Threat Intelligence
Detection-Focused Research for Security Teams
Actionable intelligence from Intruvent's security research team. Our reports include detection rules, MITRE ATT&CK mappings, and step-by-step hunting procedures designed for blue teams.
Browse by Category
Threat Actors
In-depth profiles of ransomware groups, APTs, and cybercriminal operations with TTPs, MITRE mappings, and detection rules.
25+ Profiles →CVE Analysis
Technical vulnerability analysis with exploitation details, affected systems, detection strategies, and remediation guidance.
40+ Advisories →Hunting Guides
Step-by-step threat hunting playbooks with detection queries, IOCs, and investigation workflows for SOC teams.
50+ Guides →Latest Reports
View All Reports →Qilin Ransomware
Comprehensive threat hunting guide for the #1 ransomware threat targeting US SLTT organizations. Includes GPO-based Chrome credential harvesting and BYOVD EDR evasion techniques.
CVE-2024-55591: FortiOS Auth Bypass
Active zero-day exploitation analysis. Critical authentication bypass allowing super-admin access to FortiGate firewalls via Node.js WebSocket module.
Volt Typhoon Threat Hunting
Detection-focused guide for hunting China-nexus APT activity targeting US critical infrastructure. Living-off-the-land techniques and persistence mechanisms.
All Reports
| Report | Category | Severity | Date |
|---|---|---|---|
| Qilin Ransomware | Threat Actor | Critical | Dec 2024 |
| CVE-2024-55591: FortiOS Auth Bypass | CVE Analysis | Critical | Dec 2024 |
| Volt Typhoon Hunting Guide | Hunting Guide | High | Dec 2024 |
| Scattered Spider | Threat Actor | Critical | Dec 2024 |
| APT44 / Sandworm | Threat Actor | Critical | Dec 2024 |
| CVE-2025-61757: Oracle | CVE Analysis | Critical | Dec 2024 |
| Z-Pentest Hacktivism | Threat Actor | High | Dec 2024 |
| SafePay Ransomware | Threat Actor | High | Dec 2024 |
| OpenPLC/ScadaBR Vulnerabilities | CVE Analysis | High | Dec 2024 |
| BRICKSTORM Hunting Guide | Hunting Guide | Critical | Dec 2024 |
Transform Intelligence Into Automated Detection
BRACE monitors for 200+ threat actors and 500+ CVEs covered in our intelligence reports. Get continuous protection without the manual hunting.