Week in review: 0-days exploited in Palo Alto Networks firewalls, two unknown Linux backdoors identifiedHelp Net Security·Nov 24, 00:00 UTC · Nov 24, 2024Malware in the wildCVE-2024-0012CVE-2024-9474CVE-2024-44309+2 CVEs60
Week in review: Exploitable flaws in corporate VPN clients, malware loader created with gaming engineHelp Net Security·Dec 1, 00:00 UTC · Dec 1, 2024MalwareCVE-2024-5921CVE-2024-29014CVE-2024-9680+1 CVEs60
Week in review: Backdoor found in XZ utilities, weaponized iMessages, Exchange servers at riskHelp Net Security·Mar 31, 00:00 UTC · Mar 31, 2024Malware in the wildCVE-2024-3094CVE-2023-48022CVE-2023-2495560
Week in review: Cybersecurity job openings, hackers use 1-day flaws to drop custom Linux malwareHelp Net Security·Mar 17, 00:00 UTC · Mar 17, 2024Malware in the wildCVE-2024-0799CVE-2024-0800CVE-2023-4878860
Agentic attack chains advance as infostealers flood criminal marketsHelp Net Security·Jun 19, 12:05 UTC · Jun 19, 2026Malware in the wild60
Week in review: Exploited 7-Zip 0-day flaw, crypto-stealing malware found on App Store, Google PlayHelp Net Security·Feb 9, 00:00 UTC · Feb 9, 2025MalwareCVE-2025-0411CVE-2025-25181CVE-2024-57968+1 CVEs60
Week in review: MOVEit auth bypass flaws quitely fixed, open-source Rafel RAT targets AndroidsHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2024MalwareCVE-2024-5805CVE-2024-5806CVE-2024-527660
2016 Updates to Shifu Banking TrojanPalo Alto Unit 42·Jan 6, 20:00 UTC · Jan 6, 2017MalwareCVE-2016-0167CVE-2015-0003160
Week in review: Self-spreading npm malware hits developers, Cisco SD-WAN 0-day exploited since 2023Help Net Security·Mar 1, 00:00 UTC · Mar 1, 2026Malware in the wildCVE-2026-25108CVE-2026-20127160
Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoorsHelp Net Security·Oct 26, 00:00 UTC · Oct 26, 2025Malware in the wildCVE-2025-59287CVE-2025-61932CVE-2025-54236+2 CVEs60
T9000: Advanced Modular Backdoor Uses Complex AntiPalo Alto Unit 42·Nov 1, 10:04 UTC · Nov 1, 2018MalwareCVE-2012-1856CVE-2015-164160
Kaspersky Security Bulletin 2012. Malware EvolutionKaspersky Securelist·Dec 5, 15:00 UTC · Dec 5, 2012MalwareCVE-2012-050760
ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesThe Hacker News·May 24, 08:14 UTC · May 24, 2026MalwareCVE-2026-4579360
FBI: Iranian hackers targeting opponents with Telegram malwareCyberScoop·Mar 23, 18:39 UTC · Mar 23, 2026Malware in the wild160
Week in review: AiTM phishing kit used to hijack AWS accounts, year-long malware campaign targets HRHelp Net Security·Mar 15, 00:00 UTC · Mar 15, 2026Malware in the wildCVE-2026-21262CVE-2026-26127160
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & MoreThe Hacker News·Feb 26, 11:25 UTC · Feb 26, 2026MalwareCVE-2026-22769CVE-2026-25926CVE-2026-26119+32 CVEs60
⚡ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and MoreThe Hacker News·Feb 9, 12:59 UTC · Feb 9, 2026MalwareCVE-2026-25049CVE-2026-0709CVE-2026-23795+23 CVEs160
Newly identified Android spyware appears to be from a commercial vendorThe Record·Nov 7, 17:15 UTC · Nov 7, 2025MalwareCVE-2025-2104260
The solar power boom opened a backdoor for cybercriminalsHelp Net Security·Oct 14, 00:00 UTC · Oct 14, 2025MalwareCVE-2022-2930360
