UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web ManagerCisco Talos·Dec 17, 16:55 UTC · Dec 17, 2025Malware42
Researcher warns that Cisco Secure Email Gateways can easily be circumventedSecurity Affairs·Nov 22, 19:04 UTC · Nov 22, 2022Malware30
From trust to trickery: Brand impersonation over the email attack vectorCisco Talos·May 22, 12:17 UTC · May 22, 2024Malware30
Nanocore, Netwire and AsyncRAT spreading campaign uses public cloud infrastructureCisco Talos·Jan 12, 13:02 UTC · Jan 12, 2022Malware30
Arid Viper APT targets Palestine with new wave of politically themed phishing attacks, malwareCisco Talos·Feb 2, 13:00 UTC · Feb 2, 2022Malware42
Threat advisory: Cybercriminals compromise users with malware disguised as proCisco Talos·Mar 9, 19:24 UTC · Mar 9, 2022Malware42
DarkGate switches up its tactics with new payload, email templatesCisco Talos·Jun 5, 12:00 UTC · Jun 5, 2024Malware30
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
Qakbot-affiliated actors distribute Ransom Knight malware despite infrastructure takedownCisco Talos·Oct 5, 11:00 UTC · Oct 5, 2023Malware42
Threat actors use copyright infringement phishing lure to deploy infostealersCisco Talos·Oct 31, 13:37 UTC · Oct 31, 2024Malware30
A wolf in sheep's clothing: Actors spread malware by leveraging trust in Amnesty International and fear of PegasusCisco Talos·Sep 30, 12:01 UTC · Sep 30, 2021Malware42
New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel ImplantsCisco Talos·Sep 19, 12:00 UTC · Sep 19, 2023Malware55
Operation Layover: How we tracked an attack on the aviation industry to five years of compromiseCisco Talos·Sep 16, 12:00 UTC · Sep 16, 2021Malware30
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
New SugarGh0st RAT targets Uzbekistan government and South KoreaCisco Talos·Nov 30, 13:00 UTC · Nov 30, 2023Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
OfflRouter virus causes Ukrainian users to upload confidential documents to VirusTotalCisco Talos·Apr 17, 12:54 UTC · Apr 17, 2024Malware30
Emotet resumes spam operations, switches to OneNoteCisco Talos·Mar 22, 19:41 UTC · Mar 22, 2023Malware30
SapphireStealer: Open-source information stealer enables credential and data theftCisco Talos·Aug 31, 12:00 UTC · Aug 31, 2023Malware142
Threat Spotlight: Cyber Criminal Adoption of IPFS for Phishing, Malware CampaignsCisco Talos·Nov 9, 13:00 UTC · Nov 9, 2022Malware30
CoralRaider targets victims’ data and social media accountsCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2024Malware30
Operation Celestial Force employs mobile and desktop malware to target Indian entitiesCisco Talos·Jun 13, 10:00 UTC · Jun 13, 2024Malware42
Suspected CoralRaider continues to expand victimology using three information stealersCisco Talos·Apr 23, 12:42 UTC · Apr 23, 2024Malware30
Astaroth, Mekotio & Ousaban abusing Google Cloud Run in LATAMCisco Talos·Feb 20, 13:00 UTC · Feb 20, 2024Malware30
Starry Addax targets human rights defenders in North Africa with new malwareCisco Talos·Apr 9, 12:02 UTC · Apr 9, 2024Malware30
Transparent Tribe campaign uses new bespoke malware to target Indian government officialsCisco Talos·Mar 29, 12:01 UTC · Mar 29, 2022Malware30
Unveiling SpiceRAT: SneakyChef's latest tool targeting EMEA and AsiaCisco Talos·Jun 21, 12:00 UTC · Jun 21, 2024Malware30
Famous Chollima deploying Python version of GolangGhost RATCisco Talos·Jun 18, 10:00 UTC · Jun 18, 2025Malware130
Newly identified wiper malware “PathWiper” targets critical infrastructure in UkraineCisco Talos·Jun 5, 10:00 UTC · Jun 5, 2025Malware55
Unmasking the new XorDDoS controller and infrastructureCisco Talos·Apr 17, 10:00 UTC · Apr 17, 2025Malware30
Gamaredon campaign abuses LNK files to distribute Remcos backdoorCisco Talos·Mar 28, 10:00 UTC · Mar 28, 2025Malware42
LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoaderCisco Talos·May 30, 12:01 UTC · May 30, 2024Malware42
New Zardoor backdoor used in long-term cyber espionage operation targeting an Islamic organizationCisco Talos·Feb 8, 14:10 UTC · Feb 8, 2024Malware42
Cybercriminals target graphic designers with GPU minersCisco Talos·Sep 7, 12:00 UTC · Sep 7, 2023Malware42
Lazarus Group's infrastructure reuse leads to discovery of new malwareCisco Talos·Aug 24, 12:04 UTC · Aug 24, 2023MalwareCVE-2022-4796660
Undocumented driver-based browser hijacker RedDriver targets Chinese speakers and internet cafesCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
Typhon Reborn V2: Updated stealer features enhanced antiCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2023Malware30