MBT A.I CyberSecurity Scoring
MBT
Company Information
Website:https://micronbrain.com
Employees number:13
Number of followers:175
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:micronbrain.com
MBT Risk Score (AI oriented)
Between 700 and 749
MBTIT Services and IT Consulting
Updated:
15/06/2026
15/06/2026
733/1000
Moderate
Ba
MBT Global Score (TPRM)
xxxx
MBTIT Services and IT Consulting
Score locked

MBTModerate
Current Score
733Ba (MODERATE)
01000
1 incidents
-18 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
751
Cyber Attack
11 Jun 2026 • MBT
micronsoftwares: Threat Actor Malware Platform Exposed Through Unlocked PHP Installer Page
Exposed PHP Malware Platform Reveals Threat Actor’s Critical Security Failures
733
HIGH-18
MIC1781504631
Exposed PHP Malware Platform Reveals Threat Actor’s Critical Security Failures
On June 11, 2026, a security researcher uncovered a misconfigured PHP-based malware distribution platform after inadvertently gaining administrative access via an unsecured installation page. The discovery stemmed from routine threat intelligence monitoring on X (formerly Twitter), where a suspicious domain micronsoftwares[.]com was flagged as a potential indicator of compromise (IOC).
Initial analysis suggested a standard fake software download portal, but deeper inspection revealed a fully operational backend system supporting malware delivery. During enumeration, the researcher identified exposed endpoints, including /admin/login.php and /install/install.php a critical oversight, as installation scripts should be removed or locked post-deployment.
Exploiting the flaw, the researcher initiated a reinstallation workflow, redirecting the platform’s database connection to an attacker-controlled MySQL instance. The lack of validation checks allowed the creation of a new admin account, temporarily disrupting the platform with HTTP 500 errors before the threat actor restored its original configuration.
Despite the recovery, session management weaknesses enabled persistent access. The PHP application stored session state server-side without enforcing reauthentication, allowing the researcher to regain entry using a previously issued session cookie. The administrative dashboard exposed a structured malware distribution system, featuring tools for managing downloads, tracking visitors, configuring payload delivery, and monitoring campaign performance.
The interface, written in Russian, hinted at possible attribution to Russian-speaking threat actors, though no definitive link was established. The infrastructure relied on a simple PHP frontend, MySQL database, and file-based hosting, dynamically generating download pages via URL parameters to support flexible campaign delivery.
A key tactic involved multi-stage redirect chains, routing victims through intermediary services including Google Colab-hosted pages before delivering the final malware payload. The consistent end goal: tricking users into downloading compressed archives containing malicious executables, such as payload.exe (SHA256: 7b03fb383a5ce784a3cb9b0f8a76a84e984d14e553de5d98faff3d07d9793085).
While the threat actor later patched the installation flaw, the incident provided rare insight into an active malware-delivery operation. The exposure underscored how even rudimentary threat actor infrastructure can sustain campaigns despite fundamental security misconfigurations, reinforcing the risks of improper deployment practices even within malicious ecosystems. At the time of analysis, the platform remained operational, continuing to distribute malware.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
MAY 2026
751
APRIL 2026
751
MARCH 2026
751
FEBRUARY 2026
751
JANUARY 2026
751
DECEMBER 2025
751
NOVEMBER 2025
751
OCTOBER 2025
751
SEPTEMBER 2025
751
AUGUST 2025
751
JULY 2025
751
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for MBT ??
What was MBT's A.I Rankiteo Cyber Score in May 2026 ??
What was MBT's A.I Rankiteo Cyber Score in April 2026 ??
What was MBT's A.I Rankiteo Cyber Score in March 2026 ??
What was MBT's A.I Rankiteo Cyber Score in February 2026 ??
What was MBT's A.I Rankiteo Cyber Score in January 2026 ??
What was MBT's A.I Rankiteo Cyber Score in December 2025 ??
What was MBT's A.I Rankiteo Cyber Score in November 2025 ??
What was MBT's A.I Rankiteo Cyber Score in October 2025 ??
What was MBT's A.I Rankiteo Cyber Score in September 2025 ??
What was MBT's A.I Rankiteo Cyber Score in August 2025 ??
What was MBT's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on MBT's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with MBT ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view MBT's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?