Threat Research

    A Peek Into Muddled Libra’s Operational Playbook examines a September 2025 intrusion in which the cybercrime group Muddled Libra (aka Scattered Spider/UNC3944) deployed a rogue VM after compromising a VMware vSphere environment....
    Muddled Libra’s operations have evolved throughout 2024. As members rotate in and out, the group’s capabilities and tactics continue to adapt. Their toolkit now includes end-user and helpdesk social engineering, traditional phishing, insider access via business process outsourcers, and ransomware partnerships for extortion....
    Looking for Something?
    Threat Research Categories:
    Tags