Knife Cutting the Edge: Disclosing a China-nexus gatewayCisco Talos·Feb 5, 11:00 UTC · Feb 5, 2026Malware42
New botnet HTTPBot targets gaming and tech industries with surgical attacksSecurity Affairs·May 16, 18:54 UTC · May 16, 2025Malware55
Highlighting TA866/Asylum Ambuscade Activity Since 2021Cisco Talos·Oct 23, 10:02 UTC · Oct 23, 2024Malware42
Lazarus Trojanized DeFi app for delivering malwareKaspersky Securelist·Mar 31, 12:00 UTC · Mar 31, 2022Malware42
BBSRAT Attacks Targeting Russian Organizations Linked to Roaming TigerPalo Alto Unit 42·Nov 1, 09:59 UTC · Nov 1, 2018MalwareCVE-2012-015835
Operation AppleJeus: Lazarus hits cryptocurrency exchange with fake installer and macOS malwareKaspersky Securelist·Aug 23, 08:00 UTC · Aug 23, 2018Malware42
Iran-linked APT OilRig target IIS Web Servers with new RGDoor BackdoorSecurity Affairs·Feb 4, 17:23 UTC · Feb 4, 2018Malware42
Mirage Kitten’s new malware set: NightLedger backdoor and two tunneling toolsKaspersky Securelist·Jul 28, 09:18 UTC · Jul 28, 2026Malware42
TrickBot Ditches HTTP for DNS Tunneling in Latest VariantInfosecurity Magazine·Jul 22, 15:00 UTC · Jul 22, 2026Malware30
HoneyMyte updates CoolClient backdoor, uses new data stealing toolsKaspersky Securelist·Jan 26, 19:27 UTC · Jan 26, 2026Malware42
Critical shim bug impacts every Linux boot loader signed in the past decadeSecurity Affairs·Feb 7, 14:46 UTC · Feb 7, 2024MalwareCVE-2023-40547CVE-2023-40546CVE-2023-40548+3 CVEs60
ShroudedSnooper actors target telecom companies in Middle EastSecurity Affairs·Sep 19, 21:24 UTC · Sep 19, 2023Malware42
HinataBot, a new Go-Based DDoS botnet in the threat landscapeSecurity Affairs·Mar 17, 15:41 UTC · Mar 17, 2023MalwareCVE-2014-8361CVE-2017-17215160
Manjusaka: A Chinese sibling of Sliver and Cobalt StrikeCisco Talos·Aug 2, 12:00 UTC · Aug 2, 2022Malware55
CRAT wants to plunder your endpointsCisco Talos·Nov 12, 13:18 UTC · Nov 12, 2020MalwareCVE-2017-829147
JasperLoader Emerges, Targets Italy with Gootkit Banking TrojanCisco Talos·Apr 25, 15:00 UTC · Apr 25, 2019Malware30
The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth BackdoorPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Malware42
PoisonTap hacking tool can compromise any passwordSecurity Affairs·Nov 16, 20:08 UTC · Nov 16, 2016Malware42
Inside the DDoS attacks powered by large IoT botnetsSecurity Affairs·Oct 12, 06:19 UTC · Oct 12, 2016Malware30
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaignCisco Talos·Jul 16, 10:00 UTC · Jul 16, 2026Malware30
⚡ THN Weekly Recap: GitHub Supply Chain Attack, AI Malware, BYOVD Tactics, and MoreThe Hacker News·May 7, 10:33 UTC · May 7, 2025MalwareCVE-2025-29927CVE-2025-23120CVE-2024-56346+13 CVEs60
SparkCat crypto stealer in Google Play and App StoreKaspersky Securelist·Feb 5, 08:00 UTC · Feb 5, 2025Malware30
Cybercriminals Exploit HTTP Headers for Credential Theft via LargeThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Malware30
Detecting evolving threats: NetSupport RAT campaignCisco Talos·Aug 1, 10:00 UTC · Aug 1, 2024Malware30
Bookworm Trojan: A Model of Modular ArchitecturePalo Alto Unit 42·Apr 4, 16:14 UTC · Apr 4, 2024Malware130
Everybody Gets One: QtBot Used to Distribute Trickbot and LockyPalo Alto Unit 42·Jul 3, 01:07 UTC · Jul 3, 2020Malware30
Updated KHRAT Malware Used in Cambodia AttacksPalo Alto Unit 42·Jul 2, 23:56 UTC · Jul 2, 2020Malware30
Marco Ramilli on Frequent VBA Macros used in Office MalwareSecurity Affairs·Oct 28, 09:51 UTC · Oct 28, 2019Malware42
Combing Through Brushaloader Amid Massive Detection UptickCisco Talos·Feb 20, 16:27 UTC · Feb 20, 2019Malware30
New KONNI Malware attacking Eurasia and Southeast AsiaPalo Alto Unit 42·Nov 2, 11:25 UTC · Nov 2, 2018Malware30