#RecordedFuture
Today the Russian Federation labeled Cyber Threat Intelligence company @RecordedFuture as "undesirable".
December 18, 2024 at 3:27 PM
I'm begging Infosec people to stop putting emojis in their posts like a LinkedIn sales pitch

Just write a good article. Look at Mandiant, RecordedFuture, Trellix, ProofPoint, Palo Alto, etc.

The papers are factual, on point, unbelievably boring, and dry.

That's the good shit
August 25, 2025 at 11:11 PM
This morning, our team at @RecordedFuture published a report analyzing Russian influence operations targeting the upcoming German federal elections.

A 🧵 with the highlights.
February 13, 2025 at 3:09 PM
~Recordedfuture~
Russia is likely to intensify cyber, influence, sabotage, and infrastructure attacks across Europe.
-
IOCs: (None identified)
-
#HybridWarfare #Russia #ThreatIntel
Russia Escalating Hybrid Attacks
www.recordedfuture.com
September 24, 2026 at 4:26 PM
#Russia bans #cybersecurity company #RecordedFuture. The designation won cheers from the CEO of the firm, believed to be the first #information #security company to garner the label. via @timstarks.bsky.social cyberscoop.com/russia-bans-...
Russia bans cybersecurity company Recorded Future
The company stands accused of collaborating with the Central Intelligence Agency, Ukraine and other countries.
cyberscoop.com
December 18, 2024 at 7:53 PM
Solo per trasparenza: CNN riporta che 1° media a dare notizia che il US Cyber Command sospenderebbe operazioni offensive contro #Russia è The Record. #TheRecord è di proprietà dell'azienda di intelligence #RecordedFuture che nel 2022 ha stabilito un contratto con #Ucraina
March 3, 2025 at 9:35 AM
This is really well written and has great sources...also look at work by recordedfuture for additional resources on Doppleganger and other disinfo nets such as Spamoflage and more.
February 1, 2025 at 4:32 PM
~Recordedfuture~
ClickFix uses trusted logos and fake CAPTCHA pages to trick victims into running commands.
-
IOCs: (None identified)
-
#ClickFix #Phishing #ThreatIntel
ClickFix Brand Impersonation
www.recordedfuture.com
September 23, 2026 at 4:11 PM
Threat Intelligence of the future will be about both intelligence and reasoning / artificial intelligence - I suggest we call it TI².

@RecordedFuture
have epic things coming.

— from @cahlberg (https://x.com/cahlberg/status/2103075012416786667)
September 24, 2026 at 11:05 AM
Today, we released new @RecordedFuture research detailing BlueDelta’s expanded credential-harvesting activity observed between February and September 2025. #BlueDelta #APT28 #FANCYBEAR #ForestBlizzard #FROZENLAKE #ITG05 #PawnStorm #Sednit #Sofacy #TA422 (1/5) www.recordedfuture.com/research/gru...
GRU-Linked BlueDelta Evolves Credential Harvesting
Insikt Group reveals how GRU-linked BlueDelta evolved credential-harvesting campaigns targeting government, energy, and research organizations across Europe and Eurasia.
www.recordedfuture.com
January 7, 2026 at 3:39 PM
We gave the data to @TipsyBacchus, an employee from SentinelOne, @josephfcox, and an employee from RecordedFuture.
October 7, 2024 at 4:07 AM
wanna know how many times i asked recordedfuture people (and generally the “cyber” crowd) about dima on twitter (with receipts and all that)?
December 5, 2025 at 7:49 PM
~Recordedfuture~
Integrate threat intelligence to automate IOC enrichment, prioritize vulnerabilities, and enable autonomous operations.
-
IOCs: (None identified)
-
#Automation #SecOps #ThreatIntel
4 Workflows for Operationalizing Threat Intel
www.recordedfuture.com
April 16, 2026 at 4:03 AM
RecordedFuture published this article in September 18 2025. Be aware. CopyCop is a Russian disinformation app. #cdnpoli www.recordedfuture.com/research/cop...
September 24, 2025 at 1:37 PM
2/ RecordedFuture network intelligence identified persistent malicious infrastructure across more than 20 networks receiving upstream transit from aurologic, several of which are assessed with high probability to operate as Threat Activity Enablers (TAEs).
November 6, 2025 at 11:30 AM
#Russia banned the #cybersecurity company #RecordedFuture on Wednesday, labeling it an “undesirable” organization — much to its CEO’s delight. The company stands accused of collaborating with the #CIA, #Ukraine and other countries. via @timstarks.bsky.social youtu.be/UoxOd2lTpts?...
Russia bans cybersecurity company Recorded Future #shorts
YouTube video by CyberScoop
youtu.be
December 19, 2024 at 2:12 AM
New RecordedFuture report! This research examines the rapid expansion of Chinese international communication centers (ICCs) — leveraging inauthentic social media accounts, foreign influencers, and overseas media to amplify CCP-aligned narratives.

