October 30, 2025 BRONZE BUTLER exploits Japanese asset management software vulnerability The threat group targeted a LANSCOPE zero-day vulnerability (CVE-2025-61932) Threat Research
October 29, 2025 Windows Server Update Services (WSUS) vulnerability abused to harvest sensitive data Exploitation of CVE-2025-59287 began after public disclosure and the release of proof-of-concept code Threat Research
October 17, 2025 Threat Intelligence Executive Report – Volume 2025, Number 5 This issue of the Counter Threat Unit’s high-level bimonthly report discusses noteworthy updates in the threat landscape during July and August Threat Research
October 15, 2025 October Patch Tuesday beats January ’25 record Microsoft throws a farewell party for Win10, Office 2016, and Office 2019… a very big party Threat Research
September 26, 2025 HeartCrypt’s wholesale impersonation effort How the notorious Packer-as-a-Service operation built itself into a hydra Threat Research
September 17, 2025 GOLD SALEM’s Warlock operation joins busy ransomware landscape The emerging group demonstrates competent tradecraft using a familiar ransomware playbook and hints of ingenuity Threat Research
September 10, 2025 September Patch Tuesday handles 81 CVEs The last round of fixes before Win 10’s final shout touches 15 product families, including Xbox Threat Research
August 26, 2025 Velociraptor incident response tool abused for remote access This approach represents an evolution from threat actors abusing remote monitoring and management tools Threat Research
August 20, 2025 Threat Intelligence Executive Report – Volume 2025, Number 4 This issue of the Counter Threat Unit’s high-level bimonthly report discusses noteworthy updates in the threat landscape during May and June Threat Research
August 13, 2025 August Patch Tuesday includes blasts from the (recent) past Microsoft haul this month covers 109 CVEs… more or less Threat Research