Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress SitesThe Hacker News·Jun 19, 17:13 UTC · Jun 19, 2026Ransomware60
For the first time, a RomCom payload has been observed being distributed via SocGholish.Security Affairs·Nov 26, 20:16 UTC · Nov 26, 2025Ransomware57
RomCom Uses SocGholish Fake Update Attacks to Deliver Mythic Agent MalwareThe Hacker News·Nov 26, 08:28 UTC · Nov 26, 2025Malware55
CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing NetworksThe Hacker News·Apr 9, 03:06 UTC · Apr 9, 2025Malware30
Windows Shortcut Flaw Exploited by 11 StateInfosecurity Magazine·Mar 19, 16:30 UTC · Mar 19, 2025Vulnerability in the wild60
Unpatched Windows Zero-Day Flaw Exploited by 11 StateThe Hacker News·Mar 19, 03:46 UTC · Mar 19, 2025Exploit / PoC60
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackersThe Record·Mar 18, 20:27 UTC · Mar 18, 2025Exploit / PoC in the wild60
Nation-state actors and cybercrime gangs abuse malicious .lnk files for espionage and data theftSecurity Affairs·Mar 18, 19:21 UTC · Mar 18, 2025Threat actor in the wild60
EU announced sanctions on three members of Russia's GRU Unit 29155Security Affairs·Jan 28, 10:43 UTC · Jan 28, 2025Policy & legal55
Exposed: Russian military Unit 29155 does digital sabotage, espionageHelp Net Security·Dec 24, 13:27 UTC · Dec 24, 2024Threat actor60
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major AttacksThe Hacker News·Sep 9, 04:33 UTC · Sep 9, 2024Exploit / PoC in the wild60
US posts indictments, rewards in Russia’s WhisperGate hacks against UkraineThe Record·Sep 5, 18:47 UTC · Sep 5, 2024Policy & legal55
Black Basta-Linked Attackers Target Users with SystemBC MalwareThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2024Malware42
Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber AttacksThe Hacker News·Jul 18, 08:54 UTC · Jul 18, 2024Ransomware57
Alarming Surge in TrueBot Activity Revealed with New Delivery VectorsThe Hacker News·Jul 12, 03:35 UTC · Jul 12, 2023RansomwareCVE-2022-3119960
US and Canadian Authorities Warn of Increased Truebot ActivityInfosecurity Magazine·Jul 7, 10:30 UTC · Jul 7, 2023RansomwareCVE-2022-3119960
Cyber agencies warn of new TrueBot malware variants targeting US and Canadian firmsThe Record·Jul 6, 17:36 UTC · Jul 6, 2023MalwareCVE-2022-3119947
Experts warn of a surge of TrueBot activity in May 2023Security Affairs·Jun 5, 10:25 UTC · Jun 5, 2023RansomwareCVE-2022-3119960
Hackers use PaperCut printer vulnerability to spread Clop ransomwareThe Record·Apr 27, 15:53 UTC · Apr 27, 2023RansomwareCVE-2023-27350CVE-2023-27351160
PaperCut exploits used to deliver Cl0p & LockBit ransomwareSecurity Affairs·Apr 27, 14:36 UTC · Apr 27, 2023RansomwareCVE-2023-27350CVE-2023-27351160
PaperCut vulnerabilities leveraged by Clop, LockBit ransomware affiliatesHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2023RansomwareCVE-2023-27350CVE-2023-2735160
Clop Ransomware Group Exploits GoAnywhere MFT FlawInfosecurity Magazine·Mar 29, 17:00 UTC · Mar 29, 2023RansomwareCVE-2023-066960
Researchers Discover New PlugX Malware Variant Spreading via Removable USB DevicesThe Hacker News·Feb 7, 06:11 UTC · Feb 7, 2023Malware55
Following the LNK metadata trailCisco Talos·Jan 19, 13:00 UTC · Jan 19, 2023VulnerabilityCVE-2015-009635
IcedID Malware Strikes Again: Active Directory Domain Compromised in Under 24 HoursThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023Malware42
AgentTesla Remains Most Prolific Malware in November, Emotet and Qbot GrowInfosecurity Magazine·Dec 14, 17:00 UTC · Dec 14, 2022Malware30
Chinese Cyber Espionage Hackers Using USB Devices to Target Entities in PhilippinesThe Hacker News·Dec 1, 09:23 UTC · Dec 1, 2022Threat actor45
LockBit Claims Ransomware Attack on ContinentalInfosecurity Magazine·Nov 4, 16:00 UTC · Nov 4, 2022Ransomware57
TA505 Hackers Using TeslaGun Panel to Manage ServHelper Backdoor AttacksThe Hacker News·Sep 7, 03:40 UTC · Sep 7, 2022Malware42
Friday Squid Blogging: Possible Evidence of Squid Paternal CareSchneier on Security·Sep 10, 21:13 UTC · Sep 10, 2021Phishing & fraud30