<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
    <title>Skuggaheimar — Mjolnir Security Threat Intelligence</title>
    <link>https://intel.mjolnirsecurity.com/</link>
    <description>Threat intelligence research, malware analysis, and breach reports from the Mjolnir Security research team.</description>
    <language>en-us</language>
    <lastBuildDate>Sat, 07 Mar 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://intel.mjolnirsecurity.com/feed.xml" rel="self" type="application/rss+xml"/>
    <image>
        <url>https://intel.mjolnirsecurity.com/ms_sec-logo.png</url>
        <title>Skuggaheimar — Mjolnir Security</title>
        <link>https://intel.mjolnirsecurity.com/</link>
    </image>

    <item>
        <title>RedLine Stealer: The Infostealer That Fueled a Cybercrime Empire</title>
        <link>https://intel.mjolnirsecurity.com/redline-stealer.html</link>
        <guid>https://intel.mjolnirsecurity.com/redline-stealer.html</guid>
        <pubDate>Thu, 05 Mar 2026 00:00:00 +0000</pubDate>
        <description>Analysis of RedLine Stealer, the MaaS infostealer responsible for 51% of all infostealer infections, its Operation Magnus takedown, and defense strategies.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>Cobalt Strike: When Red Team Tools Become the Adversary's Arsenal</title>
        <link>https://intel.mjolnirsecurity.com/cobalt-strike.html</link>
        <guid>https://intel.mjolnirsecurity.com/cobalt-strike.html</guid>
        <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
        <description>Deep analysis of Cobalt Strike, the commercial red team framework exploited by APT29, APT41, Conti, and LockBit. Covers Beacon payloads, Malleable C2, Operation Morpheus, and defense strategies.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>SystemBC: The Ransomware Enabler Hiding in Plain Sight</title>
        <link>https://intel.mjolnirsecurity.com/systembc-malware.html</link>
        <guid>https://intel.mjolnirsecurity.com/systembc-malware.html</guid>
        <pubDate>Sun, 08 Feb 2026 00:00:00 +0000</pubDate>
        <description>Analysis of SystemBC, the SOCKS5 proxy backdoor with TOR integration used by Ryuk, Conti, DarkSide, and Black Basta ransomware operations.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>Latrodectus: The IcedID Successor Reshaping Malware Delivery</title>
        <link>https://intel.mjolnirsecurity.com/latrodectus-malware.html</link>
        <guid>https://intel.mjolnirsecurity.com/latrodectus-malware.html</guid>
        <pubDate>Thu, 22 Jan 2026 00:00:00 +0000</pubDate>
        <description>Analysis of Latrodectus, the Windows malware loader succeeding IcedID with advanced sandbox evasion, AES-256 encryption, and ClickFix social engineering.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>Tofsee: The Modular Spam Botnet That Mines, DDoSes, and Spreads</title>
        <link>https://intel.mjolnirsecurity.com/tofsee-botnet.html</link>
        <guid>https://intel.mjolnirsecurity.com/tofsee-botnet.html</guid>
        <pubDate>Fri, 09 Jan 2026 00:00:00 +0000</pubDate>
        <description>Analysis of Tofsee (Gheg), the modular spam botnet active since 2013 with crypto mining, DDoS, social media spreading, and proxy modules.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>NjRAT: The Immortal .NET RAT Still Thriving After 13 Years</title>
        <link>https://intel.mjolnirsecurity.com/njrat-malware.html</link>
        <guid>https://intel.mjolnirsecurity.com/njrat-malware.html</guid>
        <pubDate>Thu, 18 Dec 2025 00:00:00 +0000</pubDate>
        <description>Analysis of NjRAT (Bladabindi), the leaked-source .NET RAT active since 2012 with keylogging, MBR wiping, USB worm, and DDoS capabilities.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>DcRAT: The Budget MaaS RAT Targeting Ukraine and Beyond</title>
        <link>https://intel.mjolnirsecurity.com/dcrat-malware.html</link>
        <guid>https://intel.mjolnirsecurity.com/dcrat-malware.html</guid>
        <pubDate>Wed, 03 Dec 2025 00:00:00 +0000</pubDate>
        <description>Analysis of DcRAT (Dark Crystal RAT), the $5-7 .NET MaaS RAT with 34 plugins, dedicated IDE, and usage by threat actors targeting Ukrainian defense.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>China APT Global Activity: 22,705 Hostile Activities Detected in 24 Hours</title>
        <link>https://intel.mjolnirsecurity.com/china-apt-global-activity-2026.html</link>
        <guid>https://intel.mjolnirsecurity.com/china-apt-global-activity-2026.html</guid>
        <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
        <description>24-hour intelligence snapshot analyzing 22,705 hostile activities from 3,321 Chinese source IPs targeting 4 European nations, with attribution to APT10, APT27, Mustang Panda, APT41, and Volt Typhoon.</description>
        <category>Threat Intelligence</category>
        <category>APT</category>
    </item>

