Storm-1175: Threat Actor Profile
Storm-1175, also known as Spearwing, is a China-linked financially motivated cybercriminal group active since 2023, deploying Medusa ransomware and exploiting...
Storm-1175, also known as Spearwing, is a China-linked financially motivated cybercriminal group active since 2023, deploying Medusa ransomware and exploiting...
The China-linked group Storm-1175 rapidly exploits zero-day and recent vulnerabilities to deploy Medusa ransomware targeting healthcare, education, and finance sectors...
Operation TrueChaos exploited a zero-day vulnerability in TrueConf's update process to deploy malicious updates across Southeast Asian government networks, linked...
North Korean hackers linked to UNC4736 stole $285 million from Drift Protocol on Solana after infiltrating the platform for six...
Nasir Security, an Iran-aligned hacktivist group, claimed to have breached Kuwait's Ministry of Interior amid ongoing Iranian missile strikes, threatening...
TeamPCP is a financially motivated cybercrime group active since 2025, known for disrupting supply chains through attacks on developer tools,...
TeamPCP exploited a stolen AWS API key to breach the European Commission's cloud, affecting over 70 EU entities, with stolen...
China-linked hackers breached the FBI's wiretap system via a telecom vendor, exposing sensitive surveillance metadata and triggering a major incident...
Handala Hack claimed to have wiped 22TB of data from 14 Israeli small to mid-size businesses, including Fuse Stereo and...
The Iranian-linked group Handala Hack claims to have breached Israeli defense contractor PSK Wind Technologies, allegedly stealing sensitive command and...