Active Threats

Explore the latest active threats being deployed by malicious actors as of 2026. Each report may offer attack flows, actionable detection rules, and simulation instructions to help SOC teams stay ahead of evolving adversary techniques.

04 Sep 2026 16:05

Counterfeit Installers Drive a Multi-Stage System Compromise

SOC Prime Bias: High

source icon

Microsoft Security Blog

04 Sep 2026 15:58

RMM Security for SMBs: A Remote Access Hardening Playbook

SOC Prime Bias: Critical

source icon

Acronis

04 Sep 2026 09:35

Impersonating IT support: how threat actors turn a remote session into enterprise-wide access

SOC Prime Bias: High

source icon

Microsoft Security Blog

04 Sep 2026 09:30

FalconFlank Exposes CrowdStrike Falcon Privilege Escalation Risk

SOC Prime Bias: Critical

source icon

The Hacker News

04 Sep 2026 09:25

The Gentlemen Deploy TukTuk C2 to Evade and Disable EDR

SOC Prime Bias: Critical

source icon

oasis-security.io

04 Sep 2026 09:16

ScreenConnect Appears Across Unrelated Hosts in Suspected Worm-Like Activity

SOC Prime Bias: High

source icon

Huntress

02 Sep 2026 17:26

VShell Malware Delivered Through a Fake Resume Targeting China’s Defense Industry

SOC Prime Bias: High

source icon

Himanshu Anand :

02 Sep 2026 17:16

Evasive Malware Techniques for Defense Bypass and Persistence

SOC Prime Bias: High

source icon

ASEC

02 Sep 2026 17:13

Phishing Emails Impersonate Seafood Purchase Requests to Deliver Malware

SOC Prime Bias: High

source icon

ASEC

01 Sep 2026 19:47

BREEZE COMET Launches Financially Motivated Attacks in Brazil

SOC Prime Bias: Critical

source icon

Google Cloud Blog