Skip to content
  • Sun. Feb 22nd, 2026
TIR
  • Home
  • Blog
  • Intelligence Reliability
  • Learning CTI Skills
  • Privacy Policy
  • Subscribe
Subscribe
Top Tags
  • Incident_Response
  • Threat_Hunting
  • Vulnerability Management
  • Malware_Detection
  • Cybercrime_Organizations
  • Ransomware
  • Phishing

Latest Post

Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV Payload Ransomware: Early Profile APT33 – Threat Actor Profile BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions Ivanti EPMM Pre-Auth RCE (CVE-2026-1281) Under Active Exploitation
Threat_Actor_Profiles

Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV

21 February 2026 Threat Analyst
Articles

Payload Ransomware: Early Profile

21 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles

APT33 – Threat Actor Profile

21 February 2026 Threat Analyst
Vulnerabilities_Exploits

BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions

21 February 2026 Threat Analyst
Vulnerabilities_Exploits

Ivanti EPMM Pre-Auth RCE (CVE-2026-1281) Under Active Exploitation

21 February 2026 Threat Analyst
  • Latest
  • Popular
  • Trending
Threat_Actor_Profiles
Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV
Articles
Payload Ransomware: Early Profile
Techniques_Tactics_Procedures Threat_Actor_Profiles
APT33 – Threat Actor Profile
Vulnerabilities_Exploits
BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions
Threat_Actor_Profiles
Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV
Articles
Payload Ransomware: Early Profile
Techniques_Tactics_Procedures Threat_Actor_Profiles
APT33 – Threat Actor Profile
Vulnerabilities_Exploits
BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions
Threat_Actor_Profiles
Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV
Articles
Payload Ransomware: Early Profile
Techniques_Tactics_Procedures Threat_Actor_Profiles
APT33 – Threat Actor Profile
Vulnerabilities_Exploits
BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions

EDITOR'S CHOICE

Threat_Actor_Profiles

Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV

21 February 2026 Threat Analyst
Articles

Payload Ransomware: Early Profile

21 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles

APT33 – Threat Actor Profile

21 February 2026 Threat Analyst
Vulnerabilities_Exploits

BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions

21 February 2026 Threat Analyst
Vulnerabilities_Exploits

Ivanti EPMM Pre-Auth RCE (CVE-2026-1281) Under Active Exploitation

21 February 2026 Threat Analyst
Articles

EDR Killers in 2026: The most common ways attackers neutralize endpoint security — and how to stop them

21 February 2026 Threat Analyst
Articles

BYOVD in 2026: the signed-driver loophole powering EDR bypass at scale

21 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles Vulnerabilities_Exploits

APT29 (Cozy Bear / The Dukes / Midnight Blizzard) – Threat Actor Profile

20 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles

APT28 (Fancy Bear / Sofacy / Sednit / Forest Blizzard) – Threat Actor Profile

20 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles

APT31 (Violet Typhoon / ZIRCONIUM) – Threat Actor Profile

20 February 2026 Threat Analyst
Incident_Reports

Quanta Ransomware Attack

17 July 2022 Threat Analyst

In April, Quanta, a Taiwan-based manufacturer of Apple products, fell victim to a ransomware attack. The REvil group claimed responsibility, threatening to release sensitive data if a ransom was not…

Incident_Reports

CNA Financial Ransomware Attack

17 July 2022 Threat Analyst

In March, CNA Financial, one of the largest insurance providers in the U.S., was disrupted by a ransomware attack. The company had to disconnect systems and services for several days…

Incident_Reports

Australia Channel 9 News Ransomware Attack

17 July 2022 Threat Analyst

In March, Channel 9 News, a major broadcaster in Australia, fell victim to a ransomware attack that significantly disrupted their ability to broadcast. This cyber attack demonstrated the potential of…

Incident_Reports

Florida Water Supply Hack

17 July 2022 Threat Analyst

In February, an unknown attacker attempted to poison the Oldsmar city water supply in Florida by manipulating the sodium hydroxide levels through a remote access system. The attacker gained unauthorized…

Incident_Reports

Accellion Supply Chain Attack

17 July 2022 Threat Analyst

In January, a software company named Accellion fell victim to a sophisticated supply chain attack. This cyber attack had a broad impact as it affected numerous organizations across various sectors…

Incident_Reports Techniques_Tactics_Procedures

Microsoft Exchange Vulnerabilities

17 July 2022 Threat Analyst

In the period from January to March, Microsoft Exchange Server software suffered from a series of significant data breaches caused by the exploitation of four vulnerabilities. These vulnerabilities were primarily…

Incident_Reports

Colonial Pipeline Ransomware Attack of 2021: Disrupting Critical Infrastructure

17 July 2022 Threat Analyst

Tags: DarkSide, ransomware, critical infrastructure, pipelines, OT security, IT/OT segmentation, incident response, double extortion, Bitcoin seizure, TSA security directives, CISA/FBI guidance 1. Executive Summary In May 2021, Colonial Pipeline suffered…

Incident_Reports

Twitter Bitcoin Scam Hack of 2020: Targeting High-Profile Accounts

17 July 2021 Threat Analyst

In July 2020, a significant cybersecurity incident affected Twitter, one of the world’s largest social media platforms, resulting in a widespread Bitcoin scam. The attack targeted high-profile accounts and raised…

Threat_Actor_Profiles

Magecart Attacks: Web Skimming Threatens E-commerce Security

17 July 2021 Threat Analyst

In 2019, a series of cyberattacks known as Magecart attacks targeted various e-commerce websites, compromising customer payment card information. These attacks highlighted the risk of web skimming and the need…

Incident_Reports

WhatsApp Security Vulnerability Exploited by NSO Group in 2019: Targeting Journalists and Activists

17 July 2021 Threat Analyst

In 2019, WhatsApp, one of the world’s most popular messaging platforms, discovered a security vulnerability that was exploited by the NSO Group, an Israeli surveillance firm. The incident raised concerns…

Posts pagination

1 … 22 23 24 25
Search
Recent Posts
  • Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV
  • Payload Ransomware: Early Profile
  • APT33 – Threat Actor Profile
  • BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions
  • Ivanti EPMM Pre-Auth RCE (CVE-2026-1281) Under Active Exploitation
Archives
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • November 2023
  • October 2023
  • August 2023
  • July 2023
  • June 2023
  • January 2023
  • July 2022
  • July 2021
  • July 2020
  • June 2020
  • May 2020
Contact Info
Tweet us @ThreatIntRep

You missed

Threat_Actor_Profiles

Peaklight malware: Stealthy memory-resident delivery chain abusing LNK, mshta, CDN and WebDAV

21 February 2026 Threat Analyst
Articles

Payload Ransomware: Early Profile

21 February 2026 Threat Analyst
Techniques_Tactics_Procedures Threat_Actor_Profiles

APT33 – Threat Actor Profile

21 February 2026 Threat Analyst
Vulnerabilities_Exploits

BeyondTrust CVE-2026-1731: Pre-auth RCE escalates from rapid scanning to ransomware-linked intrusions

21 February 2026 Threat Analyst
TIR

TIR

© Copyright 2024 ThreatIntelReport.com

  • Home
  • Blog
  • Intelligence Reliability
  • Learning CTI Skills
  • Privacy Policy
  • Subscribe