Anvilogic Forge Threat Research Reports
Here you can find an accumulation of trending threats published weekly by the Anvilogic team.
We curate threat intelligence to provide situational awareness and actionable insights
Atomic detections that serve as the foundation of our detection framework.
Risk, pattern, and sequence-based detections utilizing the outputs of Threat Identifiers as a means of identifying actual threats.
• Threat News Reports
• Trending Threat Reports
• ResearchArticles
Forge Report: First Half Threat Trends of 2024



Featured Threat Reports


All Threat Reports
How Healthcare is a Prime Target for Cybercriminals
Healthcare is a prime target for cybercriminals, accounting for 6% of attacks. Patient data is highly valuable, making hospitals vulnerable to ransomware and DDoS attacks. Recent attacks by groups like Killnet highlight the sector's susceptibility to disruption and ransom demands.
LastPass: New Details Emerge from Second Security Breach of 2022
LastPass disclosed a secondary breach in 2022, where attackers accessed AWS cloud storage from August to October. Data exfiltrated included partially encrypted password vaults and customer information. Attackers targeted a DevOps engineer to gain access. LastPass has since enhanced its security measures.
'Blind Eagle' Sets Sights on Latin American Organizations
Blind Eagle, a South American cyber espionage group, targets financial, government, and healthcare organizations in Colombia and Ecuador. Using phishing emails and RATs, they aim for information theft and espionage. Protect your organization from this emerging threat.
Evasive LockBit Campaign
The latest LockBit ransomware campaign, observed in December 2022 and January 2023, uses advanced evasion techniques to bypass AV and EDR solutions. Employing social engineering and sophisticated scripting, this campaign poses a serious threat to global industries.
Tax Season Brings News Tax-themed Phishing Campaigns
Tax-themed phishing campaigns are increasing during tax season, distributing GuLoader malware and remote access trojans like Remcos. Malicious attachments masquerade as tax-related documents to deceive victims. Stay vigilant and protect against these attacks.
#StopRansomware Headlines Royal Ransomware
The FBI and CISA report on Royal ransomware activities since September 2022. Targeting critical infrastructure, education, and healthcare sectors, Royal ransomware uses phishing, RDP, and valid accounts to gain access and execute double extortion tactics, encrypting and exfiltrating data.
Intelligence Levels for Threat Reports
Tactical
Detectable threat behaviors for response with threat scenarios or threat identifiers.
Strategic
General information security news, for awareness.
.png)
Whitepapers
The World's Best SOC Teams Use Anvilogic

.png)




.png)