[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f8ijE244t7QRMHoFRLqhMq0SvYuFAMQn0OxaEEev-syQ":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":18,"created_at":19,"published_at":20,"article":21,"tags":25,"podcasts":38},"ff2467e2-ce6c-493a-97d5-c3a5d7c02029","apt-c-23-returns-with-micropsia-malware-targeting-israeli-organizations","7a1f3fb3-d06c-4ed3-bd0c-3c2ad2b36f1d","APT-C-23 Returns with Micropsia Malware Targeting Israeli Organizations","APT-C-23, a sophisticated state-sponsored threat actor, has resumed active targeting operations against Israeli entities using the Micropsia malware family. The discovery and analysis of this malware sample highlights the persistent nature of advanced persistent threats and their ability to adapt tactics over time. Organizations must maintain constant vigilance against such threats, as state-sponsored actors typically have significant resources and motivation to achieve their objectives. Early detection and proper incident response procedures are critical for minimizing the impact of such targeted attacks.","**Immediate actions:**\n- Deploy advanced endpoint detection and response (EDR) solutions across all organizational systems\n- Implement network monitoring to detect anomalous traffic patterns and communication with known threat actor infrastructure\n- Activate threat hunting procedures specifically targeting APT-C-23 indicators of compromise\n\n**Long-term improvements:**\n- Establish comprehensive security information and event management (SIEM) with correlation rules for APT detection\n- Develop incident response playbooks specifically for state-sponsored threat scenarios\n- Create regular threat intelligence briefings to keep security teams updated on evolving APT tactics\n\n**Detection measures:**\n- Configure behavioral analysis tools to identify suspicious process execution and lateral movement\n- Implement file integrity monitoring on critical systems to detect unauthorized changes\n- Deploy sandboxing solutions to analyze suspicious files before they reach production systems",[12,13,14,15,16,17],"CIS Control 6","CIS Control 8","NIST IR-4","NIST DE.CM-1","NIST DE.AE-2","MITRE ATT&CK","published","2026-04-08T20:08:53.121726+00:00","2026-04-08T20:08:52.976+00:00",{"id":7,"url":22,"slug":23,"title":24},"https:\u002F\u002Fx.com\u002Fmalwrhunterteam\u002Fstatus\u002F2041967036583047543","apt-c-23-is-back-to-targeting-in-israel-using-micropsia-found-a-possible-interes-49d561","APT-C-23 is back to targeting in Israel using Micropsia?\n🤔\nFound a possible interesting sample f...",[26,32],{"id":27,"name":28,"slug":29,"description":30,"color":31},"1732a005-556e-411c-a9db-5edec3058571","Logging & Monitoring","logging-monitoring","Missing logs, no alerting, blind spots","#a855f7",{"id":33,"name":34,"slug":35,"description":36,"color":37},"182e11d5-57c4-444e-8ec8-4682ad60261b","Incident Response","incident-response","Slow detection, poor containment, missing playbooks","#14b8a6",[]]