In June 2023, CRA Business Intelligence conducted a survey asking 210 security and IT leaders and executives, practitioners, administrators, and compliance professionals in North America about the effectiveness of their organizations' threat intelligence programs and tools. Some respondents were forthcoming about the challenges testing their organizations' capabilities . Below are their verbatim responses found in the report, titled Threat intelligence: Eyes on the enemy.
Socket researchers identified 40 malicious extensions and 37 others disguised as unrelated utilities, all linked through shared code, infrastructure, and publishing artifacts.
These "dropcatch" domains are attractive to threat actors because they retain trust, backlinks, and web traffic from their previous legitimate use, making them appear more favorable to security systems than new registrations.