Verifying you’re human…

Author name: Musa Sani

Intel Wrap – August 2025

This month focuses on the ShadowCaptcha Campaign targeting WordPress sites, INTERPOL’s Operation Serengeti 2.0, and the PipeMagic RansomExx Malware exploiting a Microsoft Windows Vulnerability. Compromised WordPress sites exploited by ShadowCaptcha ShadowCaptcha, first detected in August 2025, has so far exploited over 100 compromised WordPress sites to deliver stealers, ransomware, and crypto miners. Summary Visitors to […]

Intel Wrap – August 2025 Read More »

Darkstream Dispatch Vol.6_UNC5518

Intelligence on Malware, Threat Actors, and Campaigns in Motion Introduction Darkstream Dispatch is a monthly intelligence report dedicated to tracking and analyzing malware families, threat actors, and cyber campaigns primarily targeting Civil Society Organizations (CSOs), human rights defenders, and advocacy groups. As digital threats become more sophisticated, CSOs face increasing risks from state-sponsored actors, cybercriminals,

Darkstream Dispatch Vol.6_UNC5518 Read More »

Darkstream Dispatch Vol.5_ClickFix

Intelligence on Malware, Threat Actors, and Campaigns in Motion Introduction Darkstream Dispatch is a monthly intelligence report dedicated to tracking and analyzing malware families, threat actors, and cyber campaigns primarily targeting Civil Society Organizations (CSOs), human rights defenders, and advocacy groups. As digital threats become more sophisticated, CSOs face increasing risks from state-sponsored actors, cybercriminals,

Darkstream Dispatch Vol.5_ClickFix Read More »

Intel Wrap – July 2025

This month focuses on the return of Lumma Stealer, the CastleLoader campaign using fake GitHub repos to infect devices, and a security Apple patch that was exploited as a Zero-Day in Google Chrome. Lumma Stealer Returns Lumma Stealer resumed operations just weeks after the FBI disrupted their activities in May 2025, even regaining pre-takedown targeting

Intel Wrap – July 2025 Read More »

Scroll to Top