Facefish Backdoor delivers rootkits to Linux x64 systemsSecurity Affairs·May 30, 09:35 UTC · May 30, 2021Malware42
Go-Based Malware Deploys XMRig Miner on Linux Hosts via Redis Configuration AbuseThe Hacker News·May 20, 08:25 UTC · May 20, 2025Malware in the wild157
ClickFix Attacks Expand Using Fake CAPTCHAs, Microsoft Scripts, and Trusted Web ServicesThe Hacker News·Jan 28, 15:54 UTC · Jan 28, 2026Malware30
Gh0st RAT-based GodRAT attacks financial organizationsKaspersky Securelist·Aug 19, 19:42 UTC · Aug 19, 2025Malware42
DarkHydrus Uses Phishery to Harvest Credentials in the Middle EastPalo Alto Unit 42·Jan 9, 22:08 UTC · Jan 9, 2020Malware30
FakeWallet cryptostealer propagating via iOS App Store applicationsKaspersky Securelist·Apr 20, 09:22 UTC · Apr 20, 2026Malware30
Hackers can use 9 of the most popular AI tools to assemble massive botnetsArs Technica · Security·Jul 8, 07:00 UTC · Jul 8, 2026Malware30
New Mystic Stealer Malware Targets 40 Web Browsers and 70 Browser ExtensionsThe Hacker News·Jun 22, 05:39 UTC · Jun 22, 2023Malware42
Hackers stole $800,000 from ATMs using Fileless MalwareThe Hacker News·Apr 4, 09:45 UTC · Apr 4, 2017Malware30
CoffeeLoader Uses GPU-Based Armoury Packer to Evade EDR and Antivirus DetectionThe Hacker News·Mar 28, 11:57 UTC · Mar 28, 2025Malware30
New Mirai botnet variant Murdoc Botnet targets AVTECH IP cameras and Huawei HG532 routersSecurity Affairs·Jan 21, 16:41 UTC · Jan 21, 2025MalwareCVE-2024-7029CVE-2017-17215CVE-2024-12856+3 CVEs60
Satori is the latest Mirai botnet variant that is targeting Huawei HG532 home routersSecurity Affairs·Dec 23, 06:58 UTC · Dec 23, 2017MalwareCVE-2017-1721560
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run CommandsThe Hacker News·Jul 17, 06:04 UTC · Jul 17, 2026Malware30
“PromptFix” Attacks Could Supercharge Agentic AI ThreatsInfosecurity Magazine·Aug 21, 10:15 UTC · Aug 21, 2025Malware30
North Korean hackers targeted tech companies through JumpCloud and GitHubHelp Net Security·Jul 25, 10:40 UTC · Jul 25, 2023Malware42
Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseThe Hacker News·May 8, 11:00 UTC · May 8, 2026Malware42
New banking trojan “CarnavalHeist” targets Brazil with overlay attacksCisco Talos·May 31, 12:00 UTC · May 31, 2024Malware30
New APT CloudSorcerer Malware Hits Russian TargetsInfosecurity Magazine·Jul 8, 17:00 UTC · Jul 8, 2024Malware142
Dragon Breath Uses RONINGLOADER to Disable Security Tools and Deploy Gh0st RATThe Hacker News·Jul 17, 15:19 UTC · Jul 17, 2026Malware42
CHILLYHELL macOS Backdoor and ZynorRAT RAT Threaten macOS, Windows, and Linux SystemsThe Hacker News·Sep 10, 13:04 UTC · Sep 10, 2025Malware142
Kaspersky spotted ATMii, a new strain of ATM malwareSecurity Affairs·Oct 11, 15:52 UTC · Oct 11, 2017Malware30
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without PromptsThe Hacker News·Jul 30, 10:33 UTC · Jul 30, 2026Malware55
Operation Zero Disco: Threat actors targets Cisco SNMP flaw to drop Linux rootkitsSecurity Affairs·Oct 16, 19:52 UTC · Oct 16, 2025MalwareCVE-2025-20352CVE-2017-388147
New FrigidStealer Malware Targets macOS Users via Fake Browser UpdatesThe Hacker News·Feb 18, 15:20 UTC · Feb 18, 2025Malware42
Divergent: "Fileless" NodeJS Malware Burrows Deep Within the HostCisco Talos·Sep 26, 20:07 UTC · Sep 26, 2019Malware30
SesameOp: New backdoor exploits OpenAI API for covert C2Security Affairs·Nov 4, 17:06 UTC · Nov 4, 2025Malware42
GopherWhisper: new China-linked APT targets Mongolia with GoSecurity Affairs·Apr 26, 13:08 UTC · Apr 26, 2026Malware42
Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker AccessThe Hacker News·Mar 27, 05:52 UTC · Mar 27, 2025MalwareCVE-2024-34102CVE-2024-2072047
Attackers use website contact forms to spread BazarLoader malwareSecurity Affairs·Mar 12, 16:40 UTC · Mar 12, 2022Malware42
New EAGERBEE Variant Targets ISPs and Governments with Advanced Backdoor CapabilitiesThe Hacker News·Jan 7, 12:33 UTC · Jan 7, 2025MalwareCVE-2021-2685547
Thousands of WordPress Websites Infected with MalwareSchneier on Security·Mar 10, 11:01 UTC · Mar 10, 2025Malware42
Hackers Deploy Stealth Backdoor in WordPress MuThe Hacker News·Jul 24, 05:11 UTC · Jul 24, 2025Malware42
ChatGPT Atlas Browser Can Be Tricked by Fake URLs into Executing Hidden CommandsThe Hacker News·Oct 27, 14:16 UTC · Oct 27, 2025Malware42