Critical APT Detection
APT29 campaign targeting your infrastructure detected
2 minutes ago
High Risk Score Alert
CORP-DC-01 risk score increased to 89
15 minutes ago
Threat Feed Updated
142 new IOCs added from MISP feed
1 hour ago
Scan Completed
Attack surface scan completed successfully
3 hours ago
AI Report Generated
Weekly threat intelligence report is ready
5 hours ago
Recent Searches
192.168.1.100
APT29
CVE-2024-1234
Appearance
Dark ModeUse dark theme
Compact ViewReduce spacing
Notifications
Desktop AlertsBrowser notifications
Sound EffectsPlay alert sounds
Data & Privacy
Auto-refreshUpdate data automatically
SC

Adversary Campaigns

STRATUM Watch™ • Track and analyze adversary campaigns targeting your organization

Severity:
Status:
Actor Type:
8
Active Campaigns
+2
3
Archived
1,234
Total IOCs
+47
5
Your Matches
+1
Tracked Campaigns
Operation Midnight Storm
APT29 / Cozy Bear • Nation State (Russia)
Active

Sophisticated spearphishing campaign targeting financial institutions. Uses custom Cobalt Strike beacons with domain fronting.

Financial SectorSpearphishingT1566.001
234
IOCs
12
Targets
3
Matches
87%
Confidence
HIGH
Relevance
Supply Chain Serpent
UNC2452 • Nation State (China)
Monitoring

Supply chain compromise targeting software vendors. Leverages legitimate update mechanisms.

Supply ChainSUNBURSTT1195.002
156
IOCs
8
Targets
0
Matches
92%
Confidence
MEDIUM
Relevance
BEC Blitz Q4
FIN7 Affiliate • Cybercrime
Active

Business email compromise using AI-generated content and deepfake voice synthesis.

BECDeepfakeT1566.001
89
IOCs
45
Targets
1
Matches
78%
Confidence
HIGH
Relevance
Ransomware Resurgence
LockBit 3.0 • RaaS
Active

Renewed ransomware campaign targeting healthcare. Uses double extortion tactics.

RansomwareHealthcareT1486
312
IOCs
67
Targets
1
Matches
94%
Confidence
HIGH
Relevance
Credential Harvest Wave
Unknown • Unknown
Monitoring

Large-scale credential phishing using lookalike domains targeting M365 and Google.

PhishingM365T1566.002
443
IOCs
120+
Targets
0
Matches
65%
Confidence
MEDIUM
Relevance
Firmware Phantom
APT41 / Winnti • Nation State (China)
Active

Advanced firmware-level attacks targeting UEFI/BIOS in enterprise environments.

FirmwareUEFIT1542
78
IOCs
23
Targets
0
Matches
81%
Confidence
HIGH
Relevance
Cloud Infiltrator
Scattered Spider • Cybercrime
Active

Targeting cloud infrastructure via social engineering of IT help desks.

CloudSocial EngineeringT1566
167
IOCs
34
Targets
0
Matches
76%
Confidence
MEDIUM
Relevance
Telecom Takeover
Salt Typhoon • Nation State (China)
Monitoring

Targeting telecommunications providers for intelligence collection and surveillance.

TelecomEspionageT1557
289
IOCs
15
Targets
0
Matches
88%
Confidence
HIGH
Relevance
Showper page
Showing 1-8 of 8 campaigns
Recent Activity
Midnight Storm escalated
2 hours ago
47 IOCs added to Ransomware
5 hours ago
ShadowGate archived
1 day ago
REvil contained
3 days ago
Distribution
5
Active
3
Monitoring
3
Archived
11
Total

Campaign IOCs

Create Alert Rule

Custom Date Range