Open Knowledge
Threat analysis by The RabitaNoor (RBTN) Cyber Research Center
Overview of the Platform
Open Knowledge is an open‐source sharing platform that enables tenants of the RBTN - CYOI Pulpit to anonymously contribute threat analyses. This model encourages the open exchange of critical security information, improving situational awareness and collective defense.
The RBTN Ecosystem
RBTN as a Community or Network: The platform is part of the broader RBTN ecosystem—a network that values transparency, community participation, and decentralized decision-making based on open-source principles.
CYOI - RBTN Pulpit: The CYOI - RBTN Pulpit is an AI and big data analytics platform where users create their own CTI to bypass bias. Open Knowledge is a dedicated channel within the RBTN ecosystem for sharing structured threat analyses publicly.
Rubrics (Threat Analysis)
-
Brave Browser Blocks Windows Recall to Protect User Privacy
No significant information detected
-
Analysis of SharePoint Zero-Day Exploitation and Related Cyber Incidents
Unknown threat actors exploiting SharePoint zero-day vulnerabilities.
-
FileFix Attack Bypasses Windows MoTW Alerts with JScript Execution
The adversary uses social engineering to exploit Windows MoTW vulnerabilities.
-
Bluetooth Vulnerabilities Allow Eavesdropping and Data Theft
Potential threat actors with high technical skills targeting Bluetooth vulnerabilities.
-
Russian Hackers Bypass Gmail MFA Using Stolen App Passwords
Russian hackers, tracked as UNC6293, potentially linked to APT29, conducted a sophisticated phishing campaign.
-
Scattered Spider Cyberattacks on UK Retailers M&S and Co-op
Scattered Spider, also known as UNC3944, is a cybercrime group known for advanced social engineering attacks.
-
CISA Warns of Exploitation of Linux OverlayFS Vulnerability CVE-2023-0386
Attackers exploiting the Linux OverlayFS vulnerability CVE-2023-0386.
-
Predatory Sparrow's Cyberwar on Iran's Financial System
Predatory Sparrow, an Israel-linked hacker group known for aggressive cyberwarfare tactics.
-
US Offers $10 Million for Information on Iranian Hackers Behind IOControl Malware
CyberAv3ngers is an Iranian hacker group linked to Iran's Islamic Revolutionary Guard Corps Cyber-Electronic Command.
-
Exploitation of Wazuh Server Vulnerability by Mirai Botnets
Threat actors exploiting Wazuh Server vulnerability using Mirai botnet variants.