CTI-Transmute 1.5 released
CTI-Transmute is an open-source service for converting threat intelligence between formats - MISP and STIX today, more to come - with a catalogue on top to store, share, comment on and evaluate the results. It wraps the misp-stix library behind a web UI and a public API.
🔗 https://www.misp-project.org/2026/08/11/cti-transmute-v1.5-released.html/
🔗 https://cti-transmute.org/
#misp #cti #opensource #openstandard #mispstandard #stix #threatintel #threatintelligence #cybersecurity
🚨New ransom group blog post!🚨
Group name: qilin
Post title: Service Evaluation Concepts
Info: https://cti.fyi/groups/qilin.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog posts!🚨
Group name: qilin
Post title: B Wright Drywall
Info: https://cti.fyi/groups/qilin.html
Group name: qilin
Post title: City of Winchester
Info: https://cti.fyi/groups/qilin.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
Added some more indicators for: GuLoader (+1), AgentTesla (+1), Kimwolf (+9), DeimosC2 (+1), DanaBot (+1), Chaos (+1) and AdaptixC2 (+2). https://vuldb.com/actor #apt #cti #ioc
🚨New ransom group blog post!🚨
Group name: spacebears
Post title: Elixi International SA
Info: https://cti.fyi/groups/spacebears.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog posts!🚨
Group name: qilin
Post title: Université Libre de Bruxelles
Info: https://cti.fyi/groups/qilin.html
Group name: qilin
Post title: Grupo Diestra
Info: https://cti.fyi/groups/qilin.html
Group name: qilin
Post title: Phithan Phanich
Info: https://cti.fyi/groups/qilin.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: ransomhouse
Post title: City of McMinnville OR
Info: https://cti.fyi/groups/ransomhouse.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: gunra
Post title: worldtube
Info: https://cti.fyi/groups/gunra.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
Alexandre Dulaunoy
@adulau@infosec.exchange
Enjoy when humans are using machines in unexpected ways. I break stuff and I do stuff. The other side is at @a (photography, art and free software at large) #infosec #opensource #threatintelligence #fedi22 #threatintel #searchable
infosec.exchange
A standalone, browser-only HTML/JavaScript application for exploring the MISP threat-actor galaxy, UUID-based relationships across every cluster in the MISP Galaxy repository, and shared MISP Galaxy metadata. Graph rendering is performed by Pivotick.
Source code: https://github.com/adulau/threat-actor-explorer/
Online (in-browser): https://foo.be/threat-actor-explorer/misp-threat-actor-explorer.html
Discussions and feedback: https://discourse.ossbase.org/t/playing-with-a-threat-actor-explorer-browser-local-from-the-misp-galaxy-dataset/1118
@misp@misp-community.org
#misp #cti #threatintelligence #opensource #threatactor #cybersecurity
Alexandre Dulaunoy
@adulau@infosec.exchange
Enjoy when humans are using machines in unexpected ways. I break stuff and I do stuff. The other side is at @a (photography, art and free software at large) #infosec #opensource #threatintelligence #fedi22 #threatintel #searchable
infosec.exchange
Replying to
@adulau@infosec.exchange
MISP Galaxy Threat Actor Explorer v1.0.0 released
https://github.com/adulau/threat-actor-explorer
#cti #cybersecurity #misp #threatintelligence #threatintel
@misp@misp-community.org
We have improved indicators: Formbook (+1), BianLian (+1), XWorm (+3), SVCStealer (+1), Overlord RAT (+1), PureLogs Stealer (+3) and Sliver (+1). https://vuldb.com/actor #apt #cti #ioc
🚨New ransom group blog posts!🚨
Group name: direwolf
Post title: 🇪🇸 Nueva Pescanova Group
Info: https://cti.fyi/groups/direwolf.html
Group name: direwolf
Post title: 🇹🇭 Did Asia
Info: https://cti.fyi/groups/direwolf.html
Group name: direwolf
Post title: 🇨🇴 Clínica Vida
Info: https://cti.fyi/groups/direwolf.html
Group name: direwolf
Post title: 🇮🇳 Jewelex
Info: https://cti.fyi/groups/direwolf.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: incransom
Post title: clintonhealthaccess.org
Info: https://cti.fyi/groups/incransom.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: incransom
Post title: Oleoductos del Valle
Info: https://cti.fyi/groups/incransom.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog posts!🚨
Group name: anubis
Post title: Cameron Regional Medical Center
Info: https://cti.fyi/groups/anubis.html
Group name: anubis
Post title: BLACKBURN'S
Info: https://cti.fyi/groups/anubis.html
Group name: anubis
Post title: Winn-Dixie
Info: https://cti.fyi/groups/anubis.html
Group name: safepay
Post title: hanan-hov.co.il
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: simonrack.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: new-point.it
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: naskdoorinc.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: pradotuylaw.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: multiaqua.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: cpu-ag.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: southshorerecycling.com
Info: https://cti.fyi/groups/safepay.html
Group name: safepay
Post title: azn.co.jp
Info: https://cti.fyi/groups/safepay.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: qilin
Post title: Service Electric
Info: https://cti.fyi/groups/qilin.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
InfoSecSherpa
@InfoSecSherpa@infosec.exchange
Your guide up a mountain of information!
infosec.exchange
Basecamp Briefing for Monday, August 3rd.
#InfoSec | #GRC | #CTI news and resources you may have overlooked.
Curated by Sherpa Intelligence: Your Guide Up a Mountain of Information.
https://sherpaintelligence.substack.com/p/basecamp-briefing-august-3-2026
We have added indicators: Quasar RAT (+1), Eye Pyramid (+1), Havoc (+1), Evilginx (+2), Vidar (+32), Atomic Stealer (+1) and NetSupport (+1). https://vuldb.com/actor #apt #cti #ioc
🚨New ransom group blog post!🚨
Group name: dragonforce
Post title: Baicizhan
Info: https://cti.fyi/groups/dragonforce.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
🚨New ransom group blog post!🚨
Group name: dragonforce
Post title: TUI China
Info: https://cti.fyi/groups/dragonforce.html
#ransomware #cti #threatintelligence #cybersecurity #infosec