House Dems seek info about ICE spyware contract, wary of potential abusesCyberScoop·Oct 6, 18:27 UTC · Oct 6, 2025Malware in the wild60
UK abandons Apple backdoor demand after US diplomatic pressureCyberScoop·Aug 19, 13:52 UTC · Aug 19, 2025Malware in the wild60
SonicWall SMA devices persistently infected with stealthy OVERSTEP backdoor and rootkitHelp Net Security·Aug 5, 15:29 UTC · Aug 5, 2025MalwareCVE-2021-20035CVE-2021-20039CVE-2024-38475+1 CVEs60
Chinese and Russian Communities Analyze Shadow Brokers Malware ReleaseRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025MalwareCVE-2017-014360
⚡ Weekly Recap: APT Campaigns, Browser Hijacks, AI Malware, Cloud Breaches and Critical CVEsThe Hacker News·May 26, 13:00 UTC · May 26, 2025MalwareCVE-2025-4427CVE-2025-4428CVE-2025-34025+7 CVEs60
JPCERT warns of DslogdRAT malware deployed in Ivanti Connect SecureSecurity Affairs·Apr 25, 17:56 UTC · Apr 25, 2025Malware in the wildCVE-2025-028260
Google’s Heather Adkins on infostealers, two-factor authentication and fixing the security ‘mess’ for future generationsThe Record·Oct 15, 14:39 UTC · Oct 15, 2024Malware in the wild60
Top Democrat proposes minimum cybersecurity standards in wake of Change Healthcare attackCyberScoop·Mar 22, 19:47 UTC · Mar 22, 2024Malware in the wild60
Meta details actions against eight spyware firmsCyberScoop·Feb 14, 16:35 UTC · Feb 14, 2024Malware in the wild60
Friday Squid Blogging: Giant Squid from Newfoundland in the 1800sSchneier on Security·Jan 12, 22:06 UTC · Jan 12, 2024Malware in the wild60
4-year campaign backdoored iPhones using possibly the most advanced exploit everArs Technica · Security·Dec 27, 17:03 UTC · Dec 27, 2023MalwareCVE-2023-32434CVE-2023-32435CVE-2023-38606+1 CVEs160
Kaspersky malware report for Q3 2023Kaspersky Securelist·Dec 1, 16:01 UTC · Dec 1, 2023MalwareCVE-2023-23397CVE-2023-2932460
Earth Lusca expands its arsenal with SprySOCKS Linux malwareSecurity Affairs·Sep 19, 07:52 UTC · Sep 19, 2023MalwareCVE-2022-40684CVE-2022-39952CVE-2021-22205+6 CVEs160
New Mirai botnet variant has been very busy, researchers sayThe Record·Mar 28, 16:02 UTC · Mar 28, 2023MalwareCVE-2022-2613460
Did Someone at the Commerce Dept. Find a SolarWinds Backdoor in Aug. 2020?Krebs on Security·Apr 15, 00:00 UTC · Apr 15, 2021MalwareCVE-2020-400660
$100 million botnet scheme earns Russian man 8 years in prisonCyberScoop·Nov 2, 17:41 UTC · Nov 2, 2020Malware in the wild60
Cyber Command, Microsoft take action against TrickBot botnet before Election DayCyberScoop·Oct 12, 13:37 UTC · Oct 12, 2020Malware in the wild160
Facebook wanted to purchase NSO Group spyware to surveil users, court documents allegeCyberScoop·Apr 3, 19:09 UTC · Apr 3, 2020Malware in the wild60
Hong Kong targeted in new sweeping mobile malware campaignCyberScoop·Mar 27, 17:21 UTC · Mar 27, 2020Malware in the wild60
Week in review: Trojanized hacking tools, coronavirus scams, (IN)SECURE Magazine special issueHelp Net Security·Mar 15, 00:00 UTC · Mar 15, 2020MalwareCVE-2020-8597CVE-2020-0796CVE-2020-1018960
NSA's reverse-engineering malware tool, Ghidra, to get new features to save time, boost accuracyCyberScoop·Aug 8, 19:27 UTC · Aug 8, 2019Malware in the wild60