Last Week in Threats
The Week's Signal, Not the Noise.
Last Week in Threats is our weekly retrospective on the cyber threats that shaped the past seven days. Each edition distills aggregate intelligence into a clear read of what changed: ransomware activity and the groups driving it, the vulnerabilities that moved from theory to active exploitation, and the malicious infrastructure defenders should be watching.
Every figure is traceable to its original source and pull date, from ransomware.live and the CISA Known Exploited Vulnerabilities catalog to community intelligence feeds. We favor attributed, reproducible numbers over hype, and we close each edition with a behavioral hunting takeaway your team can put to work immediately.
This is a data-driven recap, not breaking news. It is built to give security leaders the signal in one place, and to give practitioners the queries and context to act on it.