Skip to content
Thursday, June 25, 2026
  • Turla’s STOCKSTAY Backdoor Shows Why Espionage Defense Needs Egress Visibility
  • StrikeShark Shows Loader Malware Is an Edge-Exposure Problem
  • MuddyWater’s Chaos Masquerade Shows Ransomware Response Needs Attribution Discipline
  • SocGholish Takedown Shows Website Trust Is Malware Infrastructure
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Turla’s STOCKSTAY Backdoor Shows Why Espionage Defense Needs Egress Visibility
  • StrikeShark Shows Loader Malware Is an Edge-Exposure Problem
  • MuddyWater’s Chaos Masquerade Shows Ransomware Response Needs Attribution Discipline
  • SocGholish Takedown Shows Website Trust Is Malware Infrastructure
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Home
  • Malware

Malware

Editorial cybersecurity illustration of SharkLoader malware and Cobalt Strike intrusion activity
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

StrikeShark Shows Loader Malware Is an Edge-Exposure Problem

acint8 hours ago05 mins

Kaspersky’s StrikeShark research shows how opportunistic exploitation of exposed servers can become a multi-stage SharkLoader and Cobalt Strike intrusion. Here is what SMBs and government contractors should review now.

Read More
Editorial cyber threat intelligence illustration of MuddyWater using ransomware branding as a false flag.
  • Cyber Security Blog
  • General CTI
  • Iranian Cyber Threat Intelligence
  • Malware
  • Privacy & Security

MuddyWater’s Chaos Masquerade Shows Ransomware Response Needs Attribution Discipline

acint22 hours ago04 mins

Iran-linked MuddyWater activity shows why ransomware response needs to examine identity compromise, remote access, and adversary objectives instead of trusting the ransom note at face value.

Read More
Editorial CTI illustration of Operation Endgame disrupting SocGholish malware infrastructure across compromised websites.
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

SocGholish Takedown Shows Website Trust Is Malware Infrastructure

acint5 days ago03 mins

Operation Endgame disrupted SocGholish infrastructure, but the defensive lesson is bigger: compromised trusted websites are malware delivery infrastructure.

Read More
Abstract cybersecurity illustration of an AI software supply-chain compromise affecting package dependencies and developer pipelines.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Malware
  • North Korean Cyber Threat Intelligence
  • Privacy & Security

Mastra npm Compromise Shows AI Frameworks Are Supply-Chain Targets

acint5 days ago04 mins

Microsoft linked the Mastra AI npm package compromise to North Korean actor Sapphire Sleet. Here is what SMBs and government contractors should do about AI framework supply-chain risk.

Read More
Editorial cybersecurity illustration of stealth Linux malware hidden in telecom infrastructure
  • Chinese Cyber Threat Intelligence
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

Showboat Malware Shows Telecom Linux Servers Need Rootkit-Level Monitoring

acint6 days ago03 mins

Showboat is a China-linked Linux post-exploitation framework aimed at telecom providers. The lesson for defenders: treat Linux server persistence, dynamic linker abuse, and low-noise C2 as first-class monitoring priorities.

Read More
Editorial cybersecurity illustration of a compromised e-commerce review widget supply-chain attack
  • Cyber Security Blog
  • General CTI
  • Malware
  • Social Engineering

SmartApeSG Okendo Compromise Shows Third-Party Widgets Are Supply-Chain Risk

acint1 week ago03 mins

Zscaler ThreatLabz reported that SmartApeSG injected malicious JavaScript into the Okendo Reviews widget, creating downstream exposure across e-commerce sites. Here is what SMBs and government contractors should do about third-party browser code risk.

Read More
Editorial cybersecurity illustration of a Tor-based crypto clipper spreading through USB shortcuts and stealing clipboard wallet data.
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

Tor-Based Crypto Clipper Shows Clipboard Theft Is Now Backdoor Activity

acint1 week ago05 mins

Microsoft research on a Tor-routed crypto clipper shows why defenders should connect USB shortcut execution, script interpreters, localhost proxy activity, and clipboard theft into one investigation path.

Read More
Editorial cybersecurity illustration showing poisoned package artifacts moving through a CI/CD pipeline while defenders isolate untrusted code from AI scanners.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

Shai-Hulud Shows AI Package Scanners Need Prompt-Injection Boundaries

acint2 weeks ago04 mins

Zscaler ThreatLabz says the Shai-Hulud campaign has expanded across package ecosystems and introduced prompt-injection tactics aimed at automated AI security triage. The defense lesson is simple: treat package content as hostile input, even when an LLM is doing the review.

Read More
Editorial cybersecurity illustration of a legacy financial server breach and ransomware data theft risk.
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

IMA Diligence Breach Shows Legacy Servers Are Still Third-Party Risk

acint2 weeks ago03 mins

A reported IMA Diligence breach affecting more than 525,000 people shows why legacy third-party servers need ownership, monitoring, decommissioning, and data-risk review.

Read More
Editorial cybersecurity illustration of IoT botnet activity spreading through vulnerable routers and embedded devices.
  • Cyber Security Blog
  • General CTI
  • Malware

C0XMO Shows IoT Botnets Are Still an Edge Exposure Problem

acint3 weeks ago04 mins

Fortinet researchers detailed C0XMO, a Gafgyt variant spreading through DD-WRT and other exposed devices. Here is what SMBs and government contractors should lock down before compromised routers become DDoS infrastructure.

Read More
  • 1
  • 2
  • 3
  • …
  • 10

File Search

2
ThumbNameSizeDate
Thumb IOCs_YARA_TTPs_Posted_Articles/ IOCs_YARA_TTPs_Posted_Articles

IOCs_YARA_TTPs_Posted_Articles

Open 99.71 KB 2024-01-12 January 12, 2024 2024-03-22 March 22, 2024
21 Items
99.71 KB
March 22, 2024

0

26cf6185d2

2026 Powered By BlazeThemes.