    <item>
        <title>SANDWORM_MODE: The First AI-Native Supply Chain Worm</title>
        <link>https://intel.mjolnirsecurity.com/sandworm-mode-npm-campaign.html</link>
        <guid>https://intel.mjolnirsecurity.com/sandworm-mode-npm-campaign.html</guid>
        <pubDate>Sat, 01 Mar 2026 00:00:00 +0000</pubDate>
        <description>A malicious npm campaign exploiting AI coding assistants and Model Context Protocol servers through 19 trojanized packages targeting the software supply chain.</description>
        <category>Threat Intelligence</category>
        <category>Malware</category>
    </item>

    <item>
        <title>Iranian Cyber Threat Update: Escalating Tensions in 2026</title>
        <link>https://intel.mjolnirsecurity.com/iranian-cyber-threat-update-march-2026.html</link>
        <guid>https://intel.mjolnirsecurity.com/iranian-cyber-threat-update-march-2026.html</guid>
        <pubDate>Sat, 28 Feb 2026 00:00:00 +0000</pubDate>
        <description>Updated analysis of Iranian state-sponsored cyber operations amid escalating geopolitical tensions, targeting critical infrastructure in the US, Israel, and allied nations.</description>
        <category>Threat Intelligence</category>
    </item>

    <item>
        <title>Salt Typhoon: Inside China's Infiltration of US Telecom Networks</title>
        <link>https://intel.mjolnirsecurity.com/salt-typhoon-analysis.html</link>
        <guid>https://intel.mjolnirsecurity.com/salt-typhoon-analysis.html</guid>
        <pubDate>Fri, 17 Jan 2026 00:00:00 +0000</pubDate>
        <description>Deep-dive into Salt Typhoon, a Chinese state-sponsored APT that compromised major US telecom providers to intercept communications of senior government officials.</description>
        <category>Threat Intelligence</category>
    </item>

    <item>
        <title>CVE-2025-10035: GoAnywhere MFT Critical Vulnerability</title>
        <link>https://intel.mjolnirsecurity.com/cve-2025-10035-goanywhere.html</link>
        <guid>https://intel.mjolnirsecurity.com/cve-2025-10035-goanywhere.html</guid>
        <pubDate>Tue, 23 Sep 2025 00:00:00 +0000</pubDate>
        <description>Analysis of CVE-2025-10035, a critical CVSS 10.0 vulnerability in Fortra GoAnywhere MFT, and its strategic implications for Canadian businesses.</description>
        <category>Breach</category>
    </item>

    <item>
        <title>The Convergence of Chaos: Lapsus$, ShinyHunters, and the Rise of a New Cybercrime Alliance</title>
        <link>https://intel.mjolnirsecurity.com/convergence-of-chaos-blog.html</link>
        <guid>https://intel.mjolnirsecurity.com/convergence-of-chaos-blog.html</guid>
        <pubDate>Sun, 14 Sep 2025 00:00:00 +0000</pubDate>
        <description>How Lapsus$, ShinyHunters, and Scattered Spider merged into one of the most brazen cybercrime collectives and what it means for enterprise security.</description>
        <category>Threat Intelligence</category>
        <category>Breach</category>
    </item>

