Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ
172 subscribers
2 files
1.98K links
rectifyq.com
Rectifyq Cybersecurity News with approximate relevancy to Malaysia and contextualized using MISP Galaxies.

Relevancy
πŸ”΄- e.g. APT target πŸ‡²πŸ‡Ύ.
🟑- e.g. APT target Asian country.
πŸ”΅- e.g. Infostealers impact globally.
⚫- Good to know only.
Download Telegram
Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ pinned Β«πŸ“ƒTitle: [Ransomware] Unconfirmed: Ked** πŸ“…Date: 2026-06-16 πŸ”—References: https://www.ransomware.live/id/S2VkYWhAbm92YQ== πŸ”–Rectifyq Taxonomies: Relevancy: πŸ”΄ Highly Relevant Category: πŸ’₯ Data Breach - TA-category="Ransomware" πŸ”–MISP Galaxies: - target-infor…»
πŸ“ƒTitle: [Ransomware] Unconfirmed: THL PRO**** MAN******* SDN* BHD*
πŸ“…Date: 2026-06-18
πŸ”—References: https://www.ransomware.live/id/VEhMIFBST0pFQ1QgTUFOQUdFTUVOVCBTRE4uIEJIRC5AcWlsaW4=

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΄ Highly Relevant
Category: πŸ’₯ Data Breach
- TA-category="Ransomware"

πŸ”–MISP Galaxies:
- target-information="Malaysia"
- sector="Business Services"
- ransomware="Qilin"
mitre-attack-pattern=[]

MISP event uuid: 33ac9a5c-438c-41fe-8d33-117f0ba8dc5e
Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ pinned Β«πŸ“ƒTitle: [Ransomware] Unconfirmed: THL PRO**** MAN******* SDN* BHD* πŸ“…Date: 2026-06-18 πŸ”—References: https://www.ransomware.live/id/VEhMIFBST0pFQ1QgTUFOQUdFTUVOVCBTRE4uIEJIRC5AcWlsaW4= πŸ”–Rectifyq Taxonomies: Relevancy: πŸ”΄ Highly Relevant Category: πŸ’₯ Data Breach…»
πŸ“ƒTitle: [Ransomware] Unconfirmed: mli******** UPD******** DAT* DUM* 10G*
πŸ“…Date: 2026-06-19
πŸ”—References: https://www.ransomware.live/id/bWxpdC5jb20ubXkgVVBEQVRFLUZVTEwgREFUQSBEVU1QIDEwR0JAc3Rvcm1vdXM=

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΄ Highly Relevant
Category: πŸ’₯ Data Breach
- TA-category="Ransomware"

πŸ”–MISP Galaxies:
- target-information="Malaysia"
- sector="Public Sector"
- ransomware="stormous"
mitre-attack-pattern=[]

MISP event uuid: b0f890ec-80ba-4072-98d8-68d21c5d3ae3
Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ pinned Β«πŸ“ƒTitle: [Ransomware] Unconfirmed: mli******** UPD******** DAT* DUM* 10G* πŸ“…Date: 2026-06-19 πŸ”—References: https://www.ransomware.live/id/bWxpdC5jb20ubXkgVVBEQVRFLUZVTEwgREFUQSBEVU1QIDEwR0JAc3Rvcm1vdXM= πŸ”–Rectifyq Taxonomies: Relevancy: πŸ”΄ Highly Relevant Category:…»
πŸ“ƒTitle: [Ransomware] Unconfirmed: SGS Mal*****
πŸ“…Date: 2026-06-18
πŸ”—References: https://www.ransomware.live/id/U0dTIE1hbGF5c2lhQHRoZWdlbnRsZW1lbg==

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΄ Highly Relevant
Category: πŸ’₯ Data Breach
- TA-category="Ransomware"

πŸ”–MISP Galaxies:
- target-information="Malaysia"
- sector="Business Services"
- ransomware="the gentlemen"
mitre-attack-pattern=[]

MISP event uuid: e6de9568-7c3f-4928-82f0-9032c5256af9
Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ pinned Β«πŸ“ƒTitle: [Ransomware] Unconfirmed: SGS Mal***** πŸ“…Date: 2026-06-18 πŸ”—References: https://www.ransomware.live/id/U0dTIE1hbGF5c2lhQHRoZWdlbnRsZW1lbg== πŸ”–Rectifyq Taxonomies: Relevancy: πŸ”΄ Highly Relevant Category: πŸ’₯ Data Breach - TA-category="Ransomware" πŸ”–MISP…»
πŸ“ƒTitle: Targeted espionage against Cambodian government entities
πŸ“…Date: 2026-06-10
πŸ”—References:
https://www.acronis.com/en/tru/posts/behind-khmer-shadow-targeted-espionage-against-cambodian-government-entities/

