Threat Intelligence — Page 21

Full-frame photoreal editorial shot of a dimly lit open-plan office at night, a desk phone glowing under a single lamp, a laptop screen out of focus in the back
Threat Intelligence

Helix: the new extortion crew phoning staff to raid SharePoint files

Researchers at ReliaQuest say the group impersonates managers on the phone, tricks staff into a login trap, then hoovers up company documents from Microsoft SharePoint.

3 min read
A photoreal editorial shot of a dimly lit server room aisle, one rack door left slightly ajar with a single amber warning light glowing inside, cables neatly bu
Threat Intelligence

The Boring Breaches: How Small Config Mistakes Keep Owning Big Companies

This week's roundup of incidents has a common thread: not clever attacks, just loose settings, reused names, and untouched defaults doing enormous damage.

3 min read
Photoreal news-editorial photograph, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

Your Business Is Already a Wartime Target. Here Is What to Do About It.

Nation-states attacking private companies is not a future risk. It happened at scale in 2017 and the conditions that made it possible have only grown more complicated since.

3 min read
Photoreal news-editorial photograph, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

Eight in Ten Corporate Servers Can Be Reached From Anywhere Inside the Same Network

A study of 54 trillion real-world network events found that most enterprise servers are wide open once an attacker gets past the front door, and many organisations have no clear idea how bad the exposure is.

3 min read
Full frame overhead photoreal editorial shot of a modern home desk with an open laptop showing a generic software installer progress bar, a coffee mug, a notebo
Threat Intelligence

Fake 7-Zip Downloads Are Quietly Turning Home PCs Into Criminal Middlemen

A group Infoblox calls Lurking Lizard has been running a rogue proxy service from 230+ lookalike sites since 2022, hiding the malware inside fake copies of the popular 7-Zip file compression tool.

3 min read
Photoreal news-editorial style, 16:9 framing, edge-to-edge composition
Threat Intelligence

Criminals Are Using GitHub's Own Public Tools to Map Your Company Before They Strike

Researchers at Datadog tracked months of quiet, automated snooping across GitHub that blends perfectly into normal traffic, and most organisations never notice it happening.

3 min read
Full-frame overhead photo of a developer's dark wooden desk lit by warm lamplight, showing an open laptop with generic blurred code on screen, a small stack of
Threat Intelligence

Fake Paysafe and Skrill SDKs on npm and PyPI Went After Developers' Secrets

A single attacker uploaded 17 lookalike payment packages that quietly stole API keys, cloud credentials and GitHub tokens from anyone who installed them.

4 min read
Photoreal news-editorial image, 16:9, full frame edge to edge
Threat Intelligence

China-linked hackers hit university email servers to spy on physics and defence researchers

A group tracked as UNK_MassTraction is exploiting two Roundcube flaws at U.S. and Canadian universities to steal logins and plant backdoors, Proofpoint says.

4 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

Fake Pirated Software Ads Are Draining Passwords and Hijacking Computers to Mine Crypto

A campaign uncovered by Palo Alto Networks researchers is tricking people into downloading malware disguised as cracked software, stealing saved passwords while quietly running up victims' electricity bills.

3 min read
A close-up, editorial-style photograph of a small black wireless router sitting on a plain wooden desk in a modest office, indicator lights glowing faintly gree
Threat Intelligence

Chinese Hacking Group Adds Three New Backdoors to Its Router Attack Kit

The group behind a long-running campaign targeting small office routers has quietly expanded its toolbox, giving it more ways to hide inside a victim's network.

3 min read
A close-up photoreal shot of a laptop screen showing a blurred generic corporate login form, with a faint ghostly overlay of scrambled characters resolving into
Threat Intelligence

'Ghost Phishing' Campaign Slips Past Email Filters by Hiding Until It Reaches the Victim

The EvilTokens operation is hitting companies across the US and Europe with pages that stay encrypted in transit and only unlock inside the target's browser.

4 min read
Full frame photoreal editorial image of a laptop screen showing a generic blurred verification prompt with a checkbox, warm desk lamp light, a Mexican peso coin
Threat Intelligence

Fake CAPTCHA Pages Are Stealing From Mexican Bank Customers

Elastic Security Labs is tracking a fraud campaign, dubbed REF6045, that tricks people into pasting a malicious command from a bogus 'prove you're human' page.

3 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

Blocking Phishing Emails Is Not Enough. Here Is Why the Attack Carries On Anyway.

Filtering a malicious email out of your inbox stops one message, not the criminal behind it. A live webinar on 8 July 2026 sets out what disrupting a phishing campaign at its source actually requires.

3 min read
A shadowed office desk in a nondescript suburban business park at dusk, photoreal news-editorial style, full-frame edge-to-edge composition, 16:9
Threat Intelligence

Convicted fraudsters are running a US startup offering $7 million for software exploits

IRIS C2 says it pays up to $7 million for zero-day exploits. Its owners are Jacob Wohl and Jack Burkman, best known for felony robocall convictions and a string of political dirty-tricks stunts.

4 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

Fake Tax Emails Are Planting Two Separate Spying Tools on Indian Taxpayers' Computers

A campaign timed to India's tax filing season tricks people into downloading what looks like an official government utility. Inside: two hidden programs that give criminals full remote control of the victim's machine.

3 min read
© 2026 Threat Vectr