    <item>
        <title>Iranian Cyber Threats: Charming Kitten, APT33, and APT34</title>
        <link>https://intel.mjolnirsecurity.com/iranian-cyber-threats.html</link>
        <guid>https://intel.mjolnirsecurity.com/iranian-cyber-threats.html</guid>
        <pubDate>Wed, 01 Oct 2025 00:00:00 +0000</pubDate>
        <description>Comprehensive analysis of Iranian state-sponsored APT groups including Charming Kitten, APT33, and APT34 targeting critical infrastructure.</description>
        <category>Threat Intelligence</category>
    </item>

    <item>
        <title>VPN Breach for Sale: From SonicWall Zero-Day to Underground Markets</title>
        <link>https://intel.mjolnirsecurity.com/vpn-breach-sonicwall.html</link>
        <guid>https://intel.mjolnirsecurity.com/vpn-breach-sonicwall.html</guid>
        <pubDate>Fri, 29 Aug 2025 00:00:00 +0000</pubDate>
        <description>SonicWall VPN zero-day vulnerability enables threat actors to sell unauthorized corporate network access on dark web forums across North America.</description>
        <category>Breach</category>
    </item>

    <item>
        <title>The Rise and Sudden Silence of RansomHub</title>
        <link>https://intel.mjolnirsecurity.com/ransomhub-analysis.html</link>
        <guid>https://intel.mjolnirsecurity.com/ransomhub-analysis.html</guid>
        <pubDate>Wed, 27 Aug 2025 00:00:00 +0000</pubDate>
        <description>From ALPHV's exit scam to the most prolific RaaS operation of 2024 and its hostile takeover by DragonForce. A complete threat analysis.</description>
        <category>Malware</category>
        <category>Ransomware</category>
    </item>

    <item>
        <title>Qilin Ransomware: A Deep Dive into the Threat and Proactive Defense</title>
        <link>https://intel.mjolnirsecurity.com/qilin-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/qilin-ransomware.html</guid>
        <pubDate>Tue, 15 Jul 2025 00:00:00 +0000</pubDate>
        <description>Deep dive into the Qilin ransomware group, their TTPs, cross-platform capabilities, and proactive defense strategies.</description>
        <category>Malware</category>
        <category>Ransomware</category>
    </item>

    <item>
        <title>Akira Ransomware: Anatomy of a Modern Cyber Threat</title>
        <link>https://intel.mjolnirsecurity.com/akira-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/akira-ransomware.html</guid>
        <pubDate>Tue, 24 Jun 2025 00:00:00 +0000</pubDate>
        <description>Technical analysis of the Akira ransomware group including attack vectors, encryption techniques, and defense recommendations.</description>
        <category>Malware</category>
        <category>Ransomware</category>
    </item>

    <item>
        <title>Countering Advanced Persistent Threats: A Strategic Guide</title>
        <link>https://intel.mjolnirsecurity.com/countering-apts.html</link>
        <guid>https://intel.mjolnirsecurity.com/countering-apts.html</guid>
        <pubDate>Mon, 02 Jun 2025 00:00:00 +0000</pubDate>
        <description>Strategic guide to understanding and defending against APTs with focus on detection frameworks, threat hunting, and organizational resilience.</description>
        <category>Threat Intelligence</category>
    </item>

    <item>
        <title>BlackSuit Ransomware: From Royal to the Next Evolution</title>
        <link>https://intel.mjolnirsecurity.com/blacksuit-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/blacksuit-ransomware.html</guid>
        <pubDate>Thu, 09 May 2024 00:00:00 +0000</pubDate>
        <description>Analysis of BlackSuit ransomware, the evolution from Royal ransomware, and the group's sophisticated attack methodology.</description>
        <category>Malware</category>
        <category>Ransomware</category>
    </item>

