Threat Intelligence / Actor / GlassWorm Operator
GlassWorm Operator
Also known as: GlassWorm
Tracked threats
- GlassWorm Supply Chain Attack: Fake Browser Extension & Multi-Stage RAT via Compromised Developer Packages — HIGH
- GlassWorm Supply Chain Campaign: 73 Malicious Open VSX Extensions Using Transitive Dependencies — HIGH
Full actor intelligence — infrastructure, IOCs, detection coverage and operator fingerprints — is available via the Threadlinqs MCP server (Purple tier). View plans →