Threat Intelligence Content Updates

Threat Intel Content Update: 2/4/25

Written by Tidal Cyber | Feb 4, 2025 2:43:35 PM

Threats Abusing AI, Clop Extortion Ecosystem

Threat Content Highlights

Threat Profiles, Objects, & Tags

      • “Trending & Emerging Threats” weekly update: Threats Abusing AI
        • This profile collects the objects tagged with Tidal Cyber's "AI Threat_Uses AI" tag, which tracks adversaries known to have abused artificial intelligence ("AI") capabilities to support or enhance their operations (in contrast with adversaries attacking AI systems).
        • The collection was recently updated following Google Cloud’s new report spotlighting actors seen abusing the company's AI technology to bolster their efforts.
        • This profile is especially helpful for assessing coverage around the many later-stage TTPs associated with these actors, which could be observed more often as AI lowers barriers especially on the Initial Access front.

      • New Clop Extortion Ecosystem profile added by default to all tenants, tracking the Campaigns and Software most recently associated with this threat cluster (which has notably shifted away from traditional encryption attacks towards exfiltration-focused activity).