[ TAG // TI // 134 ITEMS ]

#ti

← Threats // General

// Threats

"I will *** your fish"

"I will *** your fish" 🐟 In mid-October, a cyber intelligence group detected phishing activity targeting HR departments in the construction sector. The attacker…

ti_author
// Threats

Long, strange, but working

Long, weird, but it works 🍊🍊🍊🍊🍊🍊🍊🍊🍊🍊🍊 Not everything we investigate turns out to be complex attacks by serious groups. Sometimes attacks only appear complex. We…

ti_author
// Threats

APT31 grouping tool. CloudyLoader

APT31 Grouping Tool. CloudyLoader 🌩 In one of the incidents, the PT ESC IR team encountered an interesting malicious file that loads a payload in several stages…

oUth0R
// Threats

Operation Tartaria — VTDoor

Operation Tartaria — VTDoor 🚪 We have already covered Operation Tartaria in several posts — part 1 and part 2. In one of the cases, the PT ESC IR team discovere…

oUth0R
// Threats

The Lost Goffee Bean

The Lost Goffee Bean 🤨 Literally a couple of days after our research into the activity of the Goffee group, another attack was carried out, which we will now te…

ti_author
// Threats

Divination by Goffee grounds

Fortune Telling on Goffee Grounds: Current Tools and Grouping Features of Goffee in Attacks on Russia ☕️ Throughout 2024-2025, experts from the TI department ha…

oUth0R
// Threats

Phantom pains

Phantom pains 👻 In May, the Threat Intelligence department of the Positive Technologies Expert Security Center (PT ESC TI) discovered a new large-scale cyber es…

ti_author