12 minutes, 5,000 EUR, no human interaction.
One root domain in scope. No endpoint list, no credentials, no human in the loop.
Passive subdomain enumeration surfaced a long-tail host whose name referenced key management. Fingerprint: a React SPA on Google Cloud, behind a CDN and a WAF, redirecting straight to an Okta sign-in. Every route gated.
Most tooling is finished at that point.
No unauthenticated surface to crawl, nothing to fuzz.
Two signals said keep going: infrastructure named for key management has no business being internet-reachable, and an SSO wall protects the UI, not the API.
1/
Liverpool FC can confirm Arne Slot is to depart his role as head coach with immediate effect and that the process to appoint a successor is under way.
He leaves with a Premier League title to his name and our deepest gratitude and appreciation.
🇮🇷🔍New Blog
Dive into the shadows of #cyberespionage: “Inside APT35 — Iran’s state-sponsored cyber threat” reveals how Charming Kitten (APT35) engineers multi-stage attacks, targets governments & infrastructure, and even leaks its own internal docs.
Read from here: https://t.co/T5XnI57QZM
#darkatlas #APT35 #threats
🚨 New findings on #MuddyWater (MOIS-linked APT):
Since Oct '23, we’ve tracked a sharp uptick in their ops — spear-phishing across the Middle East, w/ Israel as a key focus. Their playbook blends legitimate RMM tools (Atera, ScreenConnect, N-Able, Syncro) w/ custom malware BugSleep.
You can read our fully detailed blog from here: https://t.co/PhYPXZzJ5a
#darkatals #iran #SaudiArabia #muddywater
🎯New Blog
Threat Actors are weaponizing legitimate digital marketing tools—like link shorteners, IP geolocation, and CAPTCHAs—for phishing, malware, and malvertising. The same tech that powers ads and analytics is used to mask attacks and evade detection. Stay vigilant!
Read From Here: https://t.co/bU5Qvv2lR6
#CyberSecurity #ThreatIntel #darkatlas
#Scattered Spider (#UNC3944) – one of the most active and adaptive cybercriminal groups – has evolved to use advanced social engineering, phishing kits, and ransomware platforms like #ALPHV & #DragonForce. Our latest report provides a full, detailed profile of their TTPs, major incidents, arrests, and infrastructure.
Read from here: https://t.co/qIDLbQHJ7x
https://t.co/uPY9Dxx2w6 Just released their Top Malware Types For Q2 - #InfoStealers just came in the first place.
You can read our fully detailed blog about #InfoStealers from Here:
https://t.co/DLL0Uq1Y7N
#AnyRun#DarkAtlas#Stealers
How Shortcut Files (.LNK) used to Deliver Ransomware
You can read our fully detailed blog about it from here:
https://t.co/aL16VbIFGu
#Ransomware#DarkAtlas#ThreatIntel