s2
--:--:--UTC

Searching APEX

Starting…

  1. ○ Searching Threats, IOCs & Threat Intelligence locally
  2. ○ Querying external providers
  3. ○ Asking AI Forensic Validator
  4. ○ Creating new entry from validated hit

0s elapsed

OTX-6a8fefa73dcdd0e3c18df580 info

📛 Threat Title

AI-Powered PhaaS Supply Chain

Category: credential harvesting Published: Source updated: First seen: Last updated: Source: AlienVaulkt OTX

Description

AnonyMousKIT is an AI-powered Phishing-as-a-Service platform engineered to disable Apple's Activation Lock on stolen devices. Operating as a credit-metered system, it automates credential harvesting through email, SMS, WhatsApp, and AI-driven voice phishing calls. The investigation exposed a reseller supply chain spanning 506 domains and 168 storefront brands active since early 2024. The platform targets owners of stolen Apple devices using device-specific lures with internal model identifiers and real-time Find My statuses. Conversational AI agents impersonating Apple Support conduct vishing operations, with over 200 calls placed primarily to Brazil at minimal cost. Coding vulnerabilities exposed 120,242 lines of operational logs, revealing 689 distinct WhatsApp operator accounts and detailed attack infrastructure. The ecosystem operates through a decentralized enterprise structure with developers, resellers, and hundreds of subscriber-operators monetizing stolen iPhone hardware through industrialized soc... Pulse contains 42 indicator(s) (IOCs). View on OTX to inspect.

Indicators of Compromise (51)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

ipv4 172.67.163.126

IOC database

Type
ipv4
Value
172.67.163.126
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Resolved from domain southwestfloridalawyer.com

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 104.21.49.134

IOC database

Type
ipv4
Value
104.21.49.134
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Resolved from domain southwestfloridalawyer.com

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 142.11.216.179

IOC database

Type
ipv4
Value
142.11.216.179
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Resolved from domain key-unlock.com

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 172.67.176.212

IOC database

Type
ipv4
Value
172.67.176.212
First seen
Last seen
Attached to this threat
Appears in
3 threats
Description
Resolved from domain allforms.io

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 104.21.17.142

IOC database

Type
ipv4
Value
104.21.17.142
First seen
Last seen
Attached to this threat
Appears in
3 threats
Description
Resolved from domain allforms.io

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 188.114.97.5 VT 0 / 91

IOC database

Type
ipv4
Value
188.114.97.5
First seen
Last seen
Attached to this threat
Appears in
1312 threats
Description
Resolved from domain www.anue.org

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

Basic Properties
Network188.114.96.0/22
AS ownerCloudflare, Inc.
ASN13335
History
Last analysis2026-08-01 01:07 UTC
Last modified on VirusTotal2026-08-01 01:08 UTC
WHOIS record date2026-07-24 05:22 UTC

ipv4 188.114.96.5 VT 0 / 91

IOC database

Type
ipv4
Value
188.114.96.5
First seen
Last seen
Attached to this threat
Appears in
1312 threats
Description
Resolved from domain www.anue.org

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

Basic Properties
Network188.114.96.0/22
AS ownerCloudflare, Inc.
ASN13335
History
Last analysis2026-08-01 01:15 UTC
Last modified on VirusTotal2026-08-01 01:20 UTC
WHOIS record date2026-07-24 21:13 UTC

ipv4 34.76.205.124 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/ip_addresses/34.76.205.124

IOC database

Type
ipv4
Value
34.76.205.124
First seen
Last seen
Attached to this threat
Appears in
27 threats
Description
Resolved from domain xpch.sa.com

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/ip_addresses/34.76.205.124

ipv4 75.119.135.83

IOC database

Type
ipv4
Value
75.119.135.83
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Resolved from domain apple-thailand.co

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 07d4a6ac925f9f7e63c7332df1995de03f514931e9d97cb3dd7a72fecf569e11

IOC database

Type
hash_sha256
Value
07d4a6ac925f9f7e63c7332df1995de03f514931e9d97cb3dd7a72fecf569e11
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 2c790296b404b3e7592da37b15311507b0e55989e1628eef1bb970acb13ec37f

IOC database

Type
hash_sha256
Value
2c790296b404b3e7592da37b15311507b0e55989e1628eef1bb970acb13ec37f
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 32fa60c9099f53f194a6a63c9341dd115434584e0890120ba1eca83ae33832bf

IOC database

Type
hash_sha256
Value
32fa60c9099f53f194a6a63c9341dd115434584e0890120ba1eca83ae33832bf
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 5ea22f9777a34f461840c2a3988c717c0f9e6ec4bd95420c8643251e28ccc36b

IOC database

Type
hash_sha256
Value
5ea22f9777a34f461840c2a3988c717c0f9e6ec4bd95420c8643251e28ccc36b
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 d9e2881d3aa1ea40928dac65405fbe7e36989cad51ab46daf493afff757a2493

