Threat Intelligence Research

Technical analysis, threat actor profiling, and vulnerability advisories from the Clarte Intel research team.

Threat ReportsOct 12, 2024

Cozy Bear's New Claws: APT29 Shifts Tactics in European Targeting

Analysis of a recent spear-phishing campaign leveraging novel evasion techniques to bypass standard EDR solutions in the European energy sector.

Threat Research TeamRead more →
ResearchSep 28, 2024

Under the Hood: LockBit Black Encryption Routines

Technical deep dive into the encryption algorithms and multithreaded architecture used in the latest variant of the LockBit ransomware family.

Malware Analysis UnitRead more →
AdvisoriesSep 15, 2024

Critical Vulnerability in Popular Enterprise VPN Appliance

Advisory detailing an unauthenticated remote code execution vulnerability currently being exploited in the wild by state-sponsored actors.

Vulnerability ResearchRead more →
ResearchAug 30, 2024

The Rise of MFA Fatigue Attacks: Defending the Identity Perimeter

How Initial Access Brokers (IABs) are successfully bypassing multi-factor authentication through continuous push notification spamming.

Identity Security TeamRead more →
Threat ReportsAug 14, 2024

Lazarus Group's Billion Dollar Crypto Supply Chain Campaign

Detailed timeline of the DPRK nexus group's systematic targeting of decentralized finance platforms and bridge protocols.

Financial Threat IntelRead more →
ResearchJul 22, 2024

Living off the Land: Abuse of Native Windows Binaries in Q3

Statistical analysis of LOLBins utilized across observed intrusions, highlighting the shift away from custom malware droppers.

Detection EngineeringRead more →