Website profile

Soc Prime

SOC Prime builds collective cyber defense by fusing Detection as Code, Sigma, and MITRE ATT&CK® to help teams proactively defend against emerging threats.

  • 25articles · 30d
  • 2+ day agolatest article
  • Aug 19, 2026earliest in window
  • 88%with images
  • 253avg words
articles per day
Categories
  • Science & Technology 21
  • Software 18
  • Computers & Electronics 16
  • Business & Industrial 5
  • Conflict, War & Peace 4
  • Crime & Law 4
  • Internet & Telecom 4
  • Software Dev. 2

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

SOC Prime
socprime.com > active-threats > new-kimsuky-lnk-malware-using-multi-channel-c2-infrastructure

Kimsuky LNK Malware Uses Multi-Channel C2

2+ day, 18+ hour ago   (121+ words) SOC Prime Bias: Critical We are still updating this part. Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim…...

SOC Prime
socprime.com > active-threats > mirage-kitten-deploys-noderabbit-and-pollcat-through-job-offer-lures

Mirage Kitten Deploys NodeRabbit and PollCat

3+ day, 12+ hour ago   (115+ words) SOC Prime Bias: Critical Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim to generate the exact telemetry expected…...

Google News
socprime.com > active-threats > panzer-ransomware-a-new-raas-hits-italian-manufacturers-and-telecom-providers

Panzer Ransomware Targets Italian Industry and Telecom

3+ day, 23+ hour ago   (219+ words) SOC Prime Bias: High Panzer is a newly emerged Ransomware-as-a-Service (RaaS) operation first observed in August 2026. The group operates a mature affiliate platform and supports attacks across Windows, Linux, ESXi, and FreeBSD environments. Panzer follows a double-extortion model, prioritizing data…...

SOC Prime
socprime.com > blog > from-raw-threat-reports-to-actionable-defense-ai-powered-deep-threat-research

Deep Threat Research: Turn Reports Into Action

5+ day, 18+ hour ago   (278+ words) Security teams are drowning in threat reports. Every week brings a new advisory, a new vendor write-up, a new blog post describing the latest campaign — and every one of them demands hours of manual reading, cross-referencing, and translation into something…...

SOC Prime
socprime.com > active-threats > guildma-astaroth-malware-infection-from-brazilian-portuguese-email

Guildma (Astaroth) Spreads via Brazilian Phishing Email

1+ week, 4+ day ago   (343+ words) SOC Prime Bias: High A Windows host was infected with Guildma (Astaroth) malware through a malicious Brazilian Portuguese email containing a geofenced link. The attack delivers a ZIP archive with a Windows shortcut that downloads content into an alternate data…...

SOC Prime
socprime.com > active-threats > uat-10147-uses-agentic-ai-to-expand-post-compromise-activity

UAT-10147 Uses Agentic AI for Post-Compromise Attacks

2+ week, 4+ day ago   (268+ words) SOC Prime Bias: High UAT-10147 is a Chinese-speaking cybercrime group using agentic AI to automate and scale post-compromise operations. The actor targets Windows and Linux web servers for SEO fraud and data theft. Its AI-driven tooling supports exploit refinement, reconnaissance,…...

SOC Prime
socprime.com > active-threats > rust-supply-chain-attack-targets-arrayref-internment-and-append-only-vec

proc-macro1 Supply Chain Attack Hits Rust Crates

2+ week, 4+ day ago   (115+ words) SOC Prime Bias: Critical Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim to generate the exact telemetry expected…...

SOC Prime
socprime.com > active-threats > silkparasite-targets-central-asia-in-china-nexus-apt-campaigns

SilkParasite China-Nexus APT Targets Central Asia

3+ week, 1+ day ago   (147+ words) SOC Prime Bias: High We are still updating this part. Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim…...