{
    "count": 44,
    "indicators": [
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/new-research-exposes-iranian-threat-group-operations\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/new-banking-trojan-icedid-discovered-by-ibm-x-force-research\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/wailingcrab-malware-misues-mqtt-messaging-protocol\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/tricks-of-the-trade-a-deeper-look-into-trickbots-machinations\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/from-mega-to-giga-cross-version-comparison-of-top-megacortex-modifications\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/strela-stealer-todays-invoice-tomorrows-phish\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200420201624\/https:\/\/securityintelligence.com\/posts\/ta505-continues-to-infect-networks-with-sdbbot-rat\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/trickbot-gang-doubles-down-enterprise-infection\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/itg08-aka-fin6-partners-with-trickbot-gang-uses-anchor-framework\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/more_eggs-anyone-threat-actor-itg08-strikes-again\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 8,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/ransomware-2020-attack-trends-new-techniques-affecting-organizations-worldwide\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/hive00117-fileless-malware-delivery-eastern-europe\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/gootkit-bobbing-and-weaving-to-avoid-prying-eyes\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/gootkit-launches-redirection-attacks-in-the-uk\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/android-malware-about-to-get-worse-gm-bot-source-code-leaked\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/tag\/shiz-trojan-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/news\/ta505-delivers-new-gelup-malware-tool-flowerpippi-backdoor-via-spam-campaign\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/trickbot-is-hand-picking-private-banks-for-targets-with-redirection-attacks-in-tow\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/gootbot-gootloaders-new-approach-to-post-exploitation\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/hive0137-on-ai-journey\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/meet-goznym-the-banking-malware-offspring-of-gozi-isfb-and-nymaim\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/ransomexx-upgrades-rust\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.cybersecurityintelligence.com\/blog\/outsourced-cyber-spying-5335.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/ta505-continues-to-infect-networks-with-sdbbot-rat\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/itg23-crypters-cooperation-between-cybercriminal-groups\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/observations-of-itg07-cyber-operations\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/x-force-uncovers-global-netscaler-gateway-credential-harvesting-campaign\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/android-vulnerabilities-attacking-nexus-6-and-6p-custom-boot-modes\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/trickbot-pushing-a-2fa-bypass-app-to-bank-customers-in-germany\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/darkside-oil-pipeline-ransomware-attack\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/analysis-of-diavol-ransomware-link-trickbot-gang\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/sodinokibi-ransomware-incident-response-intelligence-together\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/sodinokibi-revil-ransomware-disrupt-trade-secrets\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/lockbit-ransomware-attacks-surge-affiliate-recruitment\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/ransomware-encryption-goes-wrong\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/black-basta-ransomware-group-besting-network\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/\\n\\nNew",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/\\n\\nto",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/\\n\\nThe",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/\\n\\nVarious",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/\\n\\nBuild",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-s\\nector-in-the-middle-east\/\\n\\nPage",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200211083637\/https:\/\/securityintelligence.com\/posts\/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east\/",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        }
    ]
}