- What: Proofpoint reports on the initial access techniques used by threat actor TA584.
- Impact: Organizations are potentially vulnerable to TA584's evolving tactics.
2026-01-28 (Back to Inventory) Can’t stop, won’t stop: TA584 innovates initial access Author(s): Proofpoint Threat Research Team Organization: Proofpoint win.xworm TA584 Open article directly Related Articles 2025-10-13 ⋅ Proofpoint ⋅ Kyle Cucci , Proofpoint Threat Research Team , Selena Larson , Tommy Madjar When the monster bytes: tracking TA585 and its arsenal MonsterV2 2025-09-16 ⋅ Proofpoint ⋅ Greg Lesnewich , Mark Kelly , Nick Attfield , Proofpoint Threat Research Team Going Underground: China-aligned TA415 Conducts U.S.-China Economic Relations Targeting Using VS Code Remote Tunnels 2025-09-03 ⋅ Proofpoint ⋅ Kyle Cucci , Proofpoint Threat Research Team , Rob Kinner Not Safe for Work: Tracking and Investigating Stealerium and Phantom Infostealers Phantom Stealer