home.social

#threat-intelligence — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #threat-intelligence, aggregated by home.social.

fetched live
  1. Stolen phones - and specifically iPhones - have robust anti-theft protections. They are worthless once they're flagged - locked to their owner. So why are millions still being stolen every year?
    In this paper, we uncover a thriving underground marketplace focused on unlocking stolen phones. It is powered by:

    Lookalike domains impersonating Apple, Xiaomi, Samsung and other brands
    Smishing campaigns targeting device owners
    Pay‑as‑you‑go “unlocking” tools sold on Telegram
    By pivoting on DNS data, we identified 10,000+ malicious domains and a growing ecosystem turning locked devices into profit at scale.

    👉 Read how this supply chain works—from theft to resale—and why it’s growing fast. infoblox.com/blog/threat-intel

    #ThreatIntel #CyberSecurity #Phishing #MobileSecurity #iOS #Smishing #dns #threatintelligence #cybercrime #infosec #infoblox #infobloxthreatintel #threatintelligence #cybercrime  #infosec #infoblox #infobloxthreatintel

  2. Why do security teams miss so much?

    John Morgan points to the investigation layer: humans spend time correlating signals, and that’s where detections can slip through. AI can help across ingestion, correlation, investigation—and even some response.

    Read/listen at youtube.com/shorts/opn9ImKi_Nw

    #AnalysePodcast #CyberSecurity #ArtificialIntelligence #ThreatIntelligence

  3. 🚨New ransom group blog posts!🚨

    Group name: payoutsking
    Post title: NTN Bearing Corporation of America
    Info: cti.fyi/groups/payoutsking.html

    Group name: dragonforce
    Post title: Tricon Infotech
    Info: cti.fyi/groups/dragonforce.html

    Group name: dragonforce
    Post title: Pamil Modulsystem
    Info: cti.fyi/groups/dragonforce.html

    Group name: dragonforce
    Post title: MicroMarketing
    Info: cti.fyi/groups/dragonforce.html

    Group name: qilin
    Post title: Bluize
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: Mayer
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: Spirit Medical Transport
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: Domaine Des Tournels
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: Johnson Carter Architects
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: LTJ Industrial Services
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: Brand X Hydrovac Services
    Info: cti.fyi/groups/qilin.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec

  4. For the first time, Google Threat Intelligence Group has identified a Threat Actor using a Zero-Day Exploit that they believe was developed with AI #Infosec #ThreatIntelligence #AI cloud.google.com/blog/topics/t

  5. 🚨New ransom group blog posts!🚨

    Group name: qilin
    Post title: John G Yphantides A Professional Law
    Info: cti.fyi/groups/qilin.html

    Group name: qilin
    Post title: One Legal
    Info: cti.fyi/groups/qilin.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec

  6. Resulting from funding gaps and idiotic shifts in priorities the U.S.A. is now woefully under investing in our core CyberDefense Ecosystem....

    National Institute of Standards and Technology (NIST) is no longer enhancing all Common Vulnerabilities and Exposures (CVEs) with analysis and severity indicators, and instead NIST will prioritize enriching a much narrower set of security vulnerabilities.

    Related: In April 2025, a funding gap by in DHS appropriations threatened to cease CVE operations entirely —which would have creating systemic risk for global vulnerability management. An emergency funding extension was implemented to avoid a full on crisis. justsecurity.org/136914/nist-c #NIST #MITRE #CVEs #NVD #Security #Risk #CyberSecurity #CyberDefence #CyberInfrastructure #AI #AISecurity #CISA #DHS #Vulnerability #ThreatIntelligence

  7. 🚨New ransom group blog posts!🚨

    Group name: akira
    Post title: Allele Diagnostics
    Info: cti.fyi/groups/akira.html

    Group name: akira
    Post title: Institute of Private Enterprise Development
    Info: cti.fyi/groups/akira.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec

  8. 🚨New ransom group blog posts!🚨

    Group name: payload
    Post title: Inteceng.com.my (+ Tsksynergy.com.my + Amemanufacturing.com.my + Woodnova.com.my)
    Info: cti.fyi/groups/payload.html

    Group name: payload
    Post title: Gorey Community School
    Info: cti.fyi/groups/payload.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec

  9. 🚨New ransom group blog post!🚨

    Group name: everest
    Post title: Evaluate a Norstella company - Database Leaked
    Info: cti.fyi/groups/everest.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec