logo

The sliding doors of misinformation that come with AI-generated search results

ID: ab2baf22-3676-598b-95b4-dfd2e869d376

STIX ID: report--ab2baf22-3676-598b-95b4-dfd2e869d376

Feed Name: Cisco Talos

Threat Score
75/100

Date Published: 2024-06-06

Date Updated: 2026-04-27

Author: Jonathan Munshaw

...
...

Cisco Talos reports discovery of a threat actor named "LilacSquid" active since at least 2021 that gains access via vulnerable web applications and compromised RDP credentials to maintain persistence and deploy open-source tools (MeshAgent, SSF) alongside custom malware (PurpleInk and loaders InkBox/InkLoader); the newsletter also highlights recent major incidents (London hospitals hit by ransomware, the dismantling of the 911 S5 botnet, and Operation Endgame) and publishes IoCs and detection signatures while recommending patching and deployment of Talos detections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.