“Red October”. Detailed Malware Description 1. First Stage of AttackKaspersky Securelist·Jan 17, 16:09 UTC · Jan 17, 2013MalwareCVE-2009-3129CVE-2010-3333CVE-2012-0158+1 CVEs47
FlawedAmmyy Leveraging Undetected XLM Macros as an Infection VehicleSecurity Affairs·Mar 2, 18:46 UTC · Mar 2, 2019Malware in the wild157
The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth BackdoorPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Malware42
Malicious spam campaigns delivering banking TrojansKaspersky Securelist·Jun 24, 10:00 UTC · Jun 24, 2021Malware42
Cybercriminals Widely Abusing Excel 4.0 Macro to Distribute MalwareThe Hacker News·Apr 28, 13:43 UTC · Apr 28, 2021Malware42
Public report on attacks in Middle East we attribute to WIRTE APTKaspersky Securelist·Nov 29, 08:00 UTC · Nov 29, 2021Malware42
Microsoft warns TA505 changed tactic in an ongoing malware campaignSecurity Affairs·Feb 2, 09:52 UTC · Feb 2, 2020Malware42
Cybercriminals Use Excel Exploit to Spread Fileless Remcos RAT MalwareThe Hacker News·Nov 11, 06:13 UTC · Nov 11, 2024MalwareCVE-2017-019947
New AI-Developed Malware Campaign Targets Iranian ProtestsInfosecurity Magazine·Jan 30, 11:55 UTC · Jan 30, 2026Malware42
Excellent Write-up of the SolarWinds Security BreachSchneier on Security·Aug 30, 11:24 UTC · Aug 30, 2021Malware42
Ukraine Warns of CABINETRAT Backdoor + XLL AddThe Hacker News·Oct 1, 07:11 UTC · Oct 1, 2025Malware42
TA505 cybercrime group use SDBbot RAT in recent campaignsSecurity Affairs·Oct 20, 17:57 UTC · Oct 20, 2019Malware42
Malware campaign targets RussianSecurity Affairs·Aug 11, 08:45 UTC · Aug 11, 2017MalwareCVE-2017-019947
IcedID malware gang positioning itself as one of the Emotet replacementsThe Record·Jun 25, 00:00 UTC · Jun 25, 2026Malware42
A new fileless variant of Remcos RAT observed in the wildSecurity Affairs·Nov 11, 14:46 UTC · Nov 11, 2024MalwareCVE-2017-019947
Alleged Iranian hackers caught targeting Jordan’s foreign ministryThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Malware42
DarkHydrus adds Google Drive support as C2 to its RogueRobin TrojanSecurity Affairs·Jan 20, 07:31 UTC · Jan 20, 2019Malware42
Experts analyzed how OilRIG hackers tested their weaponized docsSecurity Affairs·Nov 20, 09:31 UTC · Nov 20, 2018Malware42
OilRig Malware Campaign Updates Toolset and Expands TargetsPalo Alto Unit 42·Nov 1, 10:23 UTC · Nov 1, 2018Malware42
Unit 42 Identifies New DragonOK Backdoor Malware Deployed Against Japanese TargetsPalo Alto Unit 42·Nov 1, 09:41 UTC · Nov 1, 2018Malware42
Learning to Build the Right Threat Intelligence Team for Your EnterpriseRecorded Future·Aug 25, 00:00 UTC · Aug 25, 2025Malware42
North Korea ‘Shrouded Sleep’ malware campaign targeting Cambodia, other Southeast Asian nationsThe Record·Oct 3, 20:55 UTC · Oct 3, 2024Malware42
Qakbot-affiliated actors distribute Ransom Knight malware despite infrastructure takedownCisco Talos·Oct 5, 11:00 UTC · Oct 5, 2023Malware42
Hackers Exploiting Follina Bug to Deploy Rozena BackdoorThe Hacker News·Jul 12, 03:25 UTC · Jul 12, 2022MalwareCVE-2022-3019047
New Saitama backdoor Targeted Official from Jordan's Foreign MinistryThe Hacker News·May 15, 00:00 UTC · May 15, 2022Malware42
South Korean DarkHotel Hackers Targeted Luxury Hotels in MacauThe Hacker News·Mar 21, 09:14 UTC · Mar 21, 2022Malware42
Apple Adds a Backdoor to iMessage and iCloud StorageSchneier on Security·Aug 20, 14:11 UTC · Aug 20, 2021Malware42
A Wide Range of Cyber Attacks Leveraging Prometheus TDS Malware ServiceThe Hacker News·Aug 9, 13:32 UTC · Aug 9, 2021Malware42
A Rust-based Buer Malware Variant Has Been Spotted in the WildThe Hacker News·May 4, 03:42 UTC · May 4, 2021Malware42
Friday Squid Blogging: Steel Mesh Giant Squid Used as Artificial ReefSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Malware42
How the US Secret Service Breaks into SmartphonesSchneier on Security·Jan 27, 14:16 UTC · Jan 27, 2020Malware42
Marco Ramilli on Frequent VBA Macros used in Office MalwareSecurity Affairs·Oct 28, 09:51 UTC · Oct 28, 2019Malware42
TA505 group updates tactics and expands the list of targetsSecurity Affairs·Aug 28, 08:39 UTC · Aug 28, 2019Malware42
Croatia government agencies targeted with news SilentTrinity malwareSecurity Affairs·Jul 7, 08:50 UTC · Jul 7, 2019Malware42
Exclusive: German Police Raid OmniRAT Developer and Seize Digital AssetsThe Hacker News·Jun 27, 11:03 UTC · Jun 27, 2019MalwareCVE-2016-726247
SNDBOX: AI-Powered Online Automated Malware Analysis PlatformThe Hacker News·Dec 6, 20:07 UTC · Dec 6, 2018Malware42