How RainyDay, Turian and a new PlugX variant abuse DLL search order hijackingCisco Talos·Sep 23, 18:00 UTC · Sep 23, 2025Malware42
Reverse Engineering the Cuban Sonic WeaponSchneier on Security·Jan 27, 14:33 UTC · Jan 27, 2020Malware42
Browser Extensions: Are They Worth the Risk?Krebs on Security·Sep 10, 15:01 UTC · Sep 10, 2018Malware42
Iran-nexus APT Dust Specter targets Iraq officials with new malwareSecurity Affairs·Mar 6, 09:37 UTC · Mar 6, 2026Malware42
SEO Poisoning Campaign Targets 8,500+ SMB Users with Malware Disguised as AI ToolsThe Hacker News·Jul 11, 04:03 UTC · Jul 11, 2025Malware42
North Korean Hackers Spread Malware via Fake Crypto Firms and Job Interview LuresThe Hacker News·Apr 29, 03:35 UTC · Apr 29, 2025Malware42
Kaspersky discovers C++ version of BellaCiao malwareKaspersky Securelist·Dec 19, 15:33 UTC · Dec 19, 2024Malware42
Tomiris called, they want their Turla malware backKaspersky Securelist·Apr 26, 07:40 UTC · Apr 26, 2023Malware42
Prometei botnet improves modules and exhibits new capabilities in recent updatesCisco Talos·Mar 9, 13:02 UTC · Mar 9, 2023MalwareCVE-2019-0708147
The SessionManager IIS backdoor: a possibly overlooked GELSEMIUM artefactKaspersky Securelist·Jun 30, 08:00 UTC · Jun 30, 2022Malware42
The DarkUniverse: mysterious APT framework #27Kaspersky Securelist·Nov 5, 10:00 UTC · Nov 5, 2019Malware42
The case of SSH backdoor built in Barracuda Networks productsSecurity Affairs·Jan 28, 08:21 UTC · Jan 28, 2013Malware42
AWS Blames North Korean Group for npm Supply Chain AttacksInfosecurity Magazine·Jul 31, 09:50 UTC · Jul 31, 2026Malware42
OctLurk and SilkLurk: new Backdoors in Central AsiaKaspersky Securelist·Jul 31, 09:44 UTC · Jul 31, 2026Malware42
Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire SleetThe Hacker News·Jul 30, 07:58 UTC · Jul 30, 2026Malware42
Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress SitesThe Hacker News·Jul 10, 11:30 UTC · Jul 10, 2026Malware in the wildCVE-2026-3844CVE-2021-29441CVE-2026-3300+10 CVEs60
AI-Generated Malware Powers New Armored Likho APT CampaignSecurity Affairs·Jul 7, 08:28 UTC · Jul 7, 2026Malware42
StrikeShark: a new campaign involving a custom SharkLoader and Cobalt Strike BeaconKaspersky Securelist·Jun 24, 14:23 UTC · Jun 24, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs47
North Korea Uses GitHub in Diplomat Cyber Attacks as IT Worker Scheme Hits 320+ FirmsThe Hacker News·Apr 6, 16:05 UTC · Apr 6, 2026Malware42
ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool InstallersThe Hacker News·Mar 31, 11:33 UTC · Mar 31, 2026Malware42
Dust Specter Targets Iraqi Officials with New SPLITDROP and GHOSTFORM MalwareThe Hacker News·Mar 5, 12:01 UTC · Mar 5, 2026Malware42
UK sounds alarm on rising cyber risks to businessesHelp Net Security·Feb 19, 00:00 UTC · Feb 19, 2026Malware42
Wiper malware targeted Poland energy grid, but failed to knock out electricityArs Technica · Security·Jan 24, 19:08 UTC · Jan 24, 2026Malware42
PLUGGYAPE Malware Uses Signal and WhatsApp to Target Ukrainian Defense ForcesThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Malware42
New Malware Campaign Delivers Remcos RAT Through MultiThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Malware42
North Korea’s ScarCruft Deploys KoSpy Malware, Spying on Android Users via Fake Utility AppsThe Hacker News·Dec 18, 07:30 UTC · Dec 18, 2025Malware42
North Korean Hackers Stole Millions from Cryptocurrency Startups WorldwideThe Hacker News·Oct 28, 15:53 UTC · Oct 28, 2025Malware42
From HealthKick to GOVERSHELL: The Evolution of UTA0388's Espionage MalwareThe Hacker News·Oct 9, 17:19 UTC · Oct 9, 2025Malware42
China-Linked PlugX and Bookworm Malware Attacks Target Asian Telecom and ASEAN NetworksThe Hacker News·Oct 2, 06:36 UTC · Oct 2, 2025Malware42
New YiBackdoor Malware Shares Major Code Overlaps with IcedID and LatrodectusThe Hacker News·Sep 24, 11:28 UTC · Sep 24, 2025Malware42
Russian Hackers Gamaredon and Turla Collaborate to Deploy Kazuar Backdoor in UkraineThe Hacker News·Sep 19, 08:24 UTC · Sep 19, 2025Malware42
GhostRedirector Hacks 65 Windows Servers Using Rungan Backdoor and Gamshen IIS ModuleThe Hacker News·Sep 5, 06:07 UTC · Sep 5, 2025Malware42
18 Malicious Chrome and Edge Extensions Disguise as Everyday ToolsInfosecurity Magazine·Jul 8, 16:00 UTC · Jul 8, 2025Malware42
Iran-Linked BladedFeline Hits Iraqi and Kurdish Targets with Whisper and Spearal MalwareThe Hacker News·Jun 5, 14:50 UTC · Jun 5, 2025Malware42
New BPFDoor Controller Enables Stealthy Lateral Movement in Linux Server AttacksThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025Malware42
Gamaredon campaign abuses LNK files to distribute Remcos backdoorCisco Talos·Mar 28, 10:00 UTC · Mar 28, 2025Malware42
APT36 Spoofs India Post Website to Infect Windows and Android Users with MalwareThe Hacker News·Mar 27, 12:31 UTC · Mar 27, 2025Malware42
FatalRAT Phishing Attacks Target APAC Industries Using Chinese Cloud ServicesThe Hacker News·Mar 5, 08:58 UTC · Mar 5, 2025Malware42