Week in review: Bleedingbit, nastiest malware of 2018, Cisco security appliances under attackHelp Net Security·Nov 4, 00:00 UTC · Nov 4, 2018Malware in the wildCVE-2018-1545460
Cisco simplifies networking and security operations with an expanded SASE offerHelp Net Security·Apr 20, 08:55 UTC · Apr 20, 2026Malware55
Transparent Tribe APT expands its Windows malware arsenalCisco Talos·May 13, 12:08 UTC · May 13, 2021Malware42
Gamaredon - When nation states don’t pay all the billsCisco Talos·Feb 23, 12:59 UTC · Feb 23, 2021Malware55
PoetRAT: Malware targeting public and private sector in Azerbaijan evolvesCisco Talos·Oct 6, 14:52 UTC · Oct 6, 2020Malware30
PROMETHIUM extends global reach with StrongPity3 APTCisco Talos·Jun 29, 17:59 UTC · Jun 29, 2020Malware42
Tor2Mine is up to their old tricks — and adds a few new onesCisco Talos·Jun 11, 18:53 UTC · Jun 11, 2020Malware42
PoetRAT: Python RAT uses COVID-19 lures to target Azerbaijan public and private sectorsCisco Talos·Apr 16, 17:52 UTC · Apr 16, 2020Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
Famous Chollima deploying Python version of GolangGhost RATCisco Talos·Jun 18, 10:00 UTC · Jun 18, 2025Malware130
Newly identified wiper malware “PathWiper” targets critical infrastructure in UkraineCisco Talos·Jun 5, 10:00 UTC · Jun 5, 2025Malware55
Unmasking the new XorDDoS controller and infrastructureCisco Talos·Apr 17, 10:00 UTC · Apr 17, 2025Malware30
Gamaredon campaign abuses LNK files to distribute Remcos backdoorCisco Talos·Mar 28, 10:00 UTC · Mar 28, 2025Malware42
Threat actors use copyright infringement phishing lure to deploy infostealersCisco Talos·Oct 31, 13:37 UTC · Oct 31, 2024Malware30
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
Unveiling SpiceRAT: SneakyChef's latest tool targeting EMEA and AsiaCisco Talos·Jun 21, 12:00 UTC · Jun 21, 2024Malware30
Operation Celestial Force employs mobile and desktop malware to target Indian entitiesCisco Talos·Jun 13, 10:00 UTC · Jun 13, 2024Malware42
DarkGate switches up its tactics with new payload, email templatesCisco Talos·Jun 5, 12:00 UTC · Jun 5, 2024Malware30
LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoaderCisco Talos·May 30, 12:01 UTC · May 30, 2024Malware42
Suspected CoralRaider continues to expand victimology using three information stealersCisco Talos·Apr 23, 12:42 UTC · Apr 23, 2024Malware30
OfflRouter virus causes Ukrainian users to upload confidential documents to VirusTotalCisco Talos·Apr 17, 12:54 UTC · Apr 17, 2024Malware30
Starry Addax targets human rights defenders in North Africa with new malwareCisco Talos·Apr 9, 12:02 UTC · Apr 9, 2024Malware30
CoralRaider targets victims’ data and social media accountsCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2024Malware30
Astaroth, Mekotio & Ousaban abusing Google Cloud Run in LATAMCisco Talos·Feb 20, 13:00 UTC · Feb 20, 2024Malware30
New Zardoor backdoor used in long-term cyber espionage operation targeting an Islamic organizationCisco Talos·Feb 8, 14:10 UTC · Feb 8, 2024Malware42
New SugarGh0st RAT targets Uzbekistan government and South KoreaCisco Talos·Nov 30, 13:00 UTC · Nov 30, 2023Malware30
Qakbot-affiliated actors distribute Ransom Knight malware despite infrastructure takedownCisco Talos·Oct 5, 11:00 UTC · Oct 5, 2023Malware42
New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel ImplantsCisco Talos·Sep 19, 12:00 UTC · Sep 19, 2023Malware55
Cybercriminals target graphic designers with GPU minersCisco Talos·Sep 7, 12:00 UTC · Sep 7, 2023Malware42
SapphireStealer: Open-source information stealer enables credential and data theftCisco Talos·Aug 31, 12:00 UTC · Aug 31, 2023Malware142
Lazarus Group's infrastructure reuse leads to discovery of new malwareCisco Talos·Aug 24, 12:04 UTC · Aug 24, 2023MalwareCVE-2022-4796660
Undocumented driver-based browser hijacker RedDriver targets Chinese speakers and internet cafesCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
Old certificate, new signature: Open-source tools forge signature timestamps on Windows driversCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
Typhon Reborn V2: Updated stealer features enhanced antiCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2023Malware30
Emotet resumes spam operations, switches to OneNoteCisco Talos·Mar 22, 19:41 UTC · Mar 22, 2023Malware30
Threat Spotlight: Cyber Criminal Adoption of IPFS for Phishing, Malware CampaignsCisco Talos·Nov 9, 13:00 UTC · Nov 9, 2022Malware30