ScanMalware.com
HomeSearchBlogAPIAboutContact
← Back to all posts

#threat-intelligence

2 posts tagged with threat-intelligence

#automation#behavioral-fingerprinting#browser-exploit#browser-security#caa#certificate-transparency#certificates#cli#compliance#coruna#devops#dns#exploit-kit#google#ios#javascript-analysis#machine-learning#malware-analysis#malware-detection#mfa-bypass#phishing#query-language#rust#search#security#security-research#shinyhunters#similarity-search#smql#threat-hunting#threat-intelligence#tls#tools#webkit#yara
Detecting Coruna: New YARA Rules for the Nation-State iOS Exploit Kit Targeting Safari
threat-intelligenceexploit-kitios

Detecting Coruna: New YARA Rules for the Nation-State iOS Exploit Kit Targeting Safari

March 8, 2026•6 min read

ScanMalware adds 16 new YARA detection rules for Coruna (CryptoWaters), the nation-state-grade iOS exploit kit targeting Safari/WebKit on iOS 13-17.2.1. Our rules detect both specific IOCs and generic browser exploitation techniques including in-browser Mach-O parsing, ARM64 gadget scanning, and NaN-boxing type confusion.

Read more →
threat-intelligencephishingmfa-bypass

Inside ShinyHunters' Phishing Kit: Technical Analysis of Real-Time SSO Credential Theft and MFA Bypass

February 3, 2026•14 min read

Deep technical analysis of ShinyHunters' sophisticated real-time phishing kit used for SSO credential theft and MFA bypass. Detailed breakdown of the attack infrastructure, JavaScript malware, and MFA bypass mechanisms used against healthcare and fintech companies.

Read more →

© 2025 ScanMalware.com. All rights reserved.

BlogChangelogMCP ServerCLI ToolTermsPrivacyContact

Made with ❤️ in Funäsdalen, Sweden by Triop AB