Nanocore, Netwire and AsyncRAT spreading campaign uses public cloud infrastructureCisco Talos·Jan 12, 13:02 UTC · Jan 12, 2022Malware30
Go to HELL, PowersHELL : Powerdown the PowerShell AttacksSecurity Affairs·Nov 15, 07:20 UTC · Nov 15, 2017Malware in the wild157
Malvertising on steroids serves Lumma infostealerHelp Net Security·Dec 17, 00:00 UTC · Dec 17, 2024Malware30
MintsLoader Malware Analysis: Multi-Stage Loader Used by TAGRecorded Future·Apr 20, 00:00 UTC · Apr 20, 2025Malware42
Gamaredon targeted the military mission of a Western country based in UkraineSecurity Affairs·Apr 11, 07:09 UTC · Apr 11, 2025Malware42
JasperLoader Emerges, Targets Italy with Gootkit Banking TrojanCisco Talos·Apr 25, 15:00 UTC · Apr 25, 2019Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
Experts shared up-to-date C2 domains and other artifacts related to recent MintsLoader attacksSecurity Affairs·May 5, 11:24 UTC · May 5, 2025Malware30
Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF FilesThe Hacker News·Oct 22, 16:55 UTC · Oct 22, 2025Malware42
New Phishing Campaign Deploys WARMCOOKIE Backdoor Targeting Job SeekersThe Hacker News·Jun 12, 09:34 UTC · Jun 12, 2024Malware42
MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth AttacksThe Hacker News·May 2, 08:57 UTC · May 2, 2025Malware30
Detecting evolving threats: NetSupport RAT campaignCisco Talos·Aug 1, 10:00 UTC · Aug 1, 2024Malware30
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
The Solidity Language open-source package was used in a $500,000 crypto heistKaspersky Securelist·Jul 10, 11:00 UTC · Jul 10, 2025Malware42
Suspected Russian hackers deploy CANFAIL malware against UkraineSecurity Affairs·Feb 14, 11:05 UTC · Feb 14, 2026Malware42
Attackers Using Obfuscation Tools to Deliver MultiThe Hacker News·Apr 10, 14:05 UTC · Apr 10, 2024Malware30
New Brazilian-Linked SambaSpy Malware Targets Italian Users via Phishing EmailsThe Hacker News·Sep 19, 14:10 UTC · Sep 19, 2024Malware30
Metamorfo Banking Trojan Keeps Its Sights on BrazilCisco Talos·Nov 8, 17:09 UTC · Nov 8, 2018Malware30
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaignCisco Talos·Jul 16, 10:00 UTC · Jul 16, 2026Malware30
Malware campaign attempts to evade analysis with Any.Run sandboxSecurity Affairs·Jul 13, 11:58 UTC · Jul 13, 2020Malware30
JackFix Uses Fake Windows Update Pop-Ups on Adult Sites to Deliver Multiple StealersThe Hacker News·Dec 2, 05:40 UTC · Dec 2, 2025Malware55
Malware Complexity Jumps 127% in Six MonthsInfosecurity Magazine·Aug 6, 14:00 UTC · Aug 6, 2025Malware55
Crooks start exploiting Coronavirus as bait to spread malwareSecurity Affairs·Feb 1, 16:06 UTC · Feb 1, 2020Malware42
Microsoft: Info-Stealing malware expands from Windows to macOSSecurity Affairs·Feb 4, 11:30 UTC · Feb 4, 2026Malware42
ScrubCrypt used to drop VenomRAT along with many malicious pluginsSecurity Affairs·Apr 9, 16:40 UTC · Apr 9, 2024Malware30
New Malware Campaign Targeting Job Seekers with Cobalt Strike BeaconsThe Hacker News·Oct 1, 05:49 UTC · Oct 1, 2022MalwareCVE-2017-019947
Hackers use steganography in targeted attacks on industrial enterprisesSecurity Affairs·May 29, 08:10 UTC · May 29, 2020Malware30
Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA PagesThe Hacker News·Jan 27, 14:14 UTC · Jan 27, 2026Malware42
OBSCURE#BAT Malware Uses Fake CAPTCHA Pages to Deploy Rootkit r77 and Evade DetectionThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Malware55
Experts Warn of Mekotio Banking Trojan Targeting Latin American CountriesThe Hacker News·Jul 9, 04:21 UTC · Jul 9, 2024Malware42
ClipBanker Trojan masquerades as Proxifier softwareKaspersky Securelist·Apr 9, 09:07 UTC · Apr 9, 2026Malware30
Gamaredon Uses Infected Removable Drives to Breach Western Military Mission in UkraineThe Hacker News·Apr 10, 10:53 UTC · Apr 10, 2025Malware30
Talos team spotted a PowerShell malware that uses DNS queries to contact the C2Security Affairs·Mar 3, 14:14 UTC · Mar 3, 2017Malware42