Active Threats

Explore the latest active threats being deployed by malicious actors as of 2026. Each report may offer attack flows, actionable detection rules, and simulation instructions to help SOC teams stay ahead of evolving adversary techniques.

10 Sep 2026 00:05

Medusa Ransomware Detection: Key Behaviors Across Intrusions

SOC Prime Bias: Critical

source icon

extrahop.com

09 Sep 2026 13:29

BlueDelta Deploys HOOKEDGE in Espionage Operations Across Europe

SOC Prime Bias: Critical

source icon

PolySwarm

09 Sep 2026 13:23

Kimsuky Adopts OpenCode AI for Decoys in GitHub PAT-Based LNK Campaigns

SOC Prime Bias: Critical

source icon

co.kr

09 Sep 2026 13:17

Panzer ransomware: a new RaaS hits Italian manufacturers and telecom providers

SOC Prime Bias: High

source icon

Andrea Fortuna

09 Sep 2026 13:12

ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager

SOC Prime Bias: High

source icon

Cisco Talos Blog

09 Sep 2026 13:01

MacSync macOS Stealer Uses ClickFix Lures to Evade Detectio

SOC Prime Bias: High

source icon

Seqrite Labs

07 Sep 2026 18:00

GetSystem Explained: Paths to SYSTEM-Level Access

SOC Prime Bias: Critical

source icon

GitHub

07 Sep 2026 17:55

Inside the XLoader Infection Chain

SOC Prime Bias: High

source icon

d01a

04 Sep 2026 16:34

Contagious Interview Moves Outside Traditional Developer Workflows

SOC Prime Bias: High

source icon

jamfsoftware

04 Sep 2026 16:10

Malware Attack Cases in Korea Involving the Installation of Radmin and UltraVNC

SOC Prime Bias: High

source icon

ASEC