IOC database

Type
hash_sha256
Value
d9e2881d3aa1ea40928dac65405fbe7e36989cad51ab46daf493afff757a2493
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

ipv4 196.196.102.74

IOC database

Type
ipv4
Value
196.196.102.74
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain alxescript.info UrlVoid 4 / 36

IOC database

Type
domain
Value
alxescript.info
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain anomkit.shop UrlVoid 3 / 36

IOC database

Type
domain
Value
anomkit.shop
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain apple-login-imaps.com UrlVoid 2 / 36

IOC database

Type
domain
Value
apple-login-imaps.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain apple-thailand.co UrlVoid 0 / 36

IOC database

Type
domain
Value
apple-thailand.co
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain center-one.online

IOC database

Type
domain
Value
center-one.online
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain gon-unlocker.pro UrlVoid 4 / 36

IOC database

Type
domain
Value
gon-unlocker.pro
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain irealm-server.com UrlVoid 4 / 36

IOC database

Type
domain
Value
irealm-server.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain key-unlock.com UrlVoid 4 / 36

IOC database

Type
domain
Value
key-unlock.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain kit-pro-bot.click UrlVoid 4 / 36

IOC database

Type
domain
Value
kit-pro-bot.click
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain projectpartapple.com UrlVoid 1 / 36

IOC database

Type
domain
Value
projectpartapple.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain spider-off-unlock.one UrlVoid 4 / 36

IOC database

Type
domain
Value
spider-off-unlock.one
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain b.pro-center.my.id UrlVoid 3 / 36

IOC database

Type
domain
Value
b.pro-center.my.id
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain apple-care-in.com UrlVoid 3 / 36

IOC database

Type
domain
Value
apple-care-in.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain apple-localise.info UrlVoid 1 / 36

IOC database

Type
domain
Value
apple-localise.info
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain applelnfo.com UrlVoid 3 / 36

IOC database

Type
domain
Value
applelnfo.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain encontrar-dispositivos.cloud

IOC database

Type
domain
Value
encontrar-dispositivos.cloud
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain find-alerts.com UrlVoid 4 / 36

IOC database

Type
domain
Value
find-alerts.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain findmylocalizado.com UrlVoid 4 / 36

IOC database

Type
domain
Value
findmylocalizado.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain fmi-dispositivo.com UrlVoid 4 / 36

IOC database

Type
domain
Value
fmi-dispositivo.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain fmi-dispositivos.com UrlVoid 3 / 36

IOC database

Type
domain
Value
fmi-dispositivos.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain i-cloudsd.com UrlVoid 0 / 36

IOC database

Type
domain
Value
i-cloudsd.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain icloud-inc-in.info UrlVoid 1 / 36

IOC database

Type
domain
Value
icloud-inc-in.info
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain inc-locations.support UrlVoid 4 / 36

IOC database

Type
domain
Value
inc-locations.support
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain kanoondekho.com

IOC database

Type
domain
Value
kanoondekho.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain prookit.com UrlVoid 3 / 36

IOC database

Type
domain
Value
prookit.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain rastreo-devices.com UrlVoid 4 / 36

IOC database

Type
domain
Value
rastreo-devices.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain trace-apple-in.com UrlVoid 3 / 36

IOC database

Type
domain
Value
trace-apple-in.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain irealm-server.co UrlVoid 1 / 36

IOC database

Type
domain
Value
irealm-server.co
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain apple-unlock.com VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/domains/apple-unlock.com
UrlVoid 4 / 36

IOC database

Type
domain
Value
apple-unlock.com
First seen
Last seen
Attached to this threat
Appears in
3 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/domains/apple-unlock.com

domain buscar-lphone.com UrlVoid 4 / 36

IOC database

Type
domain
Value
buscar-lphone.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain suporte-lcloud.com UrlVoid 4 / 36

IOC database

Type
domain
Value
suporte-lcloud.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain com-maps.info UrlVoid 4 / 36

IOC database

Type
domain
Value
com-maps.info
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain findmy-dispositivos.com UrlVoid 3 / 36

IOC database

Type
domain
Value
findmy-dispositivos.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain id-ubicacion.com UrlVoid 4 / 36

IOC database

Type
domain
Value
id-ubicacion.com
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

domain findsupport.live VT 18 / 91 UrlVoid 3 / 36

IOC database

Type
domain
Value
findsupport.live
First seen
Last seen
Attached to this threat
Appears in
3 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 18 of 91 VirusTotal vendors

VendorVerdictDetection
ADMINUSLabs malicious malicious
alphaMountain.ai malicious phishing
BitDefender malicious phishing
CyRadar malicious phishing
ESTsecurity malicious malicious
Forcepoint ThreatSeeker malicious phishing
Fortinet malicious phishing
G-Data malicious phishing
Google Safe Browsing malicious phishing
Gridinsoft malicious phishing
Lionic malicious phishing
Seclookup malicious malicious
SOCRadar malicious malicious
Sophos malicious phishing
Viettel Threat Intelligence malicious phishing
VIPRE malicious phishing
Webroot malicious malicious
ESET suspicious suspicious

