Skip to content

Threat Intel Content Update: 2/4/25

  • February 4, 2025

Threats Abusing AI, Clop Extortion Ecosystem

Threat Content Highlights

Threat Profiles, Objects, & Tags

      • “Trending & Emerging Threats” weekly update: Threats Abusing AI
        • This profile collects the objects tagged with Tidal Cyber's "AI Threat_Uses AI" tag, which tracks adversaries known to have abused artificial intelligence ("AI") capabilities to support or enhance their operations (in contrast with adversaries attacking AI systems).
        • The collection was recently updated following Google Cloud’s new report spotlighting actors seen abusing the company's AI technology to bolster their efforts.
        • This profile is especially helpful for assessing coverage around the many later-stage TTPs associated with these actors, which could be observed more often as AI lowers barriers especially on the Initial Access front.

      • New Clop Extortion Ecosystem profile added by default to all tenants, tracking the Campaigns and Software most recently associated with this threat cluster (which has notably shifted away from traditional encryption attacks towards exfiltration-focused activity).
Data-Driven Threat-Informed Defense

Meet Tidal Enterprise Edition

Quickly and easily develop custom threat profiles and defensive stacks, see your coverage and identify gaps and redundancies, and get daily recommendations to improve your cybersecurity posture.