BRICKSTORM backdoor exposed: CISA warns of advanced ChinaSecurity Affairs·Dec 5, 11:03 UTC · Dec 5, 2025Malware55
Google warns of Brickstorm backdoor targeting U.S. legal and tech sectorsSecurity Affairs·Sep 26, 07:04 UTC · Sep 26, 2025Malware55
Over 16,500 Sites Hacked to Distribute Malware via Web Redirect ServiceThe Hacker News·Jun 3, 09:27 UTC · Jun 3, 2022Malware42
Is ICEMAN behind the malware-based attack on Crystal Finance Millennium?Security Affairs·Jan 31, 18:05 UTC · Jan 31, 2018Malware42
UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology SectorsThe Hacker News·Sep 25, 15:04 UTC · Sep 25, 2025MalwareCVE-2023-46805CVE-2024-2188760
Several Malware Families Targeting IIS Web Servers With Malicious ModulesThe Hacker News·Aug 6, 05:11 UTC · Aug 6, 2021Malware42
New Linux Malware 'sedexp' Hides Credit Card Skimmers Using Udev RulesThe Hacker News·Aug 27, 05:33 UTC · Aug 27, 2024Malware42
FINALDRAFT Malware Exploits Microsoft Graph API for Espionage on Windows and LinuxThe Hacker News·Feb 28, 04:32 UTC · Feb 28, 2025Malware142
Owowa: the add-on that turns your OWA into a credential stealer and remote access panelKaspersky Securelist·Dec 14, 10:00 UTC · Dec 14, 2021Malware30
⚡ Weekly Recap: USB Malware, React2Shell, WhatsApp Worms, AI IDE Bugs & MoreThe Hacker News·Dec 9, 04:05 UTC · Dec 9, 2025MalwareCVE-2025-55182CVE-2025-6389CVE-2025-66516+19 CVEs60
New Cross-Platform Malware 'Noodle RAT' Targets Windows and Linux SystemsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2024Malware42
ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More StoriesThe Hacker News·Apr 2, 15:07 UTC · Apr 2, 2026MalwareCVE-2026-2699CVE-2026-270160
AndroxGh0st Malware Targets Laravel Apps to Steal Cloud CredentialsThe Hacker News·Mar 21, 12:48 UTC · Mar 21, 2024MalwareCVE-2021-41773CVE-2017-9841CVE-2018-15133160
Apache ActiveMQ Flaw Exploited to Deploy DripDropper Malware on Cloud Linux SystemsThe Hacker News·Aug 19, 17:37 UTC · Aug 19, 2025MalwareCVE-2023-4660447
⚡ Weekly Recap: Chrome 0-Day, Ivanti Exploits, MacOS Stealers, Crypto Heists and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2025-32462CVE-2025-32463CVE-2025-20309+23 CVEs60
Androxgh0st malware hackers creating large botnet, CISA and FBI warnThe Record·Jan 16, 22:19 UTC · Jan 16, 2024Malware in the wildCVE-2018-1513360
New Version of Prometei Botnet Infects Over 10,000 Systems WorldwideThe Hacker News·Mar 11, 06:27 UTC · Mar 11, 2023Malware30
New PowerExchange Backdoor linked to an Iranian APT groupSecurity Affairs·May 26, 21:44 UTC · May 26, 2023Malware42
New Golang-based Linux Malware Targeting eCommerce WebsitesThe Hacker News·Nov 22, 12:10 UTC · Nov 22, 2021Malware42
Free proxy service runs on top of Linux Ngioweb BotnetSecurity Affairs·Jun 24, 14:29 UTC · Jun 24, 2019Malware30
Fake UpdraftPlus WordPress Plugins used to backdoor sitesSecurity Affairs·Oct 20, 19:28 UTC · Oct 20, 2019Malware42
YODA Tool Found ~47,000 Malicious WordPress Plugins Installed in Over 24,000 SitesThe Hacker News·Jun 2, 03:39 UTC · Jun 2, 2022Malware30
New Stealthy Rootkit Infiltrated Networks of HighThe Hacker News·May 7, 12:56 UTC · May 7, 2021Malware42
Year in Malware 2023: Recapping the major cybersecurity stories of the past yearCisco Talos·Dec 19, 13:00 UTC · Dec 19, 2023Malware142
Chinese 'Gallium' Hackers Using New PingPull Malware in Cyberespionage AttacksThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2022Malware42
Mirai Botnet targeting OFBiz Servers Vulnerable to Directory TraversalThe Hacker News·Aug 2, 17:14 UTC · Aug 2, 2024Malware in the wildCVE-2024-3221360
Feds Warn of AndroxGh0st Botnet Targeting AWS, Azure, and Office 365 CredentialsThe Hacker News·Jan 18, 08:54 UTC · Jan 18, 2024MalwareCVE-2017-9841CVE-2021-41773CVE-2018-1513335
Armenian Entities Hit by New Version of OxtaRAT Spying ToolThe Hacker News·Feb 17, 12:47 UTC · Feb 17, 2023Malware42
Google Uncovers PROMPTFLUX Malware That Uses Gemini AI to Rewrite Its Code HourlyThe Hacker News·Nov 6, 04:37 UTC · Nov 6, 2025Malware42
Days before a report, Chinese hackers removed malware from infected networksThe Record·Dec 12, 00:00 UTC · Dec 12, 2022Malware55
Earth Lusca expands its arsenal with SprySOCKS Linux malwareSecurity Affairs·Sep 19, 07:52 UTC · Sep 19, 2023MalwareCVE-2022-40684CVE-2022-39952CVE-2021-22205+6 CVEs160
New "Cavalry Werewolf" Attack Hits Russian Agencies with FoalShell and StallionRATThe Hacker News·Oct 3, 10:30 UTC · Oct 3, 2025Malware42
The SessionManager IIS backdoor: a possibly overlooked GELSEMIUM artefactKaspersky Securelist·Jun 30, 08:00 UTC · Jun 30, 2022Malware42
Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy BackdoorThe Hacker News·May 21, 16:35 UTC · May 21, 2026MalwareCVE-2021-26855147
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
OpenAI Assistants API Exploited in 'SesameOp' BackdoorInfosecurity Magazine·Nov 4, 15:00 UTC · Nov 4, 2025Malware42
New EAGERBEE Variant Targets ISPs and Governments with Advanced Backdoor CapabilitiesThe Hacker News·Jan 7, 12:33 UTC · Jan 7, 2025MalwareCVE-2021-2685547
Popular WordPress Plugin Scripts Tampered to Plant Hidden Backdoors on SitesThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026MalwareCVE-2026-1079547
⚡ Weekly Recap: Nation-State Hacks, Spyware Alerts, Deepfake Malware, Supply Chain BackdoorsThe Hacker News·May 6, 05:03 UTC · May 6, 2025MalwareCVE-2025-3928CVE-2025-1976CVE-2025-46271+33 CVEs60