πŸ”–Rectifyq Taxonomies:
Relevancy: ⚫ Not Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ topic="geopolitical"
β€’ target="targeted"
β€’ no-samples-in="MalwareBazaar"
β€’ samples-found-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ target-information="Cambodia"
β€’ producer="8545fbf3-a246-4938-96a9-85a24651ebde"
β€’ sector="Government, Administration"
mitre-attack-pattern=['T1053.005', 'T1071.004', 'T1036.005', 'T1204.002', 'T1497.001', 'T1566.001', 'T1106', 'T1140', 'T1055', 'T1562.002', 'T1055.012', 'T1027', 'T1573.002', 'T1134', 'T1027.002', 'T1071.001', 'T1574.002', 'T1055.001']

MISP event uuid: a95dd958-71be-430e-b83e-eeb6eaa34c3e
πŸ“ƒTitle: From external espionage to domestic targeting
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.welivesecurity.com/en/eset-research/oceanlotus-external-espionage-domestic-targeting/

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="from-original-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="TA-profile"
β€’ TA-category="APT"
β€’ target="broad-based"
β€’ samples-found-in="MalwareBazaar"
β€’ samples-found-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="ESET"
β€’ threat-actor="APT32"
β€’ country="vietnam"
mitre-attack-pattern=['T1553.002', 'T1082', 'T1190', 'T1036', 'T1055', 'T1021', 'T1059', 'T1204', 'T1041', 'T1027', 'T1573', 'T1195.002', 'T1570', 'T1071.001', 'T1574.002', 'T1105']

MISP event uuid: 9707a436-2783-4260-9a91-00590fb630a2
πŸ“ƒTitle: Sniper's Nest: From Brand Impersonation to Browser Hijacking and CPA Fraud
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.group-ib.com/blog/inside-sniperdz-phaas-ecosystem/

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="tool-profile"
β€’ target="broad-based"
β€’ TA-category="Cybercrime"
β€’ sub-category="infra-profile"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Group-IB"
β€’ target-information="Algeria"
mitre-attack-pattern=[]

MISP event uuid: 7a3ded92-0934-49f2-956c-0623538fbdb6
πŸ“ƒTitle: Cyber-Enabled Maritime Sanctions Evasion
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.recordedfuture.com/research/media_12cb79eec13b6af7520af3c1ae6768c0f4b25e945.gif?width=1200&format=pjpg&optimize=medium
https://www.recordedfuture.com/research/cyber-maritime-sanctions-evasion

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΄ Highly Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="infra-profile"
β€’ sub-category="campaign-analysis"
β€’ topic="geopolitical"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Recorded Future"
mitre-attack-pattern=[]

MISP event uuid: 64d4b916-e459-44a4-80d0-636de8f9c850
πŸ“ƒTitle: Threat Actors Target FIFA World Cup 2026
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.cloudsek.com/blog/chinese-origin-threat-actors-target-fifa-world-cup-2026

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ TA-category="Cybercrime"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="CloudSEK"
β€’ country="china"
mitre-attack-pattern=['T1557', 'T1583', 'T1539', 'T1114', 'T1566.002', 'T1586.002', 'T1583.001', 'T1589', 'T1185', 'T1557.001', 'T1589.002', 'T1584', 'T1586', 'T1590', 'T1566', 'T1110', 'T1078', 'T1589.001', 'T1598', 'T1590.001']

MISP event uuid: 1bbbb25e-72ad-415c-b7ef-5710bea4bb60
πŸ“ƒTitle: Threat Actors Weaponize AI Hype to Deliver AsyncRAT
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.fortinet.com/blog/threat-research/threat-actors-weaponize-ai-hype-to-deliver-asyncrat

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="malware-analysis"
β€’ sub-category="campaign-analysis"
β€’ topic="ai"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Fortinet"
β€’ malpedia="AsyncRAT"
mitre-attack-pattern=['T1053.005', 'T1113', 'T1218.011', 'T1573.001', 'T1082', 'T1106', 'T1140', 'T1112', 'T1497', 'T1204', 'T1059.001', 'T1566', 'T1562.001', 'T1055.012', 'T1027', 'T1059.003', 'T1070.004', 'T1071.001', 'T1059.005']

MISP event uuid: a72101e4-904d-4526-b9e3-6e902513f24b
πŸ“ƒTitle: How Lookalike Domains Exploit Human Judgment
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.infoblox.com/blog/security/human-judgment-hacks-how-lookalike-domains-work/

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ sub-category="report"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Infoblox"
mitre-attack-pattern=['T1583', 'T1071.004', 'T1204.002', 'T1566.002', 'T1598.003', 'T1071', 'T1586.002', 'T1583.001', 'T1589', 'T1589.002', 'T1584', 'T1586', 'T1598.002', 'T1204', 'T1590', 'T1566', 'T1598', 'T1590.001', 'T1204.001', 'T1584.001']

MISP event uuid: 833736e2-fc4c-4f68-ab29-b048c427c6ee
Rectifyq Cybersecurity News πŸ‡²πŸ‡Ύ pinned Β«πŸ“ƒTitle: Cyber-Enabled Maritime Sanctions Evasion πŸ“…Date: 2026-06-11 πŸ”—References: https://www.recordedfuture.com/research/media_12cb79eec13b6af7520af3c1ae6768c0f4b25e945.gif?width=1200&format=pjpg&optimize=medium https://www.recordedfuture.com/research/cyber…»
πŸ“ƒTitle: Affidavit in Support of Application for Criminal Complaint
πŸ“…Date: 2026-06-09
πŸ”—References:
https://cyberscoop.com/wp-content/uploads/sites/3/2026/06/11-1.pdf

