacks

Aleksandar Milenkoski, Juan Andres Guerrero-Saade, Joey Chen, in collaboration with QGroup

WIP26 Espionage | Threat Actors Abuse Cloud Infrastructure in Targeted Telco Attacks

Aleksandar Milenkoski, Collin Farr, Joey Chen, in collaboration with QGroup

DragonSpark | Attacks Evade Detection with SparkRAT and Golang Source Code Interpretation

Aleksandar Milenkoski, Joey Chen, Amitai Ben Shushan Ehrlich

NoName057(16) – The Pro-Russian Hacktivist Group Targeting NATO

Tom Hegel, Aleksandar Milenkoski

The Mystery of Metador | Unpicking Mafalda’s Anti-Analysis Techniques

Aleksandar Milenkoski

The Mystery of Metador | An Unattributed Threat Hiding in Telcos, ISPs, and Universities

Juan Andres Guerrero-Saade, Amitai Ben Shushan Ehrlich, Aleksandar Milenkoski

The Mystery of Metador | An Unattributed Threat Hiding in Telcos, ISPs, and Universities (Full Report)

Amitai Ben Shushan Ehrlich, Aleksandar Milenkoski, Juan Andres Guerrero-Saade

The Mystery of Metador | Technical Appendix

Aleksandar Milenkoski, Amitai Ben Shushan Ehrlich