    <item>
        <title>Return of Not Petya as Bad Rabbit Diskcoder</title>
        <link>https://intel.mjolnirsecurity.com/bad-rabbit-diskcoder.html</link>
        <guid>https://intel.mjolnirsecurity.com/bad-rabbit-diskcoder.html</guid>
        <pubDate>Tue, 24 Oct 2017 00:00:00 +0000</pubDate>
        <description>Analysis of Bad Rabbit ransomware, a modified variant of Not Petya targeting Ukraine and Russia via drive-by downloads and SMB propagation.</description>
        <category>Malware</category>
        <category>Ransomware</category>
    </item>
    <item>
        <title>apt 27</title>
        <link>https://intel.mjolnirsecurity.com/apt27-threat-group.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt27-threat-group.html</guid>
        <pubDate>Sat, 28 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt 27.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt barium</title>
        <link>https://intel.mjolnirsecurity.com/apt-barium.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-barium.html</guid>
        <pubDate>Wed, 25 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt barium.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt bisonal</title>
        <link>https://intel.mjolnirsecurity.com/apt-bisonal.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-bisonal.html</guid>
        <pubDate>Mon, 23 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt bisonal.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt bitter</title>
        <link>https://intel.mjolnirsecurity.com/apt-bitter.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-bitter.html</guid>
        <pubDate>Sat, 21 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt bitter.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt charmingkitten</title>
        <link>https://intel.mjolnirsecurity.com/apt-charmingkitten.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-charmingkitten.html</guid>
        <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt charmingkitten.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt earthkurma</title>
        <link>https://intel.mjolnirsecurity.com/apt-earthkurma.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-earthkurma.html</guid>
        <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt earthkurma.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt gamaredon</title>
        <link>https://intel.mjolnirsecurity.com/apt-gamaredon.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-gamaredon.html</guid>
        <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt gamaredon.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt ghostemperor</title>
        <link>https://intel.mjolnirsecurity.com/apt-ghostemperor.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-ghostemperor.html</guid>
        <pubDate>Wed, 18 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt ghostemperor.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt goldmouse</title>
        <link>https://intel.mjolnirsecurity.com/apt-goldmouse.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-goldmouse.html</guid>
        <pubDate>Tue, 17 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt goldmouse.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt kimsuky</title>
        <link>https://intel.mjolnirsecurity.com/apt-kimsuky.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-kimsuky.html</guid>
        <pubDate>Fri, 13 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt kimsuky.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt lazarus</title>
        <link>https://intel.mjolnirsecurity.com/apt-lazarus.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-lazarus.html</guid>
        <pubDate>Tue, 10 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt lazarus.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt lotusblossom</title>
        <link>https://intel.mjolnirsecurity.com/apt-lotusblossom.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-lotusblossom.html</guid>
        <pubDate>Mon, 09 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt lotusblossom.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt luckycat</title>
        <link>https://intel.mjolnirsecurity.com/apt-luckycat.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-luckycat.html</guid>
        <pubDate>Mon, 09 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt luckycat.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt menupass</title>
        <link>https://intel.mjolnirsecurity.com/apt-menupass.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-menupass.html</guid>
        <pubDate>Sun, 08 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt menupass.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt muddywater</title>
        <link>https://intel.mjolnirsecurity.com/apt-muddywater.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-muddywater.html</guid>
        <pubDate>Wed, 04 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt muddywater.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt mustangpanda</title>
        <link>https://intel.mjolnirsecurity.com/apt-mustangpanda.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-mustangpanda.html</guid>
        <pubDate>Tue, 03 Feb 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt mustangpanda.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt onyxsleet</title>
        <link>https://intel.mjolnirsecurity.com/apt-onyxsleet.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-onyxsleet.html</guid>
        <pubDate>Thu, 29 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt onyxsleet.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt patchwork</title>
        <link>https://intel.mjolnirsecurity.com/apt-patchwork.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-patchwork.html</guid>
        <pubDate>Tue, 27 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt patchwork.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt polonium</title>
        <link>https://intel.mjolnirsecurity.com/apt-polonium.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-polonium.html</guid>
        <pubDate>Tue, 27 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt polonium.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt sharppanda</title>
        <link>https://intel.mjolnirsecurity.com/apt-sharppanda.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-sharppanda.html</guid>
        <pubDate>Mon, 26 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt sharppanda.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt silentlynx</title>
        <link>https://intel.mjolnirsecurity.com/apt-silentlynx.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-silentlynx.html</guid>
        <pubDate>Fri, 23 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt silentlynx.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt sofacy</title>
        <link>https://intel.mjolnirsecurity.com/apt-sofacy.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-sofacy.html</guid>
        <pubDate>Wed, 21 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt sofacy.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt ta416</title>
        <link>https://intel.mjolnirsecurity.com/apt-ta416.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-ta416.html</guid>
        <pubDate>Fri, 16 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt ta416.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt transparenttribe</title>
        <link>https://intel.mjolnirsecurity.com/apt-transparenttribe.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-transparenttribe.html</guid>
        <pubDate>Fri, 16 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt transparenttribe.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt unc2596</title>
        <link>https://intel.mjolnirsecurity.com/apt-unc2596.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-unc2596.html</guid>
        <pubDate>Thu, 15 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt unc2596.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt unc4841</title>
        <link>https://intel.mjolnirsecurity.com/apt-unc4841.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-unc4841.html</guid>
        <pubDate>Wed, 14 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt unc4841.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt unc5174</title>
        <link>https://intel.mjolnirsecurity.com/apt-unc5174.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-unc5174.html</guid>
        <pubDate>Sat, 10 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt unc5174.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt unclassified</title>
        <link>https://intel.mjolnirsecurity.com/apt-unclassified-threats.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-unclassified-threats.html</guid>
        <pubDate>Fri, 09 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt unclassified.</description>
        <category>APT</category>
    </item>

