Android vehicles, AWS keys, Snowflake extortionist: Active threats escalate
ID: c77a57f9-e907-58e3-962c-ced9dd175736
STIX ID: report--c77a57f9-e907-58e3-962c-ced9dd175736
Feed Name: defend.network
This multi-source briefing reports several high-severity active threats: a supply-chain malware campaign compromising Android vehicle head units to build proxy botnets, 9,300+ active leaked AWS access keys posing persistent cloud account takeover risk, a confirmed Snowflake extortion affecting 165+ organizations with a guilty plea from a Canadian actor, and a Microsoft Teams phishing campaign distributing SynkLoader credential-stealing malware; it includes recommended mitigations and references to CISA/NVD advisories and vendor patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
