Threats Tagged 'dante'
View all threats tagged with 'dante'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'dante'
Click on any threat for detailed analysis and mitigation recommendations
The ForumTroll APT group has launched a new targeted phishing campaign against Russian political scientists, exploiting plagiarism reports as bait. The attackers used sophisticated techniques, including a well-prepared domain and personalized emails, to deliver the Tuoni framework malware. This campaign follows their spring attacks, which targeted organizations using zero-day vulnerabilities. The fall campaign relied on social engineering, using emails posing as a scientific library to trick victims into downloading malicious archives. The final payload was delivered through a PowerShell script and established persistence using COM Hijacking. Despite being less technically sophisticated than the spring campaign, this operation demonstrates the group's continued focus on Russian and Belarusian targets. Join the discussion | AlienVault OTX General | 12/17/2025, 12:52:27 UTC Added: 12/17/2025, 22:15:21 UTC |
0 Team46, previously known as TaxOff, is an advanced persistent threat (APT) group employing sophisticated malware and attack techniques to maintain long-term persistence in targeted systems. Their operations include the use of zero-day exploits such as CVE-2024-6473 and CVE-2025-2783, advanced backdoors like Trinper with multiple encryption layers, and auxiliary reconnaissance tools. The group leverages phishing campaigns, DLL hijacking, PowerShell commands, and Cobalt Strike beacons to infiltrate and control victim networks. Their infrastructure mimics legitimate services to evade detection. Although no known exploits are currently widespread in the wild, the threat poses a medium severity risk due to its complexity and stealth. European organizations, especially those in critical infrastructure and government sectors, face significant risks from this threat. Mitigation requires targeted detection of indicators of compromise, strict PowerShell logging, and enhanced email security measures. Countries with high adoption of affected technologies and strategic geopolitical relevance are more likely to be targeted. Join the discussion | AlienVault OTX General | 10/29/2025, 10:49:12 UTC Added: 10/29/2025, 10:52:10 UTC |
Showing 1 to 2 of 2 results