Blog: Stay Ahead of Cyber Threats | Intel471 Skip to content
Resources

Intel 471 Blog

Cutting edge threat intelligence and research

Homepage Hero
Threat Hunting Case Study: Uncovering FIN7
Threat Intelligence// Sep 10, 2024

Threat Hunting Case Study: Uncovering FIN7

FIN7 is one of the most persistent and capable financially motivated threat actor groups. Here's how to threat hunt for signs of a FIN7 intrusion.

Hunting for RansomHub and Antivirus Killers
Cybercriminals// Malicious Actors// Sep 09, 2024

Hunting for RansomHub and Antivirus Killers

Threat actors always seek new techniques and tools that make it easier to infiltrate an environment, persist, and perform malicious activity. One of the obstacles to this is antivirus or Endpoint Detection and Response (EDR)....

A Briefing on Malware Crypting Services
Threat Intelligence// Sep 04, 2024

A Briefing on Malware Crypting Services

Crypting malware hides it from security tools. There’s rising demand for crypter services. Here’s a look at this underground market.

France vs. Telegram: What Does it Mean for Cybercrime?
Threat Intelligence// Aug 28, 2024

France vs. Telegram: What Does it Mean for Cybercrime?

France indicted Telegram CEO Pavel Durov for an alleged failure to cooperate to stop criminal activity on the platform. Intel 471 analyzes how this may affect cybercriminal use of Telegram, which is rising.

How to Comfortably Share Threat Intel with ISACs
Threat Intelligence// Aug 27, 2024

How to Comfortably Share Threat Intel with ISACs

In this Studio 471, Sydney Jones, Head of Threat Intelligence at CLS Group, discusses how she has set up several productive programs to share threat intelligence with Information Sharing and Analysis Centers (ISACs), helping ...

Threat Hunting Case Study: Tracking Down GootLoader
Threat Hunting// Aug 20, 2024

Threat Hunting Case Study: Tracking Down GootLoader

GootLoader is malware used to gain initial access to computers for exploitation by threats such as ransomware. In this case study, we describe how to use the HUNTER platform to threat hunt GootLoader infections.

Intel 471 makes industry-leading announcements at Black Hat USA 2024
Threat Intelligence// Aug 20, 2024

Intel 471 makes industry-leading announcements at Black Hat USA 2024

Intel 471 made two groundbreaking announcements at Black Hat that drive innovation in cybersecurity and elevate CTI practices across the industry.

Cybercrime Exposed Podcast: Tank
Cybercriminals// Malicious Actors// Aug 19, 2024

Cybercrime Exposed Podcast: Tank

In 2006, a new type of malware appeared on the scene. Its name was Zeus. It was enormously profitable for its cybercriminal developers, who used it to steal tens of millions of dollars from businesses and organizations of all...

MacOS is Increasingly Targeted by Threat Actors
Cybercriminals// Malicious Actors// Aug 12, 2024

MacOS is Increasingly Targeted by Threat Actors

Malware targeting macOS is on the rise, a result of increasing threat actor interest and more organizations using Apple products.

Threat Actors Target Gift Card Issuing Systems
Cybercriminals// Malicious Actors// Aug 06, 2024

Threat Actors Target Gift Card Issuing Systems

ATLAS LION is a threat actor group that uses phishing to gain access to gift-card issuing systems and then generates fraudulent cards.