OTX-6a8fefa73dcdd0e3c18df580
info
📛 Threat Title
AI-Powered PhaaS Supply Chain
Description
AnonyMousKIT is an AI-powered Phishing-as-a-Service platform engineered to disable Apple's Activation Lock on stolen devices. Operating as a credit-metered system, it automates credential harvesting through email, SMS, WhatsApp, and AI-driven voice phishing calls. The investigation exposed a reseller supply chain spanning 506 domains and 168 storefront brands active since early 2024. The platform targets owners of stolen Apple devices using device-specific lures with internal model identifiers and real-time Find My statuses. Conversational AI agents impersonating Apple Support conduct vishing operations, with over 200 calls placed primarily to Brazil at minimal cost. Coding vulnerabilities exposed 120,242 lines of operational logs, revealing 689 distinct WhatsApp operator accounts and detailed attack infrastructure. The ecosystem operates through a decentralized enterprise structure with developers, resellers, and hundreds of subscriber-operators monetizing stolen iPhone hardware through industrialized soc... Pulse contains 42 indicator(s) (IOCs). View on OTX to inspect.
Indicators of Compromise (51)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
ipv4
172.67.163.126
IOC database
- Type
- ipv4
- Value
172.67.163.126- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Resolved from domain southwestfloridalawyer.com
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
104.21.49.134
IOC database
- Type
- ipv4
- Value
104.21.49.134- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Resolved from domain southwestfloridalawyer.com
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
142.11.216.179
IOC database
- Type
- ipv4
- Value
142.11.216.179- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Resolved from domain key-unlock.com
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
172.67.176.212
IOC database
- Type
- ipv4
- Value
172.67.176.212- First seen
- Last seen
- Attached to this threat
- Appears in
- 3 threats
- Description
- Resolved from domain allforms.io
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
104.21.17.142
IOC database
- Type
- ipv4
- Value
104.21.17.142- First seen
- Last seen
- Attached to this threat
- Appears in
- 3 threats
- Description
- Resolved from domain allforms.io
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
188.114.97.5
VT 0 / 91
IOC database
- Type
- ipv4
- Value
188.114.97.5- First seen
- Last seen
- Attached to this threat
- Appears in
- 1312 threats
- Description
- Resolved from domain www.anue.org
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
Basic Properties
| Network | 188.114.96.0/22 |
| AS owner | Cloudflare, Inc. |
| ASN | 13335 |
History
| Last analysis | 2026-08-01 01:07 UTC |
| Last modified on VirusTotal | 2026-08-01 01:08 UTC |
| WHOIS record date | 2026-07-24 05:22 UTC |
ipv4
188.114.96.5
VT 0 / 91
IOC database
- Type
- ipv4
- Value
188.114.96.5- First seen
- Last seen
- Attached to this threat
- Appears in
- 1312 threats
- Description
- Resolved from domain www.anue.org
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
Basic Properties
| Network | 188.114.96.0/22 |
| AS owner | Cloudflare, Inc. |
| ASN | 13335 |
History
| Last analysis | 2026-08-01 01:15 UTC |
| Last modified on VirusTotal | 2026-08-01 01:20 UTC |
| WHOIS record date | 2026-07-24 21:13 UTC |
ipv4
34.76.205.124
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/ip_addresses/34.76.205.124
IOC database
- Type
- ipv4
- Value
34.76.205.124- First seen
- Last seen
- Attached to this threat
- Appears in
- 27 threats
- Description
- Resolved from domain xpch.sa.com
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/ip_addresses/34.76.205.124
ipv4
75.119.135.83
IOC database
- Type
- ipv4
- Value
75.119.135.83- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Resolved from domain apple-thailand.co
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
07d4a6ac925f9f7e63c7332df1995de03f514931e9d97cb3dd7a72fecf569e11
IOC database
- Type
- hash_sha256
- Value
07d4a6ac925f9f7e63c7332df1995de03f514931e9d97cb3dd7a72fecf569e11- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
2c790296b404b3e7592da37b15311507b0e55989e1628eef1bb970acb13ec37f
IOC database
- Type
- hash_sha256
- Value
2c790296b404b3e7592da37b15311507b0e55989e1628eef1bb970acb13ec37f- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
32fa60c9099f53f194a6a63c9341dd115434584e0890120ba1eca83ae33832bf
IOC database
- Type
- hash_sha256
- Value
32fa60c9099f53f194a6a63c9341dd115434584e0890120ba1eca83ae33832bf- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
5ea22f9777a34f461840c2a3988c717c0f9e6ec4bd95420c8643251e28ccc36b
IOC database
- Type
- hash_sha256
- Value
5ea22f9777a34f461840c2a3988c717c0f9e6ec4bd95420c8643251e28ccc36b- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
d9e2881d3aa1ea40928dac65405fbe7e36989cad51ab46daf493afff757a2493
IOC database
- Type
- hash_sha256
- Value
d9e2881d3aa1ea40928dac65405fbe7e36989cad51ab46daf493afff757a2493- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
ipv4
196.196.102.74
IOC database
- Type
- ipv4
- Value
196.196.102.74- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
alxescript.info
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
alxescript.info- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
anomkit.shop
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
anomkit.shop- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
apple-login-imaps.com
UrlVoid 2 / 36
IOC database
- Type
- domain
- Value
apple-login-imaps.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
apple-thailand.co
UrlVoid 0 / 36
IOC database
- Type
- domain
- Value
apple-thailand.co- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
center-one.online
IOC database
- Type
- domain
- Value
center-one.online- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
gon-unlocker.pro
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
gon-unlocker.pro- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
irealm-server.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
irealm-server.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
key-unlock.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
