Tag
HEAVYGRAM Telegram-based Surveillance Backdoor
1 TTPHEAVYGRAM is a Windows-based surveillance backdoor used by Handala Hack that utilizes the Telegram API for command-and-control communication to facilitate remote information theft and system monitoring.
Iranian State-Sponsored Surveillance Malware: Chosen Brick
1 rule 4 TTPsIranian state-sponsored actors are leveraging the 'Chosen Brick' Windows malware to conduct surveillance on global activists and journalists via social engineering and Telegram-based command-and-control.
Generative Threat Groups Automating Cyber Operations with AI
3 TTPsAnthropic has documented multiple threat actors leveraging AI models to automate end-to-end cyberattack workflows including reconnaissance, vulnerability research, credential harvesting, and large-scale data exfiltration.
C-MOR Video Surveillance Directory Traversal Vulnerability
2 rules 2 TTPsC-MOR Video Surveillance versions up to 6.0104 are vulnerable to an unauthenticated directory traversal attack in the show-movies.pml component, allowing remote attackers to read arbitrary files.
ToTok iOS Application Used for Government Surveillance
2 rules 2 TTPs 2 IOCsThe ToTok iOS application, developed by Breej Holding Ltd., was identified as a spying tool used by the government of the United Arab Emirates (UAE) to track users' conversations, movements, and relationships by collecting sensitive user data and transmitting it to servers using self-signed certificates.