ZeroHour
Cisco Talospublished ()ingested

Malware

highMalwareimportance 42
Full article87 words · extracted from blog.talosintelligence.com · click to collapse

April 2, 2026 06:00

Qilin EDR killer infection chain

This blog provides an in-depth analysis of the malicious “msimg32.dll” used in Qilin ransomware attacks, which is a multi-stage infection chain targeting EDR systems.

May 30, 2024 08:01

LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoader

Cisco Talos is disclosing a new suspected data theft campaign, active since at least 2021, we attribute to an advanced persistent threat actor (APT) we’re calling “LilacSquid.”  Multiple TTPs utilized in this campaign bear some overlap with North Korean APT groups.

Text extracted automatically; images, tables and formatting may be missing. Original: https://blog.talosintelligence.com/category/malware/