key-unlock.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
kit-pro-bot.click
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
kit-pro-bot.click- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
projectpartapple.com
UrlVoid 1 / 36
IOC database
- Type
- domain
- Value
projectpartapple.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
spider-off-unlock.one
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
spider-off-unlock.one- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
b.pro-center.my.id
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
b.pro-center.my.id- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
apple-care-in.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
apple-care-in.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
apple-localise.info
UrlVoid 1 / 36
IOC database
- Type
- domain
- Value
apple-localise.info- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
applelnfo.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
applelnfo.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
encontrar-dispositivos.cloud
IOC database
- Type
- domain
- Value
encontrar-dispositivos.cloud- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
find-alerts.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
find-alerts.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
findmylocalizado.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
findmylocalizado.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
fmi-dispositivo.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
fmi-dispositivo.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
fmi-dispositivos.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
fmi-dispositivos.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
i-cloudsd.com
UrlVoid 0 / 36
IOC database
- Type
- domain
- Value
i-cloudsd.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
icloud-inc-in.info
UrlVoid 1 / 36
IOC database
- Type
- domain
- Value
icloud-inc-in.info- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
inc-locations.support
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
inc-locations.support- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
kanoondekho.com
IOC database
- Type
- domain
- Value
kanoondekho.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
prookit.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
prookit.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
rastreo-devices.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
rastreo-devices.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
trace-apple-in.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
trace-apple-in.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
irealm-server.co
UrlVoid 1 / 36
IOC database
- Type
- domain
- Value
irealm-server.co- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
apple-unlock.com
VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/domains/apple-unlock.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
apple-unlock.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 3 threats
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/domains/apple-unlock.com
domain
buscar-lphone.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
buscar-lphone.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
suporte-lcloud.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
suporte-lcloud.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
com-maps.info
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
com-maps.info- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
findmy-dispositivos.com
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
findmy-dispositivos.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
id-ubicacion.com
UrlVoid 4 / 36
IOC database
- Type
- domain
- Value
id-ubicacion.com- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
domain
findsupport.live
VT 18 / 91
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
findsupport.live- First seen
- Last seen
- Attached to this threat
- Appears in
- 3 threats
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Flagged by 18 of 91 VirusTotal vendors
| Vendor | Verdict | Detection |
|---|---|---|
| ADMINUSLabs | malicious | malicious |
| alphaMountain.ai | malicious | phishing |
| BitDefender | malicious | phishing |
| CyRadar | malicious | phishing |
| ESTsecurity | malicious | malicious |
| Forcepoint ThreatSeeker | malicious | phishing |
| Fortinet | malicious | phishing |
| G-Data | malicious | phishing |
| Google Safe Browsing | malicious | phishing |
| Gridinsoft | malicious | phishing |
| Lionic | malicious | phishing |
| Seclookup | malicious | malicious |
| SOCRadar | malicious | malicious |
| Sophos | malicious | phishing |
| Viettel Threat Intelligence | malicious | phishing |
| VIPRE | malicious | phishing |
| Webroot | malicious | malicious |
| ESET | suspicious | suspicious |
Details From VirusTotal
Basic Properties
| TLD | live |
History
| Creation date | 2025-09-22 00:00 UTC |
| Last analysis | 2026-08-29 14:35 UTC |
| Last modified on VirusTotal | 2026-08-29 17:06 UTC |
| Last WHOIS update | 2025-09-22 00:00 UTC |
| WHOIS record date | 2026-09-22 00:00 UTC |
domain
zu7pl.pro
UrlVoid 3 / 36
IOC database
- Type
- domain
- Value
zu7pl.pro- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (2)
-
OTX pulse
AlienVaulkt OTX
AnonyMousKIT is an AI-powered Phishing-as-a-Service platform engineered to disable Apple's Activation Lock on stolen devices. Operating as a credit-metered system, it automates credential harvesting through email, SMS, WhatsApp, and AI-driven voice phishing calls. The investigation exposed a reseller supply chain spanning 506 domains and 168 storefront brands active since early 2024. The platform targets owners of stolen Apple devices using device-specific lures with internal model identifiers a
- reference AlienVaulkt OTX
Remediations (10)
-
web:arnav.au
The cybercrime supply chain now runs in layers: PhaaS operators provide the initial access, credential theft results in account compromise, and Initial Access Brokers sell that foothold to ransomware operators who have no involvement in the phishing campaign itself. This separation of roles makes attribution and disruption significantly harder.
