Skip to content
Wednesday, June 3, 2026
  • TA4922’s Global Expansion Shows HR and Tax Lures Are Initial Access Infrastructure
  • Red Hat’s Miasma npm Compromise Shows Trusted Publishing Is Not a Control Boundary
  • AI-Assisted Ransomware Tooling Shows EDR Evasion Is Now an Iteration Problem
  • FlutterBridge Shows Why macOS Malvertising Is Backdoor Delivery, Not Just Adware
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • TA4922’s Global Expansion Shows HR and Tax Lures Are Initial Access Infrastructure
  • Red Hat’s Miasma npm Compromise Shows Trusted Publishing Is Not a Control Boundary
  • AI-Assisted Ransomware Tooling Shows EDR Evasion Is Now an Iteration Problem
  • FlutterBridge Shows Why macOS Malvertising Is Backdoor Delivery, Not Just Adware
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
Recent
  • Editorial cybersecurity illustration showing global phishing, remote access tooling, and defensive monitoring for TA4922-style campaigns.

    TA4922’s Global Expansion Shows HR and Tax Lures Are Initial Access Infrastructure

    2 hours ago
  • Editorial cybersecurity illustration of an npm supply-chain compromise moving through CI/CD pipelines and cloud credentials.

    Red Hat’s Miasma npm Compromise Shows Trusted Publishing Is Not a Control Boundary

    7 hours ago
  • Editorial illustration of AI-assisted ransomware tooling testing EDR evasion and Active Directory discovery workflows.

    AI-Assisted Ransomware Tooling Shows EDR Evasion Is Now an Iteration Problem

    21 hours ago
  • Cyber threat intelligence illustration of macOS malvertising delivering a FlutterShell backdoor through fake desktop applications.

    FlutterBridge Shows Why macOS Malvertising Is Backdoor Delivery, Not Just Adware

    1 day ago
  • Editorial cybersecurity illustration of Mustang Panda PlugX fake browser updater intrusion chain

    Mustang Panda’s Fake Browser Updater Shows Why LNK Files Still Matter

    1 day ago
  • Editorial cybersecurity illustration of FortiClient EMS exploitation delivering an infostealer through endpoint management workflows.

    FortiClient EMS Exploitation Turns Endpoint Management Into an Infostealer Delivery System

    2 days ago
  • Editorial cybersecurity illustration of AI support bot account recovery abuse defended by passkeys and MFA

    Meta AI Support Bot Abuse Shows Account Recovery Is Part of the Identity Perimeter

    2 days ago
  • Abstract cybersecurity illustration of an information stealer moving endpoint data through webhook infrastructure.

    SolyxImmortal Shows Why Python Infostealers Are a Business Risk, Not Just Malware Noise

    2 days ago
  • Editorial cybersecurity illustration of telecom network intrusion using Linux and Windows backdoors with defender tracing covert proxy tunnels.

    Showboat and JFMBackdoor Show Telecom Intrusions Are Built for Pivoting

    3 days ago
  • Illustration of a WordPress plugin vulnerability being exploited to create rogue administrator accounts while defenders patch and investigate.

    WP Maps Pro Exploitation Shows Why Plugin Support Features Need Security Review

    3 days ago
Professional cybersecurity illustration of defenders prioritizing Microsoft Patch Tuesday vulnerabilities across servers and identity systems.
  • Cyber Security Blog
  • General CTI

May 2026 Patch Tuesday: How SMBs Should Prioritize 132 Microsoft CVEs

acint3 weeks ago04 mins

Microsoft’s May 2026 Patch Tuesday shipped 132 CVEs. Here is how SMBs and government contractors should prioritize identity, server, and Office risks first.

Read More
Editorial cybersecurity illustration of ransomware-as-a-service infrastructure exposed by a leaked backend database.
  • Cyber Security Blog
  • General CTI
  • Malware

The Gentlemen RaaS Leak Shows Ransomware Is Still an Edge-Device Problem

acint3 weeks ago04 mins

Check Point’s look inside The Gentlemen ransomware operation is a useful reminder for SMBs and government contractors: exposed edge appliances, weak identity controls, and unmanaged remote access paths still drive real ransomware risk.

