Group-IB Threat Intelligence: SilabRAT places significant emphasis on #cryptocurrency theft. Beyond harvesting credentials and browser data, it can identify wallet-related artifacts and automatically attempt password recovery using credentials collected from infected systems. These additions reflect the growing focus on direct monetization within modern #malware ecosystems.2026-06-10
x-ctimalwareUnited States
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: One of SilabRAT's most notable capabilities is its use of Hidden Virtual Network Computing (HVNC). By interacting with services directly from the victim's device, attackers can perform account activity, access sensitive platforms, and conduct fraudulent operations while appearing as a legitimate user originating from the trusted device and IP address. #InfoSec2026-06-10
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: As browser security evolves, attackers are moving beyond traditional cookie theft. #SilabRAT advertises browser profile cloning, allowing operators to replicate a victim's browser environment, including extensions, storage, and fingerprinting artifacts. This enables access to authenticated sessions that may otherwise resist conventional session hijacking techniques. #CyberThreats #ThreatIntelligence2026-06-10
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Integrated Distribution2026-06-08
thegentlemenransomwareUnited Kingdom
La empresa Integrated Distribution Inc., una importante distribuidora industrial basada en Comstock Park, Michigan, ha sido objeto de un ataque ransomware atribuido al grupo thegentlemen. La...
Braincell Braincell.sa rfcargo.braincell.solutions rf.braincell.solutions governata.com2026-05-29
0day-syndicateransomwareSaudi Arabia
Se ha reportado una alerta de ransomware relacionada con el grupo 0day Syndicate, que se centra en dominios como braincell.sa, rfcargo.braincell.solutions, rf.braincell.solutions y governata...
President Container Group2026-05-29
dragonforceransomwareUnknownT1566
El President Container Group, una empresa de fabricación de productos corrugados con más de 70 años de existencia, fue identificada como una víctima potencial de ataque cibernético. Aunque n...
Gone Fishin' Marine2026-05-29
akiraransomwareUnited States
Gone Fishin' Marine, una empresa especializada en la venta de embarcaciones de nueva y usada, ha sido identificada como una posible víctima de un ataque ransomware atribuido al grupo akira. ...
Distrigaz Vest S.A.2026-05-29
inc-ransomransomwareUnited States
El ataque a Distrigaz Vest S.A., una empresa afectada por ransomware del grupo inc ransom, ocurrió el 2026-05-29T00:52:42.173Z. Este incidente destaca por la brevedad de su ejecución y la fa...