{"id":2058,"date":"2018-05-31T20:50:32","date_gmt":"2018-05-31T20:50:32","guid":{"rendered":"https:\/\/kasperskycontenthub.com\/threatpost\/?p=132422"},"modified":"2018-05-31T20:50:32","modified_gmt":"2018-05-31T20:50:32","slug":"nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/","title":{"rendered":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info"},"content":{"rendered":"<div class=\"media_block\"><\/div>\n<p>The Nocturnal Stealer malware has crept into the Dark Web like a thief in the night, offering criminals a lucrative payday for a small price \u2014 and little effort.<\/p>\n<p>It\u2019s a commodity malware, debuting on an underground forum in March for the low price of $25. It steals things, including 28 different kinds of cryptocurrency wallets, saved FTP passwords within FileZilla, and Chrome and Firefox browser information (such as login credentials, cookies, web data, autofill data and stored credit cards). It also zips up system data, including IP address and language, machine ID, date\/time, installation location, operating system, architecture, username, processor type, video card info and a list of all running processes, to send to the C2 server.<\/p>\n<p><a href=\"https:\/\/media.kasperskycontenthub.com\/wp-content\/uploads\/sites\/31\/2018\/05\/31153742\/Nocturnal-Stealer.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-medium wp-image-132423\" src=\"https:\/\/media.kasperskycontenthub.com\/wp-content\/uploads\/sites\/31\/2018\/05\/31153742\/Nocturnal-Stealer-264x300.png\" alt=\"\" width=\"264\" height=\"300\"\/><\/a><\/p>\n<p>According to Proofpoint researchers, Nocturnal Stealer\u2019s detection evasion techniques set it apart from other budget-ware.<\/p>\n<p>\u201c[It] uses several anti-[virtual machine] and anti-analysis techniques, which include but are not limited to: environment fingerprinting, checking for debuggers and analyzers, searching for known virtual machine registry keys and checking for emulation software,\u201d they explained in an <a href=\"https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/thief-night-new-nocturnal-stealer-grabs-data-cheap\">analysis published Wednesday<\/a>. \u201cWe commonly observe this step in some mainstream crimeware, but it is unusual for [this class of malware].\u201d<\/p>\n<p>In the wild, Nocturnal Stealer was seen copying stolen information into plaintext files with the obvious names \u201cinformation\u201d and \u201cpasswords\u201d. The system data goes into the former, and the browser, cryptocurrency and FTP data goes into the latter. After that, it cranks up the communication with the C2 server, sending the stolen info in a multi-part HTTP POST form.<\/p>\n<p>\u201cIt [also] utilizes an HTTP POST method for the initial check-in to report the infected machine information to the C&amp;C server,\u201d the researchers said. \u201cThis POST uses the User-Agent \u2018Nocturnal\/1.0\u2019 which contains the name and the version of the stealer. This may indicate that this is the first major version of this Nocturnal Stealer to be observed in the wild.\u201d<\/p>\n<p>When its nefarious work is done, it runs a simple command to end its processes and delete itself off the victim machine \u2013 it is, in other words, a \u201cone-shot\u201d code, and the victim may be completely unaware that his or her information has been lifted.<\/p>\n<p>Proofpoint researchers noted that while Nocturnal Stealer is a fairly simple weapon, it \u201cprovides a glimpse into the evolving criminal markets that continue to produce new variations on the crimeware we see every day.\u201d Specifically, it gives wings to the trend of entry-level cybercriminals gaining the ability to carry out advanced attacks, in this case to harvest and exfiltrate sensitive data. The Dark Web ad hawks Nocturnal Stealer\u2019s anonymity, and offers server setup services (incidentally a savvy technique that gives the malware authors access to all stolen data lifted by their clients).<\/p>\n<p>\u201cNocturnal Stealer and other malware like it provide a would-be cybercriminal with the means to cause damage and harm to people and companies easily and cheaply,\u201d the researchers said, something that should be a real concern for defenders.<\/p>\n<p>READ MORE <a href=\"https:\/\/threatpost.com\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/132422\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The low-cost malware lowers the barrier of entry for carrying out advanced data exfiltration. READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":2059,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[3],"tags":[991,298,992,28,260,993],"class_list":["post-2058","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-threatpost","tag-data-harvesting","tag-exfiltration","tag-low-cost","tag-malware","tag-malware-analysis","tag-nocturnal-stealer"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2018-05-31T20:50:32+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png\" \/>\n\t<meta property=\"og:image:width\" content=\"264\" \/>\n\t<meta property=\"og:image:height\" content=\"300\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info\",\"datePublished\":\"2018-05-31T20:50:32+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/\"},\"wordCount\":501,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png\",\"keywords\":[\"data harvesting\",\"exfiltration\",\"low cost\",\"Malware\",\"Malware analysis\",\"nocturnal stealer\"],\"articleSection\":[\"Threatpost\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/\",\"name\":\"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png\",\"datePublished\":\"2018-05-31T20:50:32+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png\",\"width\":264,\"height\":300},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"data harvesting\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/data-harvesting\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/","og_locale":"en_US","og_type":"article","og_title":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2018-05-31T20:50:32+00:00","og_image":[{"width":264,"height":300,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info","datePublished":"2018-05-31T20:50:32+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/"},"wordCount":501,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png","keywords":["data harvesting","exfiltration","low cost","Malware","Malware analysis","nocturnal stealer"],"articleSection":["Threatpost"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/","url":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/","name":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png","datePublished":"2018-05-31T20:50:32+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info.png","width":264,"height":300},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/nocturnal-stealer-lets-low-skilled-cybercrooks-harvest-sensitive-info\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"data harvesting","item":"https:\/\/www.threatshub.org\/blog\/tag\/data-harvesting\/"},{"@type":"ListItem","position":3,"name":"Nocturnal Stealer Lets Low-Skilled Cybercrooks Harvest Sensitive Info"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/2058","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=2058"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/2058\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/2059"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=2058"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=2058"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=2058"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}