-
web:arxiv.org
Experimental outcomes indicate better detection accuracy, shorter mitigation latency and reasonable build-time overhead than rule-based, provenance only and RL only baselines. These results show that agentic AI can facilitate the transition to self defending, proactive software supply chains rather than reactive verification ones.
-
web:docs.paloaltonetworks.com
Prisma AIRS AI Supply Chain Security brings visibility, validation, and control to every AI artifact before it reaches production. By securing both AI models and agent skills through a unified platform, you can innovate confidently while protecting intellectual property, reducing operational risk, and maintaining regulatory trust.
-
web:labs.cloudsecurityalliance.org
Central to the guidance's recommended mitigation posture is the AI Bill of Materials—a structured, machine-readable inventory of all components in an AI /ML system's supply chain .
-
web:michaellaplante.com
But with this rapid adoption comes a surge in supply chain attacks—targeted efforts to compromise your systems through third-party components, dependencies, or services. In 2024, as AI workloads become more complex and interconnected, mitigating these risks isn't just a security best practice; it's a business imperative.
-
web:radar.offseq.com
Detailed information about AI-Powered PhaaS Supply Chain . Get real-time updates, technical details, and mitigation strategies.
-
web:sisa.ai
This week's intelligence indicates an aggressive mix of state-sponsored cyber espionage, autonomous AI -driven extortion, and severe supply chain vulnerabilities targeting developer workspaces. Threat actors are successfully bypassing enterprise defenses by mass-leaking zero-day exploits, turning AI coding assistants into self-propagating infection vectors, and weaponizing legitimate cloud ...
-
web:sisa.ai
A weekly threat watch covering the TrapDoor and Malware-Slop AI supply chain attacks, Kali365 MFA bypasses, Lazarus RemotePE, and the Microsoft SharePoint RCE.
-
web:socradar.io
Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain The SOCRadar Threat Research Unit (STRU) has conducted an "inside-out" analysis of AnonyMousKIT, an AI-powered Phishing-as-a-Service ( PhaaS ) ecosystem specifically engineered to disable Apple 's Activation Lock on stolen devices. Operating as a credit-metered platform, AnonyMousKIT automates credential harvesting through a ...
-
web:www.cloudsek.com
CloudSEK's research on the LiteLLM supply chain attack, the largest AI supply chain breach of 2026, names the organizations potentially exposed: 2,500+ companies and 434,000 CI/CD pipelines worldwide. The LiteLLM breach began with a compromised Trivy build and cascaded through PyPI into automated CI/CD pipelines, putting cloud credentials, source code repositories, Kubernetes environments and ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.
Reputation of linked indicators
DomScan scores the domains, AbuseIPDB + GreyNoise score the IPs. Verdicts are per-indicator — this is a roll-up, so no lookup is triggered by opening this page.
| Indicator | Type | Verdict | Score |
|---|---|---|---|
apple-care-in.com |
domain | critical | 38 |
apple-localise.info |
domain | critical | 38 |
applelnfo.com |
domain | critical | 38 |
com-maps.info |
domain | high | 42 |
id-ubicacion.com |
domain | high | 42 |
findsupport.live |
domain | high | 42 |
zu7pl.pro |
domain | high | 53 |
irealm-server.com |
domain | high | 42 |
spider-off-unlock.one |
domain | high | 42 |
encontrar-dispositivos.cloud |
domain | high | 42 |
find-alerts.com |
domain | high | 42 |
findmylocalizado.com |
domain | high | 42 |