IceID trojan delivered via hijacked email threads, compromised MS Exchange serversHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2022Malware30
A malware campaign exploits Microsoft Exchange Server flawsSecurity Affairs·May 22, 13:21 UTC · May 22, 2024MalwareCVE-2021-34473CVE-2021-34523CVE-2021-3120735
New PowerExchange Backdoor linked to an Iranian APT groupSecurity Affairs·May 26, 21:44 UTC · May 26, 2023Malware42
A botnet named after Prometheus is also exploiting Exchange Server flawsCyberScoop·Apr 22, 12:31 UTC · Apr 22, 2021Malware in the wild60
GhostContainer backdoor for Exchange serversKaspersky Securelist·Jul 17, 08:00 UTC · Jul 17, 2025MalwareCVE-2020-068847
xHunt hackers hit Microsoft Exchange with two news backdoorsSecurity Affairs·Nov 9, 19:17 UTC · Nov 9, 2020Malware42
New PowerExchange Backdoor Used in Iranian Cyber Attack on UAE GovernmentThe Hacker News·May 25, 13:39 UTC · May 25, 2023Malware42
LightNeuron, a Turla's backdoor used to compromise exchange mail serversSecurity Affairs·May 7, 21:19 UTC · May 7, 2019Malware42
New ToddyCat Hacker Group on Experts' Radar After Targeting MS Exchange ServersThe Hacker News·Jun 23, 10:34 UTC · Jun 23, 2022Malware55
New 'SessionManager' Backdoor Targeting Microsoft Exchange Servers WorldwideInfosecurity Magazine·Jul 1, 17:30 UTC · Jul 1, 2022Malware42
New 'post-exploitation' threat deployed on Microsoft Exchange servers is spotted by researchersThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Malware30
Week in review: Backdoor found in XZ utilities, weaponized iMessages, Exchange servers at riskHelp Net Security·Mar 31, 00:00 UTC · Mar 31, 2024Malware in the wildCVE-2024-3094CVE-2023-48022CVE-2023-2495560
Prometei Botnet Exploits Exchange Server Bugs to GrowInfosecurity Magazine·Apr 22, 10:10 UTC · Apr 22, 2021MalwareCVE-2021-27065CVE-2021-2685860
Microsoft Issues Fix for Exchange Y2K22 Bug That Crippled Email Delivery ServiceThe Hacker News·Jan 3, 04:02 UTC · Jan 3, 2022Malware30
Owowa: the add-on that turns your OWA into a credential stealer and remote access panelKaspersky Securelist·Dec 14, 10:00 UTC · Dec 14, 2021Malware30
Hackers Using Malicious OAuth Apps to Take Over Email ServersThe Hacker News·Sep 23, 13:53 UTC · Sep 23, 2022Malware30
Microsoft recommends Exchange admins to disable the SMBv1 protocolSecurity Affairs·Feb 13, 08:34 UTC · Feb 13, 2020Malware30
Y2k22 bug in Microsoft Exchange causes failure in email deliverySecurity Affairs·Jan 1, 21:48 UTC · Jan 1, 2022Malware130
SonicWall confirmed that its products were affected by Y2K22 bugSecurity Affairs·Jan 8, 13:36 UTC · Jan 8, 2022Malware30
Iranian Charming Kitten APT targets various entities in Brazil, Israel, and the U.A.E. using a new backdoorSecurity Affairs·Sep 12, 05:14 UTC · Sep 12, 2023Malware42
2021: Looking back on the year in malware and cyber attacks, from SolarWinds to Log4jCisco Talos·Dec 27, 14:00 UTC · Dec 27, 2021Malware55
Hackers Using Malicious IIS Server Module to Steal Microsoft Exchange CredentialsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Malware42
Researchers discover highly stealthy Microsoft Exchange backdoorHelp Net Security·May 7, 00:00 UTC · May 7, 2019Malware42
Say “Cheese”: WebMonitor RAT Comes with C2-as-aPalo Alto Unit 42·Nov 1, 11:05 UTC · Nov 1, 2018Malware30
Hackers are abusing IIS extensions to establish covert backdoorsSecurity Affairs·Jul 27, 20:18 UTC · Jul 27, 2022Malware55
New 'SessionManager' Backdoor Targeting Microsoft IIS Servers in the WildThe Hacker News·Jul 1, 15:53 UTC · Jul 1, 2022Malware142
Valak a sophisticated malware that completely changed in 6 monthsSecurity Affairs·May 28, 10:21 UTC · May 28, 2020Malware55
Phantom Taurus: New China-Linked Hacker Group Hits Governments With Stealth MalwareThe Hacker News·Oct 1, 06:55 UTC · Oct 1, 2025Malware55
Charming Kitten's New Backdoor 'Sponsor' Targets Brazil, Israel, and U.A.E.The Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Malware42
The SessionManager IIS backdoor: a possibly overlooked GELSEMIUM artefactKaspersky Securelist·Jun 30, 08:00 UTC · Jun 30, 2022Malware42
Iran-Linked OilRig Targets Middle East Governments in 8The Hacker News·Oct 19, 10:15 UTC · Oct 19, 2023Malware42
Iranian OilRig Hackers Using New Backdoor to Exfiltrate Data from Govt. OrganizationsThe Hacker News·Feb 3, 12:23 UTC · Feb 3, 2023Malware42
APT Hackers Targeting Industrial Control Systems with ShadowPad BackdoorThe Hacker News·Jun 29, 03:13 UTC · Jun 29, 2022MalwareCVE-2021-2685547
Microsoft Exposes Evasive Chinese Tarrask Malware Attacking Windows ComputersThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022Malware155
FBI, CISA, and NSA Reveal How Hackers Targeted a Defense Industrial Base OrganizationThe Hacker News·Oct 6, 04:58 UTC · Oct 6, 2022Malware42
TwoFace Webshell: Persistent Access Point for Lateral MovementPalo Alto Unit 42·Nov 1, 10:54 UTC · Nov 1, 2018Malware30
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark CyberattacksThe Hacker News·Jun 27, 12:06 UTC · Jun 27, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs60