⚠️ MEDIUMthreat

Before Their Telegram Channel Was Banned Again, ScatteredLAPSUS$Hunters Doxed Officials

Actor-linked Telegram postings released spreadsheets with personal information of government employees. Source: Malware.news.

🎯CORTEX Protocol Intelligence Assessment

Business Impact: Actor-linked Telegram postings released spreadsheets with personal information of government employees. Technical Context: threat activity with medium severity; monitor IOCs and patch where applicable.

Strategic Intelligence Guidance

  • Collect and ingest vendor IOCs into detection pipelines.
  • Prioritize patching and configuration updates for affected systems.
  • Perform focused threat hunting for indicators of compromise.
  • Coordinate information-sharing with relevant CERTs and law enforcement.

Vendors

LAPSUS$Scattered SpiderTelegramdoxing