Activity Summary - Week Ending on 22 August 2025
- Red Sky identified 9,503 connections from ‘new’ and unique, compromised IP addresses
- Contabo[.]com in Germany hit 44x (previously observed)
- RedSkyAlliance CTAC – Dark Web Forums/Marketplaces: 90-days
- CISA Alert - Trend Micro Apex One OS Command Injection Vulnerability
- WarLock Ransomware
- Colt Data Being Sold
- Curly COMrades
- Workday Platform
- US & Rapper BOT
- Targeteer – COMrades and ShinyHunters
Link to full report: IR-25-234-001_weekly234.pdf