Read More
Cybersecurity illustration of a trusted software download site being abused to deliver poisoned installers in a supply chain attack.
  • Cyber Security Blog
  • General CTI
  • Malware

JDownloader Site Compromise Shows Why Trusted Downloads Still Need Verification

acint4 weeks ago05 mins

Attackers swapped selected JDownloader website download links with malicious installers. Here is what SMB and government-contractor defenders should do about trusted-download risk.

Read More
Editorial cybersecurity illustration of a fake AI model repository hiding an infostealer attack chain.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Malware
  • Social Engineering

Fake OpenAI Hugging Face Repo Shows AI Supply Chain Risk Is Already Here

acint4 weeks ago04 mins

A fake OpenAI Privacy Filter repository on Hugging Face delivered Windows infostealer malware. Here is what SMB and gov-contractor defenders should take from it.

Read More
Abstract cybersecurity illustration of AI agent tool calls crossing into shell command execution and defensive containment controls.
  • AI (General)
  • Cyber Security Blog
  • General CTI

MCP Server Command Injection Shows Why AI Tools Need Real Isolation

acint4 weeks ago03 mins

A critical GitHub advisory for @profullstack/mcp-server shows how unsafe AI tool endpoints can turn domain lookup functionality into unauthenticated remote code execution.

Read More
Editorial cybersecurity illustration of Dirty Frag Linux privilege escalation affecting server and container environments
  • Cyber Security Blog
  • General CTI

Dirty Frag Turns Linux Footholds Into Root: What Defenders Should Do Now

acint4 weeks ago04 mins

Microsoft is tracking active Dirty Frag Linux privilege escalation activity. Here is what SMB and gov-contractor defenders should prioritize now.

Read More
Editorial cybersecurity illustration of AI agent tool calls becoming shell commands and execution risk.
  • AI (General)
  • Cyber Security Blog
  • General CTI

Prompt Injection Just Became an RCE Problem for AI Agents

acint4 weeks ago04 mins

Microsoft disclosed Semantic Kernel vulnerabilities showing how prompt injection can cross into code execution when AI agents are connected to unsafe tools. Here is what defenders should review now.

Read More
Satellite over Earth with glowing geospatial data streams representing NASA Prithvi AI in orbit
  • Makes you Think

NASA Put a Geospatial AI Foundation Model in Orbit — That Should Make You Think

acint4 weeks ago03 mins

NASA and IBM’s open-source Prithvi geospatial AI model has now been demonstrated in orbit. The milestone points toward a future where satellites analyze data before sending it home — and where security has to follow AI into operational environments.

Read More
Editorial cybersecurity illustration of an exposed edge firewall under stealthy network attack
  • Cyber Security Blog
  • General CTI

PAN-OS Captive Portal Zero-Day Shows Why Internet-Facing Edge Devices Need Immediate Review

acint4 weeks ago03 mins

Unit 42 reports limited exploitation of CVE-2026-0300, a PAN-OS Captive Portal zero-day. Here is what SMB and government-contractor defenders should check now.

Read More
Dark editorial illustration of a cloud worm stealing credentials from containerized cloud infrastructure
  • Cyber Security Blog
  • General CTI
  • Malware

PCPJack Shows Cloud Malware Is Moving From Cryptomining to Credential Theft

acint4 weeks ago03 mins

SentinelLabs reported PCPJack, a cloud-focused worm that evicts TeamPCP artifacts, steals credentials from exposed infrastructure, and spreads across cloud systems.

Read More
  • 1
  • …
  • 4
  • 5
  • 6
  • 7
  • 8
  • …
  • 33

File Search

2
ThumbNameSizeDate
Thumb IOCs_YARA_TTPs_Posted_Articles/ IOCs_YARA_TTPs_Posted_Articles

IOCs_YARA_TTPs_Posted_Articles

Open 99.71 KB 2024-01-12 January 12, 2024 2024-03-22 March 22, 2024
21 Items
99.71 KB
March 22, 2024

0

9c7306c2b7

2026 Powered By BlazeThemes.