Mandiant: 3CX supply-chain attack began with another supplyThe Record·Apr 20, 13:50 UTC · Apr 20, 2023Malware in the wild60
Mandiant flags fake AI video generators laced with malwareCyberScoop·May 28, 15:37 UTC · May 28, 2025Malware in the wild160
New Russia-linked malware can physically harm power grids, Mandiant reportsThe Record·May 25, 18:07 UTC · May 25, 2023Malware55
Google, Mandiant expose malware and zeroSecurity Affairs·Oct 13, 08:35 UTC · Oct 13, 2025Malware in the wildCVE-2025-6188260
3CX Breach Was a Double Supply Chain CompromiseKrebs on Security·Apr 21, 02:22 UTC · Apr 21, 2023Malware42
China-linked hackers use ‘BRICKSTORM’ backdoor to steal IPThe Record·Sep 24, 16:04 UTC · Sep 24, 2025Malware55
Google warns of Vietnam-based hackers using bogus AI video generators to spread malwareThe Record·May 28, 12:43 UTC · May 28, 2025Malware42
Vietnam-Nexus Hackers Distribute Malware Via Fake AI Video GeneratorsInfosecurity Magazine·May 28, 10:00 UTC · May 28, 2025Malware42
Iranian hackers spy on journalists and government officials, researchers warnThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Malware30
Russian hackers disrupted Ukrainian electrical grid last yearCyberScoop·Nov 9, 15:31 UTC · Nov 9, 2023Malware55
Experts uncovered novel Malware persistence within VMware ESXi HypervisorsSecurity Affairs·Jun 13, 20:17 UTC · Jun 13, 2023Malware155
Tomiris called, they want their Turla malware backKaspersky Securelist·Apr 26, 07:40 UTC · Apr 26, 2023Malware42
New supply chain attack targeted Ukrainian government networksThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Malware42
Iran-Linked Hackers Target Israel with MURKYTOUR Malware via Fake Job CampaignThe Hacker News·Apr 23, 13:12 UTC · Apr 23, 2025Malware42
Latest Ivanti bug, paired with malware, earns an alert from CISAThe Record·Apr 2, 18:00 UTC · Apr 2, 2025MalwareCVE-2025-028260
PLAYFULGHOST supports multiple information stealing featuresSecurity Affairs·Jan 6, 00:30 UTC · Jan 6, 2025Malware42
Iran backdoors planted across Middle East telecoms, government agencies, Google saysThe Record·Sep 19, 18:26 UTC · Sep 19, 2024Malware42
Iran cyber operations exposed in reports from Google, MicrosoftThe Record·Aug 29, 00:19 UTC · Aug 29, 2024Malware42
Multiple malware used in attacks exploiting Ivanti VPN flawsSecurity Affairs·Feb 1, 10:53 UTC · Feb 1, 2024Malware in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Ars Technica used in malware campaign with never-beforeArs Technica · Security·Jan 30, 21:24 UTC · Jan 30, 2024Malware42
UNC3524 APT uses IP cameras to deploy backdoors and target ExchangeSecurity Affairs·May 3, 08:40 UTC · May 3, 2022Malware42
PRIVATELOG, a new malware that leverages CLFS to avoid detectionSecurity Affairs·Sep 3, 13:48 UTC · Sep 3, 2021Malware30
Trisis malware has the security world spooked, stumped and searching for answersCyberScoop·Jan 16, 16:56 UTC · Jan 16, 2018Malware30
Security firms sometimes wreck FBI investigations. Here's how.CyberScoop·Apr 3, 15:34 UTC · Apr 3, 2017Malware30
Chinese Hackers Breach Juniper Networks Routers With Custom Backdoors and RootkitsThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025MalwareCVE-2025-2159060
Mysterious malware designed to cripple industrial systems linked to RussiaCyberScoop·May 25, 13:46 UTC · May 25, 2023Malware in the wild60
North Korean Hacker Suspected in 3CX Software Supply Chain AttackInfosecurity Magazine·Apr 20, 17:30 UTC · Apr 20, 2023Malware42
China-linked UNC4191 APT relies on USB Devices in attacks against entities in the PhilippinesSecurity Affairs·Nov 30, 11:59 UTC · Nov 30, 2022Malware55
Attackers use novel technique, malware to compromise hypervisors and virtual machinesHelp Net Security·Sep 30, 00:00 UTC · Sep 30, 2022Malware42
New Spear Phish Methodology Relies on PuTTY SSH Client to Infect SystemsInfosecurity Magazine·Sep 17, 15:30 UTC · Sep 17, 2022Malware42
New threat groups and malware families emergingHelp Net Security·Apr 22, 00:00 UTC · Apr 22, 2022Malware42
Caketap, a new Unix rootkit used to siphon ATM banking dataSecurity Affairs·Mar 18, 15:45 UTC · Mar 18, 2022Malware55
Nobelium continues to target organizations worldwide with custom malwareSecurity Affairs·Dec 7, 07:54 UTC · Dec 7, 2021Malware42
By Light and FireEye incorporate threat intelligence into cyberspace attacksHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2020Malware42
Iranian state-backed cyber spies continue to impersonate media brands, think tanksThe Record·May 2, 15:37 UTC · May 2, 2024Malware30
CISA discovered a new backdoor, named Whirlpool, used in Barracuda ESG attacksSecurity Affairs·Aug 10, 17:28 UTC · Aug 10, 2023MalwareCVE-2023-286860