CloudSorcerer APT uses cloud services and GitHub as C2Kaspersky Securelist·Jul 8, 07:00 UTC · Jul 8, 2024Malware142
New APT CloudSorcerer Malware Hits Russian TargetsInfosecurity Magazine·Jul 8, 17:00 UTC · Jul 8, 2024Malware142
Anatsa Banking Trojan Targeting Users in US, UK, Germany, Austria, and SwitzerlandThe Hacker News·Jun 28, 05:25 UTC · Jun 28, 2023Malware42
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams UpdateThe Hacker News·Jul 27, 12:37 UTC · Jul 27, 2026Malware142
Tool to find the Operation Triangulation tracesKaspersky Securelist·Jun 2, 12:16 UTC · Jun 2, 2023Malware42
Connecting the dots between recently active cryptominersCisco Talos·Dec 18, 16:33 UTC · Dec 18, 2018Malware42
TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOThe Hacker News·May 25, 05:59 UTC · May 25, 2026Malware42
SLUB Backdoor leverages GitHub and Slack in targeted attacksSecurity Affairs·Mar 9, 05:53 UTC · Mar 9, 2019MalwareCVE-2018-8174CVE-2015-170147
Cybercrime goes subscription: AI, malware and infrastructure on demandHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2026Malware42
Kaspersky analysis of the backdoor in XZKaspersky Securelist·Apr 12, 08:00 UTC · Apr 12, 2024Malware42
Microsoft Removes 119 Edge Extensions That Hid Malware in Images and FontsThe Hacker News·Jun 29, 08:32 UTC · Jun 29, 2026Malware42
North Korean Hackers Publish 26 npm Packages Hiding Pastebin C2 for CrossThe Hacker News·Mar 3, 06:20 UTC · Mar 3, 2026Malware42
Kimwolf Botnet Swamps Anonymity Network I2PKrebs on Security·Feb 12, 02:18 UTC · Feb 12, 2026Malware142
North Korean Hackers Target Freelance Developers in Job Scam to Deploy MalwareThe Hacker News·Feb 21, 09:33 UTC · Feb 21, 2025Malware42
Researchers uncover ZuoRAT malware targeting home-office routersHelp Net Security·Jun 28, 00:00 UTC · Jun 28, 2022Malware42
Malicious npm packages spotted delivering njRAT TrojanSecurity Affairs·Dec 1, 21:07 UTC · Dec 1, 2020Malware42
Malicious npm library removed from the repo due to backdoor capabilitiesSecurity Affairs·Nov 3, 10:04 UTC · Nov 3, 2020Malware42
Russian Hackers get Cozy with American PoliticsSecurity Affairs·Nov 3, 18:00 UTC · Nov 3, 2017Malware42
New APT Campaign based on Poison Ivy RAT with C&C in China has been reversed by MalwareMustDieSecurity Affairs·Mar 21, 12:06 UTC · Mar 21, 2017Malware42
Microsoft Sues Hacking Group Exploiting Azure AI for Harmful Content CreationThe Hacker News·Jan 11, 07:54 UTC · Jan 11, 2025Malware42
‘CanisterWorm’ Springs Wiper Attack Targeting IranKrebs on Security·Mar 23, 19:04 UTC · Mar 23, 2026Malware42
Hackers Abusing GitHub to Evade Detection and Control Compromised HostsThe Hacker News·Dec 21, 03:24 UTC · Dec 21, 2023Malware42
AI-Generated Malware Powers New Armored Likho APT CampaignSecurity Affairs·Jul 7, 08:28 UTC · Jul 7, 2026Malware42
ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool InstallersThe Hacker News·Mar 31, 11:33 UTC · Mar 31, 2026Malware42
ViceLeaker Android spyware targets users in the Middle EastSecurity Affairs·Jul 1, 08:06 UTC · Jul 1, 2019Malware42
Massive GitHub malware operation spreads BoryptGrab stealerSecurity Affairs·Mar 8, 13:38 UTC · Mar 8, 2026Malware42
The Winnti Gang continues its activity and leverages GitHub for C&C CommunicationsSecurity Affairs·May 7, 12:32 UTC · May 7, 2018Malware42
Evilnum Group targets European and British fintech companiesSecurity Affairs·Jul 11, 04:45 UTC · Jul 11, 2020Malware42
Is your email or password among the 240+ million compromised by infostealers?Help Net Security·Feb 26, 00:00 UTC · Feb 26, 2025Malware42
North Korea-linked APT Sapphire Sleet targets IT job seekersSecurity Affairs·Nov 13, 08:51 UTC · Nov 13, 2023Malware42
Hiding in plain sight: PhantomLance walks into a marketKaspersky Securelist·Apr 28, 15:00 UTC · Apr 28, 2020Malware42
Malicious Android Apps Pose as Google, Instagram, WhatsApp to Steal CredentialsThe Hacker News·May 21, 06:04 UTC · May 21, 2024Malware42
AsyncRAT Campaign Uses Python Payloads and TryCloudflare Tunnels for Stealth AttacksThe Hacker News·Feb 6, 03:46 UTC · Feb 6, 2025MalwareCVE-2024-3821347
Black Basta-Linked Attackers Target Users with SystemBC MalwareThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2024Malware42
Ubuntu-Maker Canonical’s GitHub Account Gets HackedThe Hacker News·Jul 7, 15:58 UTC · Jul 7, 2019Malware42
CastleLoader Malware Infects 469 Devices Using Fake GitHub Repos and ClickFix PhishingThe Hacker News·Oct 14, 05:07 UTC · Oct 14, 2025Malware42
Malicious NPM Package Caught Stealing Users' Saved Passwords From BrowsersThe Hacker News·Jul 23, 04:29 UTC · Jul 23, 2021Malware42
Researchers Expose GhostCall and GhostHire: BlueNoroff's New Malware ChainsThe Hacker News·Oct 30, 09:40 UTC · Oct 30, 2025Malware142