Is Cyber missing the Marque?
ID: 2dda6443-a760-5c5a-8ef4-8811e189ad2a
STIX ID: report--2dda6443-a760-5c5a-8ef4-8811e189ad2a
Feed Name: Cisco Talos
This edition of Threat Source highlights a new White House memorandum enabling U.S.-authorized offensive cyber operations by private companies and details Talos research on UAT-10147, a sophisticated Chinese-speaking cybercrime group that leverages agentic AI to scale operations and deploy the SPECTRE implant — a cross-platform backdoor with a Linux kernel rootkit and BYOVD techniques that can blind EDRs; the newsletter also calls out active exploitation of multiple critical vulnerabilities, provides mitigation recommendations, and publishes IOCs and malware hashes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
