To mark the launch, we’re offering your first Strike Atlas scan for free.
> strikeatlas.ai
Point it at your target. See what it finds. Judge it by the results.
#StrikeAtlas is live.
Strike Atlas runs autonomous pentesting operations using 60 specialist AI agents across black-box and white-box testing.
To mark the launch, we’re offering your first Strike Atlas scan for free.
strikeatlas.ai
We’ve just published a comprehensive technical and reverse engineering analysis of the #Banshee InfoStealer—a sophisticated threat targeting macOS users. The report includes IOCs, YARA rules, and actionable security recommendations to help detect and mitigate this threat.
Read it here: darkatlas.io/blog/in-depth-t…#darkatlas#infostealer#banshee#macOS
❌NEW BLOG DROP❌
Ransomware is no longer just malware — it’s a full-blown ecosystem.
DarkAtlas Squad exposes how ransom operations evolve and the new trends shaping today’s attacks.
Stay sharp or stay breached.
Link: darkatlas.io/blog/the-ransom…#darkatlas#RansomWare#DarkWeb
🚨🔴 Cybersecurity Incident Report: Alleged Breach of RESecurity Systems
A group identifying as #cr0wdsp1d3rz has publicly claimed full access to RESecurity (a cybersecurity and threat intelligence firm) systems.
Reportedly exfiltrated data includes:
- Internal chats and logs
- Employee information (names, emails, tokens, etc.)
- Threat intelligence reports and management files
- Client list with details
- Internal plans and discussions
The claim describes the incident as retaliation for alleged prior social engineering attempts by RESecurity staff.
The group mentions collaboration with Devman Ransomware.
Note: This is based on an unverified public announcement. No independent confirmation of the breach or data exposure is available at this time. Affected parties should monitor official statements from RESecurity.
#CyberSecurity#DataBreach#hack#ThreatIntel
☢️ New Podcast Episode Alert ☢️
In this episode, we sit down with Pryx, a well-known threat actor, to uncover how the cybercrime ecosystem truly operates no hype, no glorification, just raw insight.
Link: youtu.be/-Ec1AXYojPs
☢️ New Podcast Episode ☢️
For years, I spoke with security researchers.
Now it’s time to hear the other side.
This episode features Pryx, a well-known threat actor, discussing how the cybercrime ecosystem really works - no hype, no glorification.
🎧 youtu.be/-Ec1AXYojPs
🚨 New findings on #MuddyWater (MOIS-linked APT):
Since Oct '23, we’ve tracked a sharp uptick in their ops — spear-phishing across the Middle East, w/ Israel as a key focus. Their playbook blends legitimate RMM tools (Atera, ScreenConnect, N-Able, Syncro) w/ custom malware BugSleep.
You can read our fully detailed blog from here: darkatlas.io/blog/muddywater…#darkatals#iran#SaudiArabia#muddywater
🎯New Blog
Threat Actors are weaponizing legitimate digital marketing tools—like link shorteners, IP geolocation, and CAPTCHAs—for phishing, malware, and malvertising. The same tech that powers ads and analytics is used to mask attacks and evade detection. Stay vigilant!
Read From Here: darkatlas.io/blog/marketings…#CyberSecurity#ThreatIntel#darkatlas
ALT https://darkatlas.io/blog/marketings-shadow-twin-cybercrimes-use-of-legitimate-online-platforms
🚨 HackerOne Data Breach
🔓 Threat actors claim to have leaked HackerOne user data, including registration addresses, emails, and passwords—totaling 11,000 records. @Hacker0x01
💻 Are you a HackerOne user? It is recommended to change your password immediately to protect your personal information.
🔍 DarkEye has found that data from this site (hackerone.com) was mentioned on the dark web as early as March 4. For more details, please visit DarkEye.
🔗 darkeye.org/?from=tw03101#DarkEye#DataBreach#HackerOne#CyberSecurity
So I just started doing bug bounty again after 2-year break and reported 6 P1 on @Bugcrowd yesterday on an asset that they're paying on it for my teammate, and the program closed them all as N/A, out of scope (:
What a comeback!
#BugBounty
If you notice a "session" parameter during OTP login, try this: log in to your account, capture the session key and OTP, then replace these in the victim's login request to potentially access their account.
small attack critical bug
Have you heard about ONNX Store? A sophisticated #PhaaS Platform targets financial institutions worldwide.
Dark Atlas Squad revealed the identity of the threat actor behind #ONNX Store and #Caffeine Phishing Kit.
Read about our investigation and findings:
darkatlas.io/blog/identity-r…