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="TA-profile"
β€’ sub-category="report"
β€’ target="broad-based"
β€’ topic="geopolitical"
β€’ TA-category="APT"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ target-information="United States"
β€’ threat-actor="Void Blizzard"
mitre-attack-pattern=['T1133', 'T1114', 'T1071', 'T1562', 'T1567', 'T1589', 'T1185', 'T1090', 'T1020', 'T1588.001', 'T1070', 'T1586', 'T1590', 'T1048', 'T1588.002', 'T1566', 'T1078', 'T1573', 'T1598', 'T1213']

MISP event uuid: 48a8d13e-0e7e-4d6f-8807-d4d9761dc8b5
πŸ“ƒTitle: Defending the Digital Pitch: World Cup 2026 Cyber Threats
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.cyberproof.com/blog/defending-the-digital-pitch-world-cup-2026-cyber-threats/

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
mitre-attack-pattern=['T1557', 'T1583', 'T1539', 'T1566.002', 'T1190', 'T1583.001', 'T1589', 'T1185', 'T1588.001', 'T1586', 'T1528', 'T1204', 'T1199', 'T1566', 'T1110', 'T1078', 'T1499', 'T1598', 'T1189', 'T1498']

MISP event uuid: 1708688e-6ab1-4949-83be-1fe8e61d59e3
πŸ“ƒTitle: World Cup 2026 Mobile Targeted Phishing: The Global Social Engineering Threat
πŸ“…Date: 2026-06-11
πŸ”—References:
https://zimperium.com/blog/world-cup-2026-mobile-targeted-phishing-the-global-social-engineering-threat?hs_amp=true

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ topic="mobile-attack"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Zimperium"
mitre-attack-pattern=['T1539', 'T1114', 'T1566.002', 'T1598.003', 'T1566.001', 'T1586.002', 'T1608.001', 'T1583.001', 'T1589', 'T1185', 'T1056.003', 'T1589.002', 'T1608.005', 'T1528', 'T1566', 'T1056', 'T1589.001', 'T1598', 'T1204.001']

MISP event uuid: 2d22208a-0035-4f4c-8dfd-a7b056feab82
πŸ“ƒTitle: Targets Education Sector with Oracle PeopleSoft Exploit
πŸ“…Date: 2026-06-11
πŸ”—References:
https://cloud.google.com/blog/topics/threat-intelligence/shinyhunters-targets-education-sector-oracle-exploit

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ TA-category="Cybercrime"
β€’ target="broad-based"
β€’ mitre-att&ck="none-from-src"
β€’ no-samples-in="MalwareBazaar"
β€’ samples-found-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ producer="Mandiant"
β€’ target-information="United States"
β€’ sector="Education"
β€’ threat-actor="ShinyHunters"
mitre-attack-pattern=['T1560.001', 'T1110.001', 'T1133', 'T1069', 'T1114', 'T1036.005', 'T1021.004', 'T1190', 'T1491', 'T1505.003', 'T1083', 'T1552.001', 'T1041', 'T1059.004', 'T1078', 'T1027', 'T1486', 'T1573.002', 'T1071.001', 'T1018']

MISP event uuid: 612a10dd-f897-4556-ab31-f50a1b128318
πŸ“ƒTitle: UNC1151/Ghostwriter phishing campaign targeting Gmail accounts
πŸ“…Date: 2026-06-12
πŸ”—References:
https://cert.pl/en/posts/2026/06/UNC1151-gmail-campaign/

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: βš” Threat
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ TA-category="APT"
β€’ target="broad-based"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
β€’ target-information="Poland"
β€’ threat-actor="Ghostwriter"
mitre-attack-pattern=['T1566']

MISP event uuid: 5c1e7285-f735-49d8-9fcf-ef31d47b10ae
πŸ“ƒTitle: How to defend ARM64 cloud infrastructure
πŸ“…Date: 2026-06-11
πŸ”—References:
https://www.reversinglabs.com/blog/defend-cloud-infrastructure-itscape

πŸ”–Rectifyq Taxonomies:
Relevancy: πŸ”΅ Potentially Relevant
Category: πŸ’‰ Vulnerability
β€’ mitre-att&ck="none-from-src"
β€’ mitre-att&ck="from-OTX"
β€’ sub-category="campaign-analysis"
β€’ sub-category="critical-vuln"
β€’ target="broad-based"
β€’ topic="cloud"
β€’ no-samples-in="MalwareBazaar"
β€’ no-samples-in="Tria.ge"
β€’ action-taken="VT-comment"

πŸ”–MISP Galaxies:
mitre-attack-pattern=['T1592', 'T1082', 'T1005', 'T1611', 'T1610', 'T1548', 'T1059', 'T1609', 'T1204', 'T1068']

MISP event uuid: b91d23b7-24fc-4cac-87d6-d5dc6b6bfd67