North Korea-linked Lazarus APT uses first Mac malware in cryptocurrency exchange attackSecurity Affairs·Aug 24, 15:17 UTC · Aug 24, 2018Malware42
Two Mac malware-as-a-Service offerings uncoveredHelp Net Security·Jun 26, 21:22 UTC · Jun 26, 2018Malware42
OceanLotus APT is very active, it used new Backdoor in recent campaignsSecurity Affairs·Mar 14, 15:15 UTC · Mar 14, 2018Malware42
The Hajime Botnet continues to grow and implements a new attack techniqueSecurity Affairs·Dec 29, 13:45 UTC · Dec 29, 2017Malware30
Crooks abused the Orcus RAT to target Bitcoin investorsSecurity Affairs·Dec 12, 20:41 UTC · Dec 12, 2017Malware30
Symantec is monitoring the Hajime IoT malware, is it the work of vigilante hacker?Security Affairs·Apr 27, 08:18 UTC · Apr 27, 2017Malware30
BE2 extraordinary plugins, Siemens targeting, dev failsKaspersky Securelist·Feb 17, 23:37 UTC · Feb 17, 2015Malware42
“Red October”. Detailed Malware Description 4. Second Stage of AttackKaspersky Securelist·Jan 17, 16:06 UTC · Jan 17, 2013Malware42
LianSpy: Android spyware leveraging Yandex Disk as C2Kaspersky Securelist·Aug 5, 09:40 UTC · Aug 5, 2024Malware30
Analyzing the Various Layers of AgentTesla’s PackingPalo Alto Unit 42·Sep 25, 17:00 UTC · Sep 25, 2017Malware30
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
From Linux to Windows – New Family of CrossKaspersky Securelist·Jan 29, 15:52 UTC · Jan 29, 2016Malware42
Forgot About Default Accounts? No Worries, GoScanSSH Didn’tCisco Talos·Mar 26, 14:45 UTC · Mar 26, 2018Malware30
Updates from the MaaS: new threats delivered through NullMixerSecurity Affairs·Mar 27, 13:41 UTC · Mar 27, 2023Malware42
China-linked APT41 used Google Calendar as C2 to control its TOUGHPROGRESS malwareSecurity Affairs·May 29, 11:17 UTC · May 29, 2025Malware30
OSX_OCEANLOTUS.D, a new macOS backdoor linked to APT 32 groupSecurity Affairs·Apr 5, 18:23 UTC · Apr 5, 2018Malware42
Fake Claude AI Site Drops Beagle Backdoor on Windows UsersInfosecurity Magazine·May 7, 13:15 UTC · May 7, 2026Malware42
TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOThe Hacker News·May 25, 05:59 UTC · May 25, 2026Malware42
Owowa: the add-on that turns your OWA into a credential stealer and remote access panelKaspersky Securelist·Dec 14, 10:00 UTC · Dec 14, 2021Malware30
TeleRAT: Another Android Trojan Leveraging Telegram’s Bot API to Target Iranian UsersPalo Alto Unit 42·Sep 6, 08:45 UTC · Sep 6, 2018Malware30
CrowdStrike, Google Take Down Glassworm BotnetInfosecurity Magazine·May 27, 14:00 UTC · May 27, 2026Malware42
How cybersecurity firms took down Glassworm botnet in one shotSecurity Affairs·May 27, 11:35 UTC · May 27, 2026Malware42
New Lua-based malware “LucidRook” observed in targeted attacks against Taiwanese organizationsCisco Talos·Apr 8, 10:00 UTC · Apr 8, 2026Malware30
Experts warn of a new wave of Bumblebee malware attacksSecurity Affairs·Oct 22, 13:13 UTC · Oct 22, 2024Malware42
Meteor was the wiper used against Iran’s national railway systemSecurity Affairs·Jul 30, 06:04 UTC · Jul 30, 2021Malware42
Elections GoRansom – a smoke screen for the HermeticWiper attackKaspersky Securelist·Mar 1, 13:30 UTC · Mar 1, 2022Malware42
Magecart skimmer turns Stripe into a malware command serverSansec (Magento / e-commerce security)·Jun 4, 05:31 UTC · Jun 4, 2026Malware42
How Kaspersky obtained all stages of Operation TriangulationKaspersky Securelist·Oct 26, 10:30 UTC · Oct 26, 2023Malware30
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaignCisco Talos·Jul 16, 10:00 UTC · Jul 16, 2026Malware30
Hiding in plain sight: PhantomLance walks into a marketKaspersky Securelist·Apr 28, 15:00 UTC · Apr 28, 2020Malware42
SockDetour – a Silent, Fileless, Socketless BackdoorPalo Alto Unit 42·Jun 5, 23:28 UTC · Jun 5, 2024MalwareCVE-2021-40539CVE-2021-44077CVE-2021-2879947
An Android Spyware revealed the existence of a new surveillance firmSecurity Affairs·Nov 21, 07:43 UTC · Nov 21, 2016Malware30
CactusPete APT group’s updated Bisonal backdoorKaspersky Securelist·Aug 13, 10:00 UTC · Aug 13, 2020MalwareCVE-2018-817460