logo

Netskope Threat Labs

ID: 2d74d107-dd45-5b78-bc9d-0a72d050cb7c

STIX ID: identity--2d74d107-dd45-5b78-bc9d-0a72d050cb7c

Feed Type: rss

Earliest post: 2024-09-11

Latest post: 2026-04-20

The Netskope Threat Labs Blog features in-depth research and analysis on the latest cloud, AI, phishing, malware, and enterprise threats, helping security teams understand attacker techniques and defend modern environments.

01/01/2020
06/04/2026
Title Date Published Describes IncidentAuthorVisible
From ClickFix to MaaS: Exposing a Modular Windows RAT and Its Admin Panel2026-04-06TrueJan Michael AlcantaraTrue
OpenClaw Trap: AI-Assisted Lure Factory Targets Developers & Gamers2026-03-24TrueVini EgerlandTrue
Attackers Weaponize Signed RMM Tools via Zoom, Meet, & Teams Lures2026-02-12TrueJan Michael AlcantaraTrue
Malicious Bing Ads Lead to Widespread Azure Tech Support Scams2026-02-05TrueRay CanzaneseTrue
OpenClaw/MoltBot/ClawdBot: The Risky Personal AI Agent and Netskope Protection2026-01-28TrueGianpietro CutoloTrue
The Future of Malware is LLM-powered2025-11-20TrueJan Michael AlcantaraTrue
RedTiger: New Red Teaming Tool in the Wild Targeting Gamers and Discord Accounts2025-10-23TrueJan Michael AlcantaraTrue
New Python RAT Targets Gamers via Minecraft2025-10-22TrueNikhil HegdeTrue
Securing LLM Superpowers: When Tools Turn Hostile in MCP2025-09-03TrueGianpietro CutoloTrue
New Yokai Side-loaded Backdoor Targets Thai Officials2024-12-13TrueNikhil HegdeTrue
Python NodeStealer Targets Facebook Ads Manager with New Techniques2024-11-20TrueJan Michael AlcantaraTrue
Netskope Threat Labs Quarterly Stats for October 20242024-10-29TrueNetskope StaffTrue
Attackers Target Crypto Wallets Using Codeless Webflow Phishing Pages2024-10-23TrueJan Michael AlcantaraTrue
GitHub Comments from Legitimate Repositories Exploited to Deliver Remcos RAT2024-10-21TruePaolo PasseriTrue
New Bumblebee Loader Infection Chain Signals Possible Resurgence2024-10-18TrueLeandro FróesTrue
Netskope Threat Labs Uncovers New XWorm’s Stealthy Techniques2024-09-30TrueJan Michael AlcantaraTrue
DCRat Targets Users with HTML Smuggling2024-09-26TrueNikhil HegdeTrue
Cloud Threats Memo: Iranian Threat Actors Continue to Exploit Azure2024-09-11TruePaolo PasseriTrue

1–18 of 18