Experts discovered a SYSCON Backdoor using FTP Server as C&CSecurity Affairs·Oct 5, 20:36 UTC · Oct 5, 2017Malware42
ObliqueRAT: New RAT hits victims' endpoints via malicious documentsCisco Talos·Feb 20, 16:06 UTC · Feb 20, 2020Malware30
FlawedAmmyy Leveraging Undetected XLM Macros as an Infection VehicleSecurity Affairs·Mar 2, 18:46 UTC · Mar 2, 2019Malware in the wild157
e-Commerce Site Hackers Now Hiding Credit Card Stealer Inside Image MetadataThe Hacker News·Jun 30, 07:57 UTC · Jun 30, 2020Malware30
Threat Actors Target Government of Belarus Using CMSTAR TrojanPalo Alto Unit 42·Nov 1, 10:55 UTC · Nov 1, 2018MalwareCVE-2015-164147
A predatory tale: Who’s afraid of the thief?Kaspersky Securelist·Mar 11, 10:00 UTC · Mar 11, 2019Malware30
Secret Backdoors Found in GermanThe Hacker News·Dec 22, 04:19 UTC · Dec 22, 2021MalwareCVE-2021-4085960
OctLurk and SilkLurk: new Backdoors in Central AsiaKaspersky Securelist·Jul 31, 09:44 UTC · Jul 31, 2026Malware42
“Red October”. Detailed Malware Description 2. Second Stage of AttackKaspersky Securelist·Jan 17, 16:08 UTC · Jan 17, 2013Malware42
Inside TDrop2: Technical Analysis of new Dark Seoul MalwarePalo Alto Unit 42·Nov 1, 09:56 UTC · Nov 1, 2018Malware30
Caketap, a new Unix rootkit used to siphon ATM banking dataSecurity Affairs·Mar 18, 15:45 UTC · Mar 18, 2022Malware55
Magnat malvertising campaigns spreads malicious Chrome extensions, backdoors and info stealersSecurity Affairs·Dec 6, 07:25 UTC · Dec 6, 2021Malware42
TinyTurla - Turla deploys new malware to keep a secret backdoor on victim machinesCisco Talos·Sep 21, 12:11 UTC · Sep 21, 2021Malware42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
Analyzing a variant of the GM Bot Android malwareSecurity Affairs·Jan 6, 21:22 UTC · Jan 6, 2017Malware30
Cybaze-Yoroi ZLAB revealed the hidden link between Gootkit and AZORultSecurity Affairs·Feb 12, 18:16 UTC · Feb 12, 2019Malware30
Kronos Banking Trojan resurrection, new campaigns spotted in the wildSecurity Affairs·Jul 26, 07:29 UTC · Jul 26, 2018MalwareCVE-2017-1188235
Threat Spotlight: PoSeidon, A Deep Dive Into Point of Sale MalwareCisco Talos·Mar 20, 11:57 UTC · Mar 20, 2015Malware30
TimbreStealer campaign targets Mexican users with financial luresCisco Talos·Feb 27, 13:00 UTC · Feb 27, 2024Malware30
OceanLotus suspected of distributing ZiChatBot malware via wheel packages in PyPIKaspersky Securelist·May 5, 14:33 UTC · May 5, 2026Malware42
Technical analysis of the QakBot banking TrojanKaspersky Securelist·Sep 2, 10:00 UTC · Sep 2, 2021Malware42
Hidden between the tags: Insights into spammers’ evasion techniques in HTML SmugglingCisco Talos·Jul 10, 12:00 UTC · Jul 10, 2024Malware42
Analysis of TAG-140 Campaign and DRAT V2 Development Targeting Indian Government OrganizationsRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware42
Inside Japanese-Speaking Underground Cyber CommunitiesRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware30
Kaspersky discovers C++ version of BellaCiao malwareKaspersky Securelist·Dec 19, 15:33 UTC · Dec 19, 2024Malware42
menuPass Returns with New Malware and New Attacks Against Japanese Academics and OrganizationsPalo Alto Unit 42·Nov 1, 10:44 UTC · Nov 1, 2018Malware42
Doki, an undetectable Linux backdoor targets Docker ServersSecurity Affairs·Jul 29, 12:21 UTC · Jul 29, 2020Malware142
Info Stealing - The cyber security expert Marco Ramilli spotted a new operation in the wildSecurity Affairs·Nov 16, 18:37 UTC · Nov 16, 2018Malware30
OilRig Performs Tests on the TwoFace WebshellPalo Alto Unit 42·Nov 1, 10:59 UTC · Nov 1, 2018Malware30
An AI Based Solution to Detecting the DoubleZero .NET WiperPalo Alto Unit 42·Jun 5, 17:25 UTC · Jun 5, 2024Malware55
Mirage Kitten’s new malware set: NightLedger backdoor and two tunneling toolsKaspersky Securelist·Jul 28, 09:18 UTC · Jul 28, 2026Malware42