Details From VirusTotal

Basic Properties
TLDlive
History
Creation date2025-09-22 00:00 UTC
Last analysis2026-08-29 14:35 UTC
Last modified on VirusTotal2026-08-29 17:06 UTC
Last WHOIS update2025-09-22 00:00 UTC
WHOIS record date2026-09-22 00:00 UTC
domain zu7pl.pro UrlVoid 3 / 36

IOC database

Type
domain
Value
zu7pl.pro
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (2)

  • OTX pulse AlienVaulkt OTX

    AnonyMousKIT is an AI-powered Phishing-as-a-Service platform engineered to disable Apple's Activation Lock on stolen devices. Operating as a credit-metered system, it automates credential harvesting through email, SMS, WhatsApp, and AI-driven voice phishing calls. The investigation exposed a reseller supply chain spanning 506 domains and 168 storefront brands active since early 2024. The platform targets owners of stolen Apple devices using device-specific lures with internal model identifiers a

  • reference AlienVaulkt OTX

Remediations (10)

  • web:arnav.au

    The cybercrime supply chain now runs in layers: PhaaS operators provide the initial access, credential theft results in account compromise, and Initial Access Brokers sell that foothold to ransomware operators who have no involvement in the phishing campaign itself. This separation of roles makes attribution and disruption significantly harder.

  • web:arxiv.org

    Experimental outcomes indicate better detection accuracy, shorter mitigation latency and reasonable build-time overhead than rule-based, provenance only and RL only baselines. These results show that agentic AI can facilitate the transition to self defending, proactive software supply chains rather than reactive verification ones.

  • web:docs.paloaltonetworks.com

    Prisma AIRS AI Supply Chain Security brings visibility, validation, and control to every AI artifact before it reaches production. By securing both AI models and agent skills through a unified platform, you can innovate confidently while protecting intellectual property, reducing operational risk, and maintaining regulatory trust.

  • web:labs.cloudsecurityalliance.org

    Central to the guidance's recommended mitigation posture is the AI Bill of Materials—a structured, machine-readable inventory of all components in an AI /ML system's supply chain .

  • web:michaellaplante.com

    But with this rapid adoption comes a surge in supply chain attacks—targeted efforts to compromise your systems through third-party components, dependencies, or services. In 2024, as AI workloads become more complex and interconnected, mitigating these risks isn't just a security best practice; it's a business imperative.

  • web:radar.offseq.com

    Detailed information about AI-Powered PhaaS Supply Chain . Get real-time updates, technical details, and mitigation strategies.

  • web:sisa.ai

    This week's intelligence indicates an aggressive mix of state-sponsored cyber espionage, autonomous AI -driven extortion, and severe supply chain vulnerabilities targeting developer workspaces. Threat actors are successfully bypassing enterprise defenses by mass-leaking zero-day exploits, turning AI coding assistants into self-propagating infection vectors, and weaponizing legitimate cloud ...

  • web:sisa.ai

    A weekly threat watch covering the TrapDoor and Malware-Slop AI supply chain attacks, Kali365 MFA bypasses, Lazarus RemotePE, and the Microsoft SharePoint RCE.

  • web:socradar.io

    Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain The SOCRadar Threat Research Unit (STRU) has conducted an "inside-out" analysis of AnonyMousKIT, an AI-powered Phishing-as-a-Service ( PhaaS ) ecosystem specifically engineered to disable Apple 's Activation Lock on stolen devices. Operating as a credit-metered platform, AnonyMousKIT automates credential harvesting through a ...

  • web:www.cloudsek.com

    CloudSEK's research on the LiteLLM supply chain attack, the largest AI supply chain breach of 2026, names the organizations potentially exposed: 2,500+ companies and 434,000 CI/CD pipelines worldwide. The LiteLLM breach began with a compromised Trivy build and cascaded through PyPI into automated CI/CD pipelines, putting cloud credentials, source code repositories, Kubernetes environments and ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

VirusTotal Information

loading…

IP Geolocation

Loading…

Reputation of linked indicators

DomScan scores the domains, AbuseIPDB + GreyNoise score the IPs. Verdicts are per-indicator — this is a roll-up, so no lookup is triggered by opening this page.

Domains scored
35 / 36
IPs scored
0 / 10
Flagged
19
IndicatorTypeVerdictScore
apple-care-in.com domain critical 38
apple-localise.info domain critical 38
applelnfo.com domain critical 38
com-maps.info domain high 42
id-ubicacion.com domain high 42
findsupport.live domain high 42
zu7pl.pro domain high 53
irealm-server.com domain high 42
spider-off-unlock.one domain high 42
encontrar-dispositivos.cloud domain high 42
find-alerts.com domain high 42
findmylocalizado.com domain high 42