    <item>
        <title>apt venomspider</title>
        <link>https://intel.mjolnirsecurity.com/apt-venomspider.html</link>
        <guid>https://intel.mjolnirsecurity.com/apt-venomspider.html</guid>
        <pubDate>Fri, 09 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of apt venomspider.</description>
        <category>APT</category>
    </item>

    <item>
        <title>fin6</title>
        <link>https://intel.mjolnirsecurity.com/fin6-threat-group.html</link>
        <guid>https://intel.mjolnirsecurity.com/fin6-threat-group.html</guid>
        <pubDate>Thu, 08 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of fin6.</description>
        <category>APT</category>
    </item>

    <item>
        <title>fin7</title>
        <link>https://intel.mjolnirsecurity.com/fin7-threat-group.html</link>
        <guid>https://intel.mjolnirsecurity.com/fin7-threat-group.html</guid>
        <pubDate>Wed, 07 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of fin7.</description>
        <category>APT</category>
    </item>

    <item>
        <title>ta2727</title>
        <link>https://intel.mjolnirsecurity.com/ta2727-threat-group.html</link>
        <guid>https://intel.mjolnirsecurity.com/ta2727-threat-group.html</guid>
        <pubDate>Tue, 06 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of ta2727.</description>
        <category>APT</category>
    </item>