www.recordedfuture.com/research/bre...
China’s Propaganda Expansion: Inside the Rise of International Communication Centers (ICCs)
China's ICCs reshape global propaganda via targeted messaging, social media, and influence networks to amplify the Communist Party's voice globally.
www.recordedfuture.com
December 11, 2024 at 7:43 AM
Today, we released new @RecordedFuture research detailing BlueDelta’s sustained credential-harvesting campaign targeting UKR.NET users between June 2024 and April 2025. www.recordedfuture.com/research/blu...
#BlueDelta #APT28 #FANCYBEAR #ForestBlizzard #FROZENLAKE #PawnStorm #Sednit #Sofacy (1/5)
BlueDelta’s Persistent Campaign Against UKR.NET
Discover how Russia’s BlueDelta targets UKR.NET users with advanced credential-harvesting campaigns, evolving tradecraft, and multi-stage phishing techniques.
www.recordedfuture.com
December 17, 2025 at 3:46 PM
#Candiru was also greatly investigated by #RecordedFuture they’ve written a great report about: assets.recordedfuture.com/content/dam/...
November 4, 2025 at 3:19 PM
Threat intelligence can disrupt ransomware before encryption by spotting exposed credentials, attacker infrastructure, and early C2 activity. Recorded Future helps prioritize and stop threats sooner. #Ransomware #IntelligenceGraph #RaaS
Using Threat Intelligence To Stop Ransomware Attacks
The article explains that ransomware defense is most effective before encryption, when defenders can detect exposed credentials, malicious infrastructure, and attacker behavior earlier in the attack lifecycle. It also shows how Recorded Future uses threat intelligence, the Intelligence Graph, and workflow integrations to help organizations prioritize relevant ransomware threats and disrupt them sooner. #RecordedFuture #IntelligenceGraph #RaaS
www.hendryadrian.com
September 26, 2026 at 2:45 PM
Just to introduce some transparency: according to CNN, it was #TheRecord,the 1st media which reported on the fact that the #USCyberCommand would suspend offensive ops against #Russia.The Record is owned by intelligence firm #RecordedFuture,which in 2022 signed a MoU with #Ukraine
March 3, 2025 at 9:36 AM
Why even consider allying with the Russian government?

SecurityWeek | 🇷🇺 Government Now Actively Managing Cybercrime Groups: Security Firm #RecordedFuture @therecordmedia.bsky.social

www.securityweek.com/russian-gove...
Russian Government Now Actively Managing Cybercrime Groups: Security Firm
Russian cybercriminals are no longer just tolerated by the country’s government, but managed by it, Recorded Future reports.
www.securityweek.com
October 23, 2025 at 6:48 PM
"Lazarus Doesn't Need AGI" published by RecordedFuture. #Lazarus, #TraderTraitor, #DPRK, #CTI https://www.recordedfuture.com/blog/lazarus-does-not-need-agi
April 29, 2026 at 1:30 PM
Been through at least 10 Threat Intel platform demos in last 6 months. Best I've seen so far is @RecordedFuture
November 6, 2024 at 9:34 AM