BlackLotus Becomes First UEFI Bootkit Malware to Bypass Secure Boot on Windows 11The Hacker News·Jun 23, 08:42 UTC · Jun 23, 2023Malware in the wildCVE-2022-21894160
Candiru Spyware Caught Exploiting Google Chrome ZeroThe Hacker News·Aug 3, 08:33 UTC · Aug 3, 2022Malware in the wildCVE-2022-229460
⚡ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and MoreThe Hacker News·Jun 23, 03:40 UTC · Jun 23, 2026Malware in the wildCVE-2026-24858CVE-2025-59718CVE-2025-59719+1 CVEs60
BlackLotus Malware Hijacks Windows Secure Boot ProcessSchneier on Security·Mar 15, 00:00 UTC · Mar 15, 2023Malware in the wildCVE-2022-2189460
Google TAG shares details about exploit chains used to install commercial spywareSecurity Affairs·Mar 29, 14:20 UTC · Mar 29, 2023MalwareCVE-2022-42856CVE-2021-30900CVE-2022-3723+7 CVEs60
Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware DeliveryThe Hacker News·Dec 9, 07:34 UTC · Dec 9, 2025MalwareCVE-2025-48543CVE-2025-6554CVE-2023-41993+12 CVEs160
PipeMagic Trojan Exploits Windows ZeroThe Hacker News·Apr 9, 09:04 UTC · Apr 9, 2025MalwareCVE-2025-29824CVE-2025-24983CVE-2023-2825260
Candiru surveillance spyware DevilsTongue exploited Chrome ZeroSecurity Affairs·Jul 22, 08:32 UTC · Jul 22, 2022MalwareCVE-2022-229460
CISA and FBI Raise Alerts on Exploited Flaws and Expanding HiatusRAT CampaignThe Hacker News·Dec 17, 06:34 UTC · Dec 17, 2024Malware in the wildCVE-2024-20767CVE-2024-35250CVE-2017-7921+6 CVEs60
North Korea's Lazarus Group Deploys New Kaolin RAT via Fake Job LuresThe Hacker News·Apr 26, 05:06 UTC · Apr 26, 2024MalwareCVE-2024-21338CVE-2023-4279360
Windows 0-day was exploited by North Korea to install advanced rootkitArs Technica · Security·Aug 19, 23:37 UTC · Aug 19, 2024MalwareCVE-2024-3819360
North Korean Hackers Deploy FudModule Rootkit via Chrome ZeroThe Hacker News·Oct 23, 04:44 UTC · Oct 23, 2024Malware in the wildCVE-2024-7971CVE-2024-4947CVE-2024-5274+3 CVEs60
U.S. Warns of APT Hackers Targeting ICS/SCADA Systems with Specialized MalwareThe Hacker News·May 26, 06:11 UTC · May 26, 2023MalwareCVE-2020-1536860
NoviSpy Spyware Installed on Journalist's Phone After Unlocking It With Cellebrite ToolThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2024Malware in the wildCVE-2024-4304760
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosThe Hacker News·May 26, 04:39 UTC · May 26, 2026Malware in the wildCVE-2026-46333CVE-2026-41091CVE-2026-45498+31 CVEs60
2016 Updates to Shifu Banking TrojanPalo Alto Unit 42·Jan 6, 20:00 UTC · Jan 6, 2017MalwareCVE-2016-0167CVE-2015-0003160
⚡ Weekly Recap: Airline Hacks, Citrix 0-Day, Outlook Malware, Banking Trojans and moreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Malware in the wildCVE-2025-6543CVE-2025-5777CVE-2025-49825+23 CVEs60
Sophisticated APT group compromised routers to deliver Slingshot SpywareSecurity Affairs·Mar 10, 12:14 UTC · Mar 10, 2018MalwareCVE-2007-5633CVE-2010-1592CVE-2009-082460
⚡ THN Weekly Recap: GitHub Supply Chain Attack, AI Malware, BYOVD Tactics, and MoreThe Hacker News·May 7, 10:33 UTC · May 7, 2025MalwareCVE-2025-29927CVE-2025-23120CVE-2024-56346+13 CVEs60
Millions of Dell laptops could be persistently backdoored in ReVault attacksHelp Net Security·Aug 11, 08:57 UTC · Aug 11, 2025MalwareCVE-2025-24311CVE-2025-25050CVE-2025-25215+2 CVEs60
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160