    <item>
        <title>4l4md4r ransomware</title>
        <link>https://intel.mjolnirsecurity.com/4l4md4r-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/4l4md4r-ransomware.html</guid>
        <pubDate>Sun, 04 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of 4l4md4r ransomware.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>bianlian</title>
        <link>https://intel.mjolnirsecurity.com/bianlian-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/bianlian-ransomware.html</guid>
        <pubDate>Sat, 03 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of bianlian.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>blackbyte</title>
        <link>https://intel.mjolnirsecurity.com/blackbyte-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/blackbyte-ransomware.html</guid>
        <pubDate>Sat, 03 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of blackbyte.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>hive ransomware</title>
        <link>https://intel.mjolnirsecurity.com/hive-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/hive-ransomware.html</guid>
        <pubDate>Fri, 02 Jan 2026 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of hive ransomware.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>interlock</title>
        <link>https://intel.mjolnirsecurity.com/interlock-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/interlock-ransomware.html</guid>
        <pubDate>Sun, 28 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of interlock.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>lockbit</title>
        <link>https://intel.mjolnirsecurity.com/lockbit-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/lockbit-ransomware.html</guid>
        <pubDate>Fri, 26 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of lockbit.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>mamona</title>
        <link>https://intel.mjolnirsecurity.com/mamona-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/mamona-ransomware.html</guid>
        <pubDate>Thu, 25 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of mamona.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>medusalocker</title>
        <link>https://intel.mjolnirsecurity.com/medusalocker-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/medusalocker-ransomware.html</guid>
        <pubDate>Thu, 25 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of medusalocker.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>rhysida</title>
        <link>https://intel.mjolnirsecurity.com/rhysida-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/rhysida-ransomware.html</guid>
        <pubDate>Wed, 24 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of rhysida.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>ryuk</title>
        <link>https://intel.mjolnirsecurity.com/ryuk-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/ryuk-ransomware.html</guid>
        <pubDate>Tue, 23 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of ryuk.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>snatch</title>
        <link>https://intel.mjolnirsecurity.com/snatch-ransomware.html</link>
        <guid>https://intel.mjolnirsecurity.com/snatch-ransomware.html</guid>
        <pubDate>Sat, 20 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of snatch.</description>
        <category>Ransomware</category>
    </item>

    <item>
        <title>adwind</title>
        <link>https://intel.mjolnirsecurity.com/adwind-rat.html</link>
        <guid>https://intel.mjolnirsecurity.com/adwind-rat.html</guid>
        <pubDate>Sat, 20 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of adwind.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>agenttesla</title>
        <link>https://intel.mjolnirsecurity.com/agenttesla-rat.html</link>
        <guid>https://intel.mjolnirsecurity.com/agenttesla-rat.html</guid>
        <pubDate>Fri, 19 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of agenttesla.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>ammyyrat</title>
        <link>https://intel.mjolnirsecurity.com/ammyy-rat.html</link>
        <guid>https://intel.mjolnirsecurity.com/ammyy-rat.html</guid>
        <pubDate>Fri, 19 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of ammyyrat.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>asyncrat</title>
        <link>https://intel.mjolnirsecurity.com/asyncrat.html</link>
        <guid>https://intel.mjolnirsecurity.com/asyncrat.html</guid>
        <pubDate>Fri, 19 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of asyncrat.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>avemaria</title>
        <link>https://intel.mjolnirsecurity.com/avemaria-rat.html</link>
        <guid>https://intel.mjolnirsecurity.com/avemaria-rat.html</guid>
        <pubDate>Fri, 19 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of avemaria.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>bifrost</title>
        <link>https://intel.mjolnirsecurity.com/bifrost-rat.html</link>
        <guid>https://intel.mjolnirsecurity.com/bifrost-rat.html</guid>
        <pubDate>Mon, 15 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of bifrost.</description>
        <category>RAT</category>
    </item>

    <item>
        <title>bitrat</title>
        <link>https://intel.mjolnirsecurity.com/bitrat.html</link>
        <guid>https://intel.mjolnirsecurity.com/bitrat.html</guid>
        <pubDate>Mon, 08 Dec 2025 00:00:00 +0000</pubDate>
        <description>Threat intelligence analysis of bitrat.</description>
        <category>RAT</category>
    </item>
</channel>
</rss>
