New Lua-based malware “LucidRook” observed in targeted attacks against Taiwanese organizationsCisco Talos·Apr 8, 10:00 UTC · Apr 8, 2026Malware30
Gamers Tricked Into Downloading Lua-Based Malware via Fake Cheating Script EnginesThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Malware30
Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering SoftwareThe Hacker News·May 18, 06:14 UTC · May 18, 2026Malware42
UAT-10362 linked to LucidRook attacks targeting TaiwanSecurity Affairs·Apr 10, 11:27 UTC · Apr 10, 2026Malware30
New RedLine Stealer Variant Disguised as Game Cheats Using Lua Bytecode for StealthThe Hacker News·Apr 25, 03:49 UTC · Apr 25, 2024MalwareCVE-2024-2141347
Chalubo, a new IoT botnet emerges in the threat landscapeSecurity Affairs·Oct 24, 06:22 UTC · Oct 24, 2018Malware30
Phishing Campaign Hides Lua Loader as TrueType Font FileInfosecurity Magazine·Jul 16, 15:00 UTC · Jul 16, 2026Malware30
Fast16: Pre-Stuxnet malware that targeted precision engineering softwareSecurity Affairs·Apr 27, 08:48 UTC · Apr 27, 2026Malware55
PoetRAT: Malware targeting public and private sector in Azerbaijan evolvesCisco Talos·Oct 6, 14:52 UTC · Oct 6, 2020Malware30
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in SpearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026Malware30
Linux Shishiga malware, a threat in dangerous evolutionSecurity Affairs·Apr 25, 17:51 UTC · Apr 25, 2017Malware30
Godlua backdoor, the first bot that abuses the DNS over HTTPS (DoH)Security Affairs·Jul 5, 06:21 UTC · Jul 5, 2019MalwareCVE-2019-339647
Researchers Identify Fast16 Sabotage Malware That PreInfosecurity Magazine·Apr 27, 09:10 UTC · Apr 27, 2026Malware55
Magento Developers Impersonated in Targeted GitHub Malware OperationSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Malware55
ClickFix Campaign Abuses Compromised Sites to Deploy MIMICRAT MalwareThe Hacker News·Feb 20, 14:07 UTC · Feb 20, 2026Malware42
Researchers Unmask Sandman APT's Hidden Link to ChinaThe Hacker News·Jan 24, 04:24 UTC · Jan 24, 2024Malware42
Rhadamanthys Malware: Swiss Army Knife of Information Stealers EmergesThe Hacker News·Dec 25, 07:22 UTC · Dec 25, 2023Malware42
Sandman APT targets telcos with LuaDream backdoorSecurity Affairs·Sep 22, 12:05 UTC · Sep 22, 2023Malware42
New Go-based Redigo malware targets Redis serversSecurity Affairs·Dec 1, 22:39 UTC · Dec 1, 2022Malware in the wildCVE-2022-054360
Flame: Bunny, Frog, Munch and BeetleJuice…Kaspersky Securelist·May 30, 00:30 UTC · May 30, 2012Malware42
AI developers targeted via trojanized GitHub repositoriesHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2026Malware130
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresThe Hacker News·Jun 17, 08:52 UTC · Jun 17, 2026Malware42
Over 600,000 SOHO routers were destroyed by Chalubo malware in 72 hoursSecurity Affairs·May 31, 13:34 UTC · May 31, 2024Malware42
Turla APT used two new backdoors to infiltrate a European ministry of foreign affairsSecurity Affairs·May 17, 21:24 UTC · May 17, 2024Malware42
Researchers warn of 'vast' new IoT botnetCyberScoop·Oct 20, 21:15 UTC · Oct 20, 2017Malware in the wildCVE-2017-822560
Flame: Replication via Windows Update MITM proxy serverKaspersky Securelist·Jun 6, 20:43 UTC · Jun 6, 2012Malware30
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader MalwareThe Hacker News·Jul 21, 11:39 UTC · Jul 21, 2026Malware30
Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsThe Hacker News·May 18, 08:39 UTC · May 18, 2026Malware42
⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreThe Hacker News·Apr 28, 07:38 UTC · Apr 28, 2026MalwareCVE-2025-20333CVE-2025-20362CVE-2026-40372+20 CVEs147
GitHub-hosted malware campaign uses split payload to evade detectionHelp Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Malware30
Desktop and IoT malware report for Q3 2025Kaspersky Securelist·Nov 19, 10:00 UTC · Nov 19, 2025MalwareCVE-2024-4076660
AI-Enabled Malware Now Actively Deployed, Says GoogleInfosecurity Magazine·Nov 6, 09:45 UTC · Nov 6, 2025Malware42
Google Uncovers PROMPTFLUX Malware That Uses Gemini AI to Rewrite Its Code HourlyThe Hacker News·Nov 6, 04:37 UTC · Nov 6, 2025Malware42
Google uncovers malware using LLMs to operate and evade detectionHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2025Malware142
Malicious VSX Extension "SleepyDuck" Uses Ethereum to Keep Its Command Server AliveThe Hacker News·Nov 4, 04:23 UTC · Nov 4, 2025Malware30
Rhadamanthys Stealer Evolves: Adds Device Fingerprinting, PNG Steganography PayloadsThe Hacker News·Oct 8, 04:31 UTC · Oct 8, 2025Malware30
Mirai-Variant IoT Botnet Used to Target Financial Sector in January 2018Recorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Malware30
PRevent: Open-source tool to detect malicious code in pull requestsHelp Net Security·Feb 24, 09:13 UTC · Feb 24, 2025Malware42
Malicious NPM Packages Target Roblox Users with DataThe Hacker News·Nov 8, 11:53 UTC · Nov 8, 2024Malware42