Risky Bulletin Newsletter
March 04, 2024
Risky Biz News: Intellexa pulls new Predator spyware infra after thorough undressing
Presented by
News Editor
Intellexa—the holding company that sells and operates the Predator spyware—has taken servers offline after two security firms exposed the company's brand-new infrastructure.
Reports from Sekoia and Recorded Future provided details on new domains and servers used as part of the Predatory attack and delivery platform.
The reports provided insights on how and from where Intellexa customers were launching operations against their targets. It included details on suspected phishing and social engineering domains and "delivery servers" that hosted and sent the Predator spyware to devices that needed to be infected.