The rise of .NET and Powershell malwareKaspersky Securelist·Oct 12, 10:08 UTC · Oct 12, 2015Malware142
The EAGERBEE backdoor may be related to the CoughingDown actorKaspersky Securelist·Jan 6, 08:02 UTC · Jan 6, 2025Malware42
China-linked APT Phantom Taurus uses Net-Star malware in espionage campaigns against key sectorsSecurity Affairs·Oct 2, 07:40 UTC · Oct 2, 2025Malware42
Criminals are selling hacking services targeting world’s biggest companiesHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2019Malware42
Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints AheadThe Hacker News·Aug 23, 11:52 UTC · Aug 23, 2023Malware42
MoonBounce: the dark side of UEFI firmwareKaspersky Securelist·Jan 20, 10:00 UTC · Jan 20, 2022Malware42
Mirage Kitten’s new malware set: NightLedger backdoor and two tunneling toolsKaspersky Securelist·Jul 28, 09:18 UTC · Jul 28, 2026Malware42
New Malware Loaders Use Call Stack Spoofing, GitHub C2, and .NET Reactor for StealthThe Hacker News·Apr 5, 08:10 UTC · Apr 5, 2025Malware42
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
Ducktail information stealer continues to evolveSecurity Affairs·Nov 23, 18:53 UTC · Nov 23, 2022Malware in the wild57
Iran-linked Lyceum APT adds a new .NET DNS Backdoor to its arsenalSecurity Affairs·Jun 11, 16:16 UTC · Jun 11, 2022Malware42
New .NET CAPI Backdoor Targets Russian Auto and EThe Hacker News·Oct 18, 11:41 UTC · Oct 18, 2025Malware42
Hackers Use NuGet Packages to Target .NET DevelopersInfosecurity Magazine·Mar 21, 16:30 UTC · Mar 21, 2023Malware42
DiceyF deploys GamePlayerFramework in online casino development studioKaspersky Securelist·Oct 18, 17:33 UTC · Oct 18, 2022Malware42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
Transparent Tribe APT expands its Windows malware arsenalCisco Talos·May 13, 12:08 UTC · May 13, 2021Malware42
SUPERNOVA, a backdoor found while investigating SolarWinds hackSecurity Affairs·Dec 23, 06:58 UTC · Dec 23, 2020Malware42
Russian APT targets Ukraine with BadPaw and MeowMeow malwareSecurity Affairs·Mar 10, 14:47 UTC · Mar 10, 2026Malware42
Kaspersky SOC analyzes an incident involving a web shell used as a backdoorKaspersky Securelist·Feb 28, 04:00 UTC · Feb 28, 2025Malware42
Cloud Atlas using a new backdoor, VBCloud, to steal dataKaspersky Securelist·Dec 23, 10:00 UTC · Dec 23, 2024MalwareCVE-2018-080247
CloudSorcerer APT uses cloud services and GitHub as C2Kaspersky Securelist·Jul 8, 07:00 UTC · Jul 8, 2024Malware142
The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth BackdoorPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Malware42
“Red October”. Detailed Malware Description 4. Second Stage of AttackKaspersky Securelist·Jan 17, 16:06 UTC · Jan 17, 2013Malware42
Fishing For Malware: Tread Softly and Carry A Big NetCisco Talos·Oct 6, 13:09 UTC · Oct 6, 2011Malware42
SesameOp: New backdoor exploits OpenAI API for covert C2Security Affairs·Nov 4, 17:06 UTC · Nov 4, 2025Malware42
China-linked TA428 Continues to Target Russia and Mongolia IT CompaniesRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Malware42
OneClik APT campaign targets energy sector with stealthy backdoorsSecurity Affairs·Jun 27, 13:01 UTC · Jun 27, 2025Malware42
Malicious NuGet Package Targeting .NET Developers with SeroXen RATThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2023Malware42
Updates from the MaaS: new threats delivered through NullMixerSecurity Affairs·Mar 27, 13:41 UTC · Mar 27, 2023Malware42
SolarWinds releases updated advisory for SUPERNOVA backdoorSecurity Affairs·Dec 27, 09:37 UTC · Dec 27, 2020Malware42
Turla APT group adds Topinambour Trojan to its arsenalSecurity Affairs·Jul 17, 07:25 UTC · Jul 17, 2019Malware42
Connecting the dots between recently active cryptominersCisco Talos·Dec 18, 16:33 UTC · Dec 18, 2018Malware42