logo

SentinelLabs

ID: 28eb6b6f-d23b-5dcf-abba-061e586604c0

STIX ID: identity--28eb6b6f-d23b-5dcf-abba-061e586604c0

Feed Type: rss

Earliest post: 2023-11-16

Latest post: 2026-07-22

Technical threat research on malware, APT campaigns, cybercrime, vulnerabilities, and emerging AI-enabled threats, with detailed analysis designed to help defenders understand and detect sophisticated attacks.

01/01/2020
08/08/2026
Title Date Published Describes IncidentAuthorVisible
Sol Searching | Can Frontier Models Tackle Autonomous Long-Horizon Malware Analysis?2026-07-22TrueJuan Andrés Guerrero-Saade & Gabriel Bernadett-ShapiroTrue
Iran War Cyber Threat Landscape | A Midyear Assessment on What Matters2026-07-21TrueTom HegelTrue
One Target, Two Flags | Rival Espionage Actors Converge On Pakistani Law Enforcement2026-07-09TrueAleksandar Milenkoski & Julian-Ferdinand VögeleTrue
Context Engineering | Compaction & Agent Memory for Automated Malware Analysis2026-07-02TrueGabriel Bernadett-ShapiroTrue
macOS.Gaslight | Rust Backdoor Turns Prompt Injection on the Analyst, Not the Sandbox2026-06-23TruePhil StokesTrue
LABScon25 Replay | Gamaredon x Turla: Unveiling a 2025 Espionage Alliance Targeting Ukraine2026-06-02TrueLABSconTrue
PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale2026-05-07TrueAlex DelamotteTrue
Building an Adversarial Consensus Engine | Multi-Agent LLMs for Automated Malware Analysis2026-03-19TruePhil StokesTrue
LABScon25 Replay | Your Apps May Be Gone, But the Hackers Made $9 Billion and They’re Still Here2026-03-17TrueLABSconTrue
LABScon25 Replay | Hacktivism and War: A Clarifying Discussion2026-01-14TrueLABSconTrue
LLMs & Ransomware | An Operational Accelerator, Not a Revolution2025-12-15TrueGabriel Bernadett-Shapiro, Jim Walter & Alex DelamotteTrue
Malicious Apprentice | How Two Hackers Went From Cisco Academy to Cisco CVEs2025-12-10TrueDakota CaryTrue
LABScon25 Replay | Simulation Meets Reality: How China’s Cyber Ranges Fuel Cyber Operations2025-11-25TrueLABSconTrue
Threat Hunting Power Up | Enhance Campaign Discovery With Validin and Synapse2025-11-17TrueTomas GatialTrue
LABScon25 Replay | LLM-Enabled Malware In the Wild2025-11-03TrueLABSconTrue
PhantomCaptcha | Multi-Stage WebSocket RAT Targets Ukraine in Single-Day Spearphishing Operation2025-10-22TrueTom HegelTrue
Prompts as Code & Embedded Keys | The Hunt for LLM-Enabled Malware2025-09-19TrueAlex Delamotte, Vitaly Kamluk & Gabriel Bernadett-ShapiroTrue
Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms2025-09-04TrueAleksandar Milenkoski, Sreekar Madabushi (Validin) & Kenneth Kinion (Validin)True
Smart Contract Scams | Ethereum Drainers Pose as Trading Bots to Steal Crypto2025-08-05TrueAlex DelamotteTrue
Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem2025-08-04TrueJim Walter, Alex Delamotte, Beazley Security’s Francisco Donoso, Sam Mayers, Tell Hause & Bobby VenalTrue
China’s Covert Capabilities | Silk Spun From Hafnium2025-07-30TrueDakota CaryTrue
macOS NimDoor | DPRK Threat Actors Target Web3 and Crypto Platforms with Nim-Based Malware2025-07-02TruePhil Stokes & Raffaele SabatoTrue
Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets2025-06-09TrueAleksandar Milenkoski & Tom HegelTrue
FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network2025-05-08TrueTom Hegel, Kenneth Kinion (Validin) & Sreekar Madabushi (Validin)True
Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries2025-04-28TrueTom Hegel, Aleksandar Milenkoski & Jim WalterTrue
AkiraBot | AI-Powered Bot Bypasses CAPTCHAs, Spams Websites At Scale2025-04-09TrueAlex Delamotte & Jim WalterTrue
LABScon24 Replay | A Walking Red Flag (With Yellow Stars)2025-03-31TrueLABSconTrue
LABScon24 Replay | Kryptina RaaS: From Unsellable Cast-off to Enterprise Ransomware2025-03-26TrueLABSconTrue
Ghostwriter | New Campaign Targets Ukrainian Government and Belarusian Opposition2025-02-25TrueTom HegelTrue
Censorship as a Service | Leak Reveals Public-Private Collaboration to Monitor Chinese Cyberspace2025-02-21TrueAlex Delamotte, Aleksandar Milenkoski & Dakota CaryTrue
Operation Digital Eye | Chinese APT Compromises Critical Digital Infrastructure via Visual Studio Code Tunnels2024-12-10TrueAleksandar Milenkoski & Luigi Martire (Tinexta Cyber)True
LABScon24 Replay | PKfail: Supply-Chain Failures in Secure Boot Key Management2024-12-03TrueLABSconTrue
CyberVolk | A Deep Dive into the Hacktivists, Tools and Ransomware Fueling Pro-Russian Cyber Attacks2024-11-25TrueJim WalterTrue
DPRK IT Workers | A Network of Active Front Companies and Their Links to China2024-11-21TrueTom Hegel & Dakota CaryTrue
BlueNoroff Hidden Risk | Threat Actor Targets Macs with Fake Crypto News and Novel Persistence2024-11-07TrueRaffaele Sabato, Phil Stokes & Tom HegelTrue
Cloud Malware | A Threat Hunter’s Guide to Analysis, Techniques and Delivery2024-10-24TrueAlex DelamotteTrue
Doppelgänger | Russia-Aligned Influence Operation Targets Germany 2024-02-22TrueAleksandar MilenkoskiTrue
Unmasking I-Soon | The Leak That Revealed China’s Cyber Operations2024-02-21TrueDakota Cary & Aleksandar MilenkoskiTrue
LABScon Replay | Chasing Shadows | The Rise of a Prolific Espionage Actor2024-02-20TrueLABSconTrue
SNS Sender | Active Campaigns Unleash Messaging Spam Through the Cloud2024-02-15TrueAlex DelamotteTrue
ScarCruft | Attackers Gather Strategic Intelligence and Target Cybersecurity Professionals2024-01-22TrueAleksandar Milenkoski & Tom HegelTrue
Exploring FBot  | Python-Based Malware Targeting Cloud and Payment Services2024-01-11TrueAlex DelamotteTrue
LABScon Replay | Spectre Strikes Again: Introducing the Firmware Edition2023-12-28TrueLABSconTrue
LABSCon Replay | Intellexa and Cytrox: From Fixer-Upper to Intel Agency Grade Spyware2023-12-26TrueLABSconTrue
Gaza Cybergang | Unified Front Targeting Hamas Opposition2023-12-14TrueAleksandar MilenkoskiTrue
Sandman APT | China-Based Adversaries Embrace Lua2023-12-11TrueAleksandar MilenkoskiTrue
Decoding the Past, Securing the Future | Enhancing Cyber Defense with Historical Threat Intelligence 2023-11-28TrueTom HegelTrue
Elephant Hunting | Inside an Indian Hack-For-Hire Group2023-11-16TrueTom HegelTrue

1–48 of 48