Recorded Future

Adversarial Intelligence: Red Teaming Malicious Use Cases for AI

Recorded Future threat intelligence analysts and R&D engineers collaborated to test four malicious use cases for artificial intelligence (AI) to illustrate “the art of the possible” for threat actor use. We tested the limitations and capabilities of current AI models, ranging from large language models (LLMs) to multimodal image models and text-to-speech (TTS) models. All […]

Adversarial Intelligence: Red Teaming Malicious Use Cases for AI Read More »

Crypto Country: North Korea’s Targeting of Cryptocurrency

Since 2017, North Korea has greatly expanded its targeting of the cryptocurrency industry, stealing over an estimated $3 billion worth of cryptocurrency. Prior to this, the regime saw previous success in stealing from financial institutions by hijacking the Society for Worldwide Interbank Financial Telecommunications (SWIFT) network. However, this activity brought heavy attention from international authorities,

Crypto Country: North Korea’s Targeting of Cryptocurrency Read More »

Recorded Future CVE Monthly August 2023

We identified 18 newly disclosed vulnerabilities with high risk scores for August 2023, 2 of which were zero-day vulnerabilities affecting Microsoft and Ivanti products. Exploitation activity this month demonstrated that multiple medium-severity vulnerabilities can be exploited together to achieve the effects of 1 high-severity vulnerability; the actively exploited vulnerabilities that attracted some of the highest

Recorded Future CVE Monthly August 2023 Read More »

China’s targeting of international companies in geopolitical competition

International businesses and corporate decision-makers cannot ignore geopolitics, as companies, their supply chains, and customers are increasingly targeted in cyber and non-cyber efforts to secure the national objectives of governments around the world. Companies must monitor the nexus between their business activities and countries’ perceptions of national security — particularly as “great power competition” intensifies

China’s targeting of international companies in geopolitical competition Read More »

April 2023 CVE Monthly report 

Apache, Linux, and Cisco — from April 1 to April 30, 2023. It includes the total number of vulnerabilities disclosed within the reporting period, the number of critical and zero-day vulnerabilities disclosed, the number of vulnerabilities actively exploited at the time of writing, and additional major trends and noteworthy vulnerabilities worth highlighting. Key Findings Major

April 2023 CVE Monthly report  Read More »

Q3 Malware Trends: Ransomware extorts education, Emotet and crypto mining malware evolve, and Android malware persists

Executive Summary In the third quarter of 2020, Recorded Future observed major expansions in the tactics, techniques, and procedures (TTPs) of prominent ransomware operators, including the targeting of educational institutions and a continued increase in new ransomware operators using extortion tactics. Between July and October 2020, we identified the development of five new ransomware extortion

Q3 Malware Trends: Ransomware extorts education, Emotet and crypto mining malware evolve, and Android malware persists Read More »

Cyber Threat Analysis: User-friendly loaders and crypters simplify intrusions and malware delivery

Recorded Future analyzed current data from the Recorded Future® Platform, information security reporting, and other open source intelligence (OSINT) sources to identify loaders and crypters that facilitate threat actor campaigns. This report expands upon findings addressed in the report “Automation and Commoditization in the Underground Economy,” following reports on database breaches and on checkers and

Cyber Threat Analysis: User-friendly loaders and crypters simplify intrusions and malware delivery Read More »

PLEASE COMPLETE