logo

Intelligence Insights: February 2026

ID: 0429dc66-f3c1-5fc5-b28a-75d4790ce4c0

STIX ID: report--0429dc66-f3c1-5fc5-b28a-75d4790ce4c0

Feed Name: Red Canary

Threat Score
70/100

Date Published: 2026-02-19

Date Updated: 2026-04-29

Author: The Red Canary Team

...
...

Red Canary’s January 2026 threat report details prevalent active threats observed across customer environments: legitimate remote monitoring tools (ScreenConnect, NetSupport Manager) are being abused following phishing and paste-and-run lures, ClearFake is delivering malware via drive-by downloads, and PS1Bot infostealer is spreading through SEO poisoning and malvertising—reporting specific indicators (e.g., malicious MSI/ZIP/JS filenames and domains) and increased activity for several clusters.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.