Russian Hackers Deploy HATVIBE and CHERRYSPY Malware Across Europe and AsiaThe Hacker News·Nov 22, 16:59 UTC · Nov 22, 2024Malware55
New Lucifer DDoS botnet targets Windows systems with multiple exploitsSecurity Affairs·Jun 26, 06:42 UTC · Jun 26, 2020MalwareCVE-2019-9081CVE-2014-6287CVE-2018-1000861+7 CVEs60
Critical shim bug impacts every Linux boot loader signed in the past decadeSecurity Affairs·Feb 7, 14:46 UTC · Feb 7, 2024MalwareCVE-2023-40547CVE-2023-40546CVE-2023-40548+3 CVEs60
Infostealers increasingly impact global securityHelp Net Security·Nov 13, 00:00 UTC · Nov 13, 2024MalwareCVE-2010-4598CVE-2011-2474CVE-2014-0130+15 CVEs60
New Ballista Botnet spreads using TPSecurity Affairs·Mar 12, 09:51 UTC · Mar 12, 2025MalwareCVE-2023-138960
Operation CargoTalon targets Russia’s aerospace with EAGLET malware,Security Affairs·Jul 25, 22:27 UTC · Jul 25, 2025Malware55
UNC6692 Impersonates IT Help Desk via Microsoft Teams to Deploy SNOW MalwareThe Hacker News·Apr 24, 09:30 UTC · Apr 24, 2026Malware55
Iranian Infy APT Resurfaces with New Malware Activity After Years of SilenceThe Hacker News·Dec 24, 11:04 UTC · Dec 24, 2025Malware55
GeoServer Exploits, PolarEdge, and Gayfemboy Push Cybercrime Beyond Traditional BotnetsThe Hacker News·Aug 24, 13:31 UTC · Aug 24, 2025MalwareCVE-2024-3640160
Purple Fox version includes Rootkit and implements wormable propagationSecurity Affairs·Mar 29, 06:53 UTC · Mar 29, 2021Malware55
Lazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePEThe Hacker News·Sep 3, 03:44 UTC · Sep 3, 2025Malware55
Dissecting UAT-8099: New persistence mechanisms and regional focusCisco Talos·Jan 29, 11:00 UTC · Jan 29, 2026Malware55
DarkIRC botnet is targeting the critical Oracle WebLogic CVE-2020Security Affairs·Dec 1, 18:41 UTC · Dec 1, 2020Malware in the wildCVE-2020-1488260
Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and MalwareThe Hacker News·Jul 29, 09:05 UTC · Jul 29, 2025MalwareCVE-2023-38950CVE-2023-38951CVE-2023-3895260
New version of MysterySnail RAT and lightweight MysteryMonoSnail backdoorKaspersky Securelist·Apr 17, 08:00 UTC · Apr 17, 2025MalwareCVE-2021-4044960
CloudZ RAT potentially steals OTP messages using Pheno pluginCisco Talos·May 5, 10:00 UTC · May 5, 2026Malware55
Frebniis Malware Exploits Microsoft IIS FeatureInfosecurity Magazine·Feb 20, 16:00 UTC · Feb 20, 2023Malware55
Cyber Espionage Campaign Hits Russian Aerospace Sector Using EAGLET BackdoorThe Hacker News·Jul 25, 13:14 UTC · Jul 25, 2025Malware55
Google warns of Brickstorm backdoor targeting U.S. legal and tech sectorsSecurity Affairs·Sep 26, 07:04 UTC · Sep 26, 2025Malware55
US Agencies and FireEye Were Hacked Using SolarWinds Software BackdoorThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2020MalwareCVE-2019-11510CVE-2020-1472CVE-2020-10189+1 CVEs60
Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia CampaignThe Hacker News·Jun 26, 16:21 UTC · Jun 26, 2026Malware55
BlackLotus Becomes First UEFI Bootkit Malware to Bypass Secure Boot on Windows 11The Hacker News·Jun 23, 08:42 UTC · Jun 23, 2023Malware in the wildCVE-2022-21894160
OilRig targets a Middle Eastern Government and Adds Evasion Techniques to OopsIEPalo Alto Unit 42·Nov 2, 11:28 UTC · Nov 2, 2018Malware55
AndroxGh0st Malware Targets Laravel Apps to Steal Cloud CredentialsThe Hacker News·Mar 21, 12:48 UTC · Mar 21, 2024MalwareCVE-2021-41773CVE-2017-9841CVE-2018-15133160
Chinese Hackers Exploit GeoServer Flaw to Target APAC Nations with EAGLEDOOR MalwareThe Hacker News·Sep 23, 04:49 UTC · Sep 23, 2024MalwareCVE-2024-3640160
Iran-linked APT35 group exploits Log4Shell to deploy a new backdoorSecurity Affairs·Jan 12, 11:22 UTC · Jan 12, 2022Malware55
Chinese Hackers Use ‘BRICKSTORM’ Backdoor to Breach US FirmsInfosecurity Magazine·Sep 25, 12:30 UTC · Sep 25, 2025Malware55
TrickMo Banking Trojan Can Now Capture Android PINs and Unlock PatternsThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Malware55
Manjusaka: A Chinese sibling of Sliver and Cobalt StrikeCisco Talos·Aug 2, 12:00 UTC · Aug 2, 2022Malware55
Dok Mac malware intercepts victims' web traffic, installs backdoorHelp Net Security·Oct 15, 09:22 UTC · Oct 15, 2018Malware55
Ghostwriter group resumes attacks on Ukrainian Government targetsSecurity Affairs·May 15, 10:38 UTC · May 15, 2026Malware55
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
Over 1,000 Exposed ComfyUI Instances Targeted in Cryptomining Botnet CampaignThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026MalwareCVE-2025-68613CVE-2025-7544CVE-2023-46604+2 CVEs60
From Box to Backdoor: Discovering Just How Insecure an ICS Device is in Only 2 WeeksCisco Talos·Apr 10, 16:11 UTC · Apr 10, 2017MalwareCVE-2016-8712CVE-2016-8721CVE-2016-8718+1 CVEs60
RondoDox Botnet Exploits Flaws in TBK DVRs and FourThe Hacker News·Jul 8, 12:44 UTC · Jul 8, 2025MalwareCVE-2024-3721CVE-2024-1285660
VPNFilter III: More Tools for the Swiss Army Knife of MalwareCisco Talos·Sep 26, 14:59 UTC · Sep 26, 2018Malware55
DragonOK APT adopts new tactics, techniques and proceduresSecurity Affairs·Sep 2, 15:59 UTC · Sep 2, 2017Malware55