
Livia TIBIRNA
Senior Threat Researcher
Articles byLivia TIBIRNA

Cyber threats impacting the financial sector in 2024 - focus on the main actors
This report provides an overview of the main actors involved in malicious campaigns impacting the financial sector in 2024. It follows up on a previous Sekoia report focusing on the emerging trends in the financial cyber threat landscape.

Ransomware-driven data exfiltration: techniques and implications
Learn about the comprehensive analysis of data exfiltration techniques and tools used by ransomware and extortion groups in campaigns.

Mallox affiliate leverages PureCrypter in MS-SQL exploitation campaigns
Learn about the techniques used by the Mallox ransomware affiliate to compromise an MS-SQL server. Dive into our detailed technical analysis.

Guarding Democracy: Assessing Cyber Threats to 2024 Worldwide Elections
Sekoia TDR analysts conduct an assessment of threats regarding the major elections that will occur in 2024.

Unveiling the depths of Residential Proxies providers
Discover the growing threat of residential proxies, their role in hiding among legitimate traffic and the challenges they pose in cyberspace.

The Architects of Evasion: a Crypters Threat Landscape
In this report, we introduce key concepts and analyse the different crypter-related activities and the lucrative ecosystem of threat groups leveraging them in malicious campaigns.

Scattered Spider laying new eggs
This report provides an overview of the Scattered Spider evolution, its modus operandi and the toolset leveraged over the past years. Additionally, it delves into the Scattered Spider TTPs, as well as the latest ongoing campaigns, including their cur

Unmasking the latest trends of the Financial Cyber Threat Landscape
Financial cyber threat analysis: pinpoint common tactics, techniques & procedures used by intrusion sets to protect the financial system.

Sekoia mid-2023 Ransomware Threat Landscape
This blog post aims at presenting an overview of the ransomware-related threat evolution in the first half of 2023. The observations and the analysis shared in this blog post focus on ransomware operations mostly impacting corporate networks in lucra

The Transportation sector cyber threat overview
This report aims at contextualising cyber activities targeting the transportation sector worldwide over the 2022 - 2023 period. This report is based on open source reporting and Sekoia.io observations of campaigns mostly impacting the road, air and r

One Year After: The Cyber Implications of the Russo-Ukrainian War
One year after the start of Russo-Ukrainian War, our analysts share through their analysis pertaining to the cyber picture.

Traffers: a deep dive into the information stealer ecosystem
Traffers are responsible for redirecting user traffic to malicious content (malware, fraud, phishing, scam) exploited by other threat actors.

Sekoia Mid-2022 Ransomware Threat Landscape
Sekoia presents its Ransomware threat landscape for the first semester of 2022, with the following key points:

An insider insights into Conti operations - Part One
In this part 2, we focus on the Conti ransomware group whose training material was recently leaked on a cybercrime forum.

A war on multiple fronts – the turbulent cybercrime landscape
In this blog post, we will focus on developments in the world of cybercrime (which supposedly do not involve nation-state threat actors) in the current war context.

Lapsus$: when kiddies play in the big league
The extorsion group Lapsus$ that already succeeded in breaching several high profile companies is running riot and sowing confusion. In this blogpost, our Threat & Detection Research team answers your interrogations by drawing the profile of the grou

The story of a ransomware builder: from Thanos to Spook and beyond (Part 2)
Ransomware spook : In this part 2, you will discover how to handle such evil sightings and neutralize them before impact

