Autonomous Offensive Security Firm XBOW Raises $35 Million

2026-05-07T07:24:05Ze37c0fb85b00a77c7d45cba5999be38f8c19c257df02e638118de6e8227ec9cc
APTAitMCI FortifyCISACVE-2026-0300Captive PortalChaos ransomwareDaemon ToolsLinux RATMicrosoftMuddyWaterOracle monthly updatesPAN-OSPalo Alto NetworksQuasarbackdoorcredential harvestingcritical infrastructurefirewall zero-daypersistencephishingransomwaresecurity patchessupply-chain

What happened

This SecurityWeek feed reports multiple high-impact cyber events: an Iranian APT (likely MuddyWater) conducted a covert intrusion disguised as a Chaos ransomware incident involving social engineering, persistence, credential harvesting and data theft; a sophisticated Quasar Linux RAT is targeting software developers for remote access and credential exfiltration; a trojanized Daemon Tools supply‑chain campaign infected users worldwide with a highly targeted backdoor on select government and scientific systems; Microsoft warned of an advanced phishing campaign using a man-in-the-middle Microsoft

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
e37c0fb85b00a77c7d45cba5999be38f8c19c257df02e638118de6e8227ec9cc
Enrichment time
2026-05-07T07:24:05Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.