Threat Intelligence | Intel 471 Skip to content

Threat Intelligence

Hero background fallback
DeepSeek AI poses cybersecurity risks
Threat Intelligence// Feb 07, 2025

DeepSeek AI poses cybersecurity risks

China-based DeepSeek has upended notions about AI development and prompted security concerns. Here is a briefing on DeepSeek and how cybercriminals are viewing its development.

How threat actors are using artificial intelligence
Threat Intelligence// Jan 29, 2025

How threat actors are using artificial intelligence

Artificial intelligence is a red-hot mess, filled with contradicting predictions over whether it will bring vast benefits. In this Studio 471, Ashley Jess shares her insight into how AI will shape the threat landscape.

How ransomware may trend in 2025
Cybercriminals// Malicious Actors// Jan 21, 2025

How ransomware may trend in 2025

New variants and threat actor groups kept up the tempo of ransomware attacks in 2024. Here's a look at how this type of pervasive cybercrime may trend this year.

Collecting Useful CTI from Underground Markets
Threat Intelligence// Dec 17, 2024

Collecting Useful CTI from Underground Markets

Extracting cyber threat intelligence on emerging threats and novel threat actors is challenging. Michele Campobasso completed his doctoral thesis in 2024 at Eindhoven University of Technology, and in Studio 471, he shares ins...

‘Tis the Season to Be Alert for Cyber Threats: 5 Unjoyful Holiday Tactics
Threat Intelligence// Dec 17, 2024

‘Tis the Season to Be Alert for Cyber Threats: 5 Unjoyful Holiday Tactics

Amidst the holiday bustle, while many are busy decking the halls, cyber adversaries are busy trimming up the cyber underground for peak cybercrime season. It’s the time of the year that threat actors deploy phishing scams and...

Expanding source coverage: adding Signal chats to threat intelligence
Threat Intelligence// Dec 16, 2024

Expanding source coverage: adding Signal chats to threat intelligence

Cybercriminals need easy ways to communicate, connect, and plan, whether they’re trading stolen credentials, rallying hacktivists, or mounting a targeted attack. Instant messaging platforms meet this need and are now an essen...

Holiday Season Cyber Threats (Part 1): Phishing, Fake Shops and Bogus Bookings
Threat Intelligence// Dec 06, 2024

Holiday Season Cyber Threats (Part 1): Phishing, Fake Shops and Bogus Bookings

The holiday season is here. It’s a time for reuniting with family and friends, travel and gift-giving. It’s also a prime time for cybercrime as millions of consumers head to online checkouts on Black Friday, Cyber Monday, Giv...

A Halloween Story: 10 Cyber Ghouls We Eyeballed In Q3 2024
Threat Intelligence// Oct 29, 2024

A Halloween Story: 10 Cyber Ghouls We Eyeballed In Q3 2024

In the third quarter of 2024, ransomware remained one of the most impactful threats to all sectors. Defenders were faced with a record number of vulnerabilities as nation-state actors, money lusting cybercriminals, and hackti...

Elections 2024: Pink Slime Journalism Overtaking Local News?
Threat Intelligence// Oct 24, 2024

Elections 2024: Pink Slime Journalism Overtaking Local News?

“Pink slime” news sites peddling politically biased stories and misinformation are filling an information void left by a US local news industry in rapid decline. What can be done to protect consumers and the integrity of onli...

Will Processing CTI Become Legally Risky?
Threat Intelligence// Oct 22, 2024

Will Processing CTI Become Legally Risky?

In this Studio 471, Peter Swire discusses the regulatory environment, how it could impact the use of cyber threat intelligence and what could be done to ensure attackers don’t leverage these changes to their advantage.

Featured Resource
Intel 471 Logo 2024

AresLoader is a new loader malware-as-a-service (MaaS) offered by threat actors with links to Russian hacktivism that was spotted recently in the wild.