Cyber Intelligence Insights

Cyber Intelligence Insights

Home
Archive
About
Mapping Remus Infostealer
Infrastructure mapping,EtherHiding C2,ASN analysis & blockchain pivoting (pt2)
Apr 30 • Vasilis Orlof
C2 in the Ether
Tracing Remus EtherHiding Infrastructure (pt1)
Apr 28 • Vasilis Orlof

December 2025

Christmas Tycoon
Tales from the phishing factory with over 1.9K domains
Dec 21, 2025 • Vasilis Orlof

October 2025

Intel Drops #4
Phishing kit targeting MS login pages
Oct 27, 2025 • Vasilis Orlof
Intel Drops #3
Malicious campaign impersonating Mexican government site
Oct 16, 2025 • Vasilis Orlof
Mapping latest Lumma infrastructure
C2, distribution & ASN clustering
Oct 13, 2025 • Vasilis Orlof
Intel Drops #2
Exposing Iran's APT Charming Kitten (allegedly)
Oct 6, 2025 • Vasilis Orlof

September 2025

A Stark connection
From Seychelles to Netherlands, a bulletproof hosting journey
Sep 2, 2025 • Vasilis Orlof

July 2025

Intel Drops #1
July phishing campaign
Jul 30, 2025 • Vasilis Orlof
Bulletproof Hosting Hunt
Connecting the dots from Lumma to Qwins Ltd (ASN 213702)
Jul 27, 2025 • Vasilis Orlof

June 2025

Lumma meets LolzTeam
Infostealers, traffers operations & the BASE34 group
Jun 22, 2025 • Vasilis Orlof
Cobalt on the weekends
One IP to 250 IoC - The Power of Pivoting
Jun 8, 2025 • Vasilis Orlof
© 2026 Vasilis Orlof · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture