Microsoft Threat Intelligence

Threat Intel
HIGHSOHO Router Compromise - DNS Hijacking and AiTM Attacks Uncovered
Forest Blizzard, a Russian military-linked threat actor, is exploiting SOHO routers for DNS hijacking and AiTM attacks, impacting thousands of devices and organizations globally.

Malware & Ransomware Widely Reported (7 sources)
HIGHStorm-1175 - High-Tempo Medusa Ransomware Operations Unveiled
Storm-1175 has been identified as a rapidly executing ransomware group that exploits newly disclosed vulnerabilities to deploy Medusa ransomware within 24 hours. Their tactics pose significant risks to various sectors, especially healthcare and finance.