Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Fortinet Blog

11 articles

Fortinet Blog Campaigns Amazon May 15

PureLogs: Delivery via PawsRunner Steganography

FortiGuard Labs has analyzed a steganography-based malware campaign that uses PawsRunner to deliver the PureLogs infostealer, highlighting evolving delivery ...

Fortinet Blog →

Fortinet Blog CVE Apr 17

Tracking Mirai Variant Nexcorium: A Vulnerability-Driven IoT Botnet Campaign

TBK DVRs targeted by Nexcorium: exploiting, persisting, brute-force attacks, and multi-architecture Mirai-style DDoS in a single campaign. From CVE-2024-3721...

2 IOCs

Fortinet Blog →

Fortinet Blog TTPs Microsoft GitHub Apr 2

DPRK-Related Campaigns with LNK and GitHub C2

Analysis of DPRK-linked LNK-based attacks using GitHub as covert C2 infrastructure, detailing multi-stage PowerShell execution, persistence mechanisms, and d...

T1041 T1583

Fortinet Blog →

Fortinet Blog General Mar 4

Cyber Fallout After the Strikes: Signal, Noise, and What Comes Next

Following U.S.

Fortinet Blog →

Fortinet Blog Campaigns Feb 25

Unmasking Agent Tesla: A Deep Dive into a Multi-Stage Campaign

FortiGuard Labs provides a technical breakdown of a multi-stage Agent Tesla campaign, from phishing and encrypted scripts to in-memory execution, process hol...

T1566 T1041

Fortinet Blog →

Fortinet Blog Phishing Feb 20

Massive Winos 4.0 Campaigns Target Taiwan

FortiGuard Labs analyzes Winos 4.

T1566

Fortinet Blog →

Fortinet Blog CVE Microsoft Feb 10

Deep Dive into New XWorm Campaign Utilizing Multiple-Themed Phishing Emails

FortiGuard Labs details a new XWorm RAT campaign using multi-language phishing emails, Excel exploits (CVE-2018-0802), HTA execution, and fileless .

T1566 1 IOC

Fortinet Blog →

Fortinet Blog Ransomware Jan 29

Interlock Ransomware: New Techniques, Same Old Tricks

An in-depth analysis of an Interlock ransomware intrusion, detailing new malware tooling, defense evasion techniques, and high-ROI detection strategies.

Fortinet Blog →

Fortinet Blog CVE Jan 28

Unveiling the Weaponized Web Shell EncystPHP

FortiGuard Labs analyzes EncystPHP, a stealthy web shell exploiting CVE-2025-64328 in FreePBX environments to enable remote command execution, persistence, a...

T1190 1 IOC

Fortinet Blog →

Fortinet Blog Ransomware Microsoft Jan 20

Inside a Multi-Stage Windows Malware Campaign

FortiGuard Labs analysis of a multi-stage Windows malware campaign that abuses trusted platforms to disable defenses, deploy RATs, and deliver ransomware.

Fortinet Blog →

Fortinet Blog CVE Jan 14

New Remcos Campaign Distributed Through Fake Shipping Document

FortiGuard Labs analyzes a phishing campaign delivering a fileless Remcos RAT via malicious Word templates, CVE-2017-11882 exploitation, and in-memory execut...

T1566 1 IOC

Fortinet Blog →

FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA