[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fwZUvnWRoqiAk7vL58X2yqXW-AX8spEV8cz9Cz_MaVwc":3},{"article":4,"iocs":32,"watch_terms":40},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":12,"published_at":13,"ingested_at":14,"relevance_score":15,"entities":16,"category_id":17,"category":18,"article_tags":21},"506bb130-ea2c-49f9-8411-d832e3ff3610","Unit42-timely-threat-intel\u002F2026-03-10-IOCs-for-VoidLink-activity.txt at main · PaloAltoNetworks\u002FUnit42-timely-threat-intel","unit42-timely-threat-intel-2026-03-10-iocs-for-voidlink-activity-txt-at-main-pal","We investigated an open web directory on a #VoidLink C2 server that reveals new samples and possible overlaps with activity we track as CL-STA-1015. Previous versions of VoidLink have been seen in the wild as early as 2025-12-02. Details at: https:\u002F\u002Ft.co\u002Fj964tXrRdk https:\u002F\u002Ft.co\u002F3ATYlpt2LL\n\nA collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat intelligence. - Unit42-timely-threat-intel\u002F2026-03-10-IOCs-for-VoidLink-activity.txt at main · PaloAltoNetworks\u002FUnit42-timely-threat-intel","Palo Alto Networks Unit 42 discovered an open web directory on a VoidLink C2 server containing new malware samples and revealing possible connections to tracked activity CL-STA-1015. VoidLink samples have been observed in the wild since early December 2025, with detailed indicators of compromise released for defensive purposes.",null,"https:\u002F\u002Fbit.ly\u002F4s6Ehr8","https:\u002F\u002Fopengraph.githubassets.com\u002F5f8655f85b1506f48fbaea666b9427a9f231ccbec5b20d0b637af4200738bc17\u002FPaloAltoNetworks\u002FUnit42-timely-threat-intel","2026-03-10T19:00:36+00:00","2026-03-14T19:58:24.221959+00:00",8,[],"e7b231c8-5f79-4465-8d38-1ef13aea5a14",{"id":17,"icon":10,"name":19,"slug":20},"Threat Intelligence","threat-intelligence",[22,27],{"category":23},{"id":24,"icon":10,"name":25,"slug":26},"6cbdd207-aaa1-4176-9534-e156b125e917","Nation-state","nation-state",{"category":28},{"id":29,"icon":10,"name":30,"slug":31},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",[33,36],{"type":31,"value":34,"context":35},"VoidLink","C2 malware family with samples observed since 2025-12-02",{"type":37,"value":38,"context":39},"mitre_attack","CL-STA-1015","Tracked activity cluster possibly overlapping with VoidLink operations",[]]