T9000: Advanced Modular Backdoor Uses Complex AntiPalo Alto Unit 42·Nov 1, 10:04 UTC · Nov 1, 2018MalwareCVE-2012-1856CVE-2015-164160
Banking Trojan Techniques: How Financially Motivated Malware Became InfrastructurePalo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024Malware55
Malware Using the Registry to Store a Zeus Configuration FileCisco Talos·Sep 4, 17:00 UTC · Sep 4, 2014Malware55
Transparent COM instrumentation for malware analysisCisco Talos·Mar 18, 10:00 UTC · Mar 18, 2026Malware55
Mercenary mayhem: A technical analysis of Intellexa's PREDATOR spywareCisco Talos·May 25, 12:02 UTC · May 25, 2023MalwareCVE-2021-37973CVE-2021-37976CVE-2021-38000+2 CVEs60
Researchers Discover Hidden Backdoor in 20 Router Models Allowing Remote Root AccessSecurity Affairs·Aug 7, 10:17 UTC · Aug 7, 2026Malware55
Defenders on high alert as backdoor attacks become more commonHelp Net Security·Apr 23, 13:39 UTC · Apr 23, 2026Malware55
Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud EnvironmentsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Malware155
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark CyberattacksThe Hacker News·Jun 27, 12:06 UTC · Jun 27, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs60
BiBi-Linux wiper targets Israeli companiesHelp Net Security·Nov 14, 15:30 UTC · Nov 14, 2023Malware55
Giving a Face to the Malware Proxy Service ‘Faceless’Krebs on Security·Apr 18, 23:59 UTC · Apr 18, 2023Malware55
Microsoft Details Building Blocks of Widely Active Qakbot Banking TrojanThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Malware155
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitThe Hacker News·Jun 12, 19:35 UTC · Jun 12, 2026Malware55
Russia-linked threat actors targets Ukraine with PathWiper wiperSecurity Affairs·Jun 6, 18:30 UTC · Jun 6, 2025Malware55
Earth Lusca expands its arsenal with SprySOCKS Linux malwareSecurity Affairs·Sep 19, 07:52 UTC · Sep 19, 2023MalwareCVE-2022-40684CVE-2022-39952CVE-2021-22205+6 CVEs160
Friday Squid Blogging: Climate Change Causing "Squid Bloom" along Pacific CoastSchneier on Security·Feb 11, 22:07 UTC · Feb 11, 2022Malware55
IBM shares details on the attack chain for the Shamoon malwareSecurity Affairs·Feb 16, 10:19 UTC · Feb 16, 2017Malware55
Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for ItselfThe Hacker News·Aug 5, 07:53 UTC · Aug 5, 2026Malware55
SkillSpector: NVIDIA's open-source security scanner for AI agent skillsHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2026Malware55
Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident responseHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2026Malware55
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksThe Hacker News·Jul 23, 12:20 UTC · Jul 23, 2026Malware in the wildCVE-2018-11511CVE-2021-24139CVE-2021-31755+1 CVEs60
GigaWiper Merges Three Malware Families Into One Destructive BackdoorSecurity Affairs·Jul 10, 08:25 UTC · Jul 10, 2026Malware155
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareThe Hacker News·Jul 8, 09:04 UTC · Jul 8, 2026MalwareCVE-2020-22653CVE-2020-22658CVE-2023-25717+1 CVEs60
Venezuela energy sector targeted by highly destructive Lotus wiperSecurity Affairs·Apr 22, 07:53 UTC · Apr 22, 2026Malware55
Persistent backdoors injected on Adobe Commerce via new CosmicSting attackSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Malware in the wildCVE-2024-34102CVE-2024-2961CVE-2026-7565060
⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & MoreThe Hacker News·Mar 26, 15:38 UTC · Mar 26, 2026Malware in the wildCVE-2026-33017CVE-2026-2013160
Week in review: Self-spreading npm malware hits developers, Cisco SD-WAN 0-day exploited since 2023Help Net Security·Mar 1, 00:00 UTC · Mar 1, 2026Malware in the wildCVE-2026-25108CVE-2026-20127160
New Advanced Linux VoidLink Malware Targets Cloud and container EnvironmentsThe Hacker News·Jan 19, 08:54 UTC · Jan 19, 2026Malware55
Expect More From Your Intelligence — Starting With ContextRecorded Future·Jan 12, 00:00 UTC · Jan 12, 2026Malware55
ThreatsDay Bulletin: Stealth Loaders, AI Chatbot Flaws AI Exploits, Docker Hack, and 15 More StoriesThe Hacker News·Jan 10, 14:25 UTC · Jan 10, 2026MalwareCVE-2025-59295CVE-2025-10294CVE-2025-5923060
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
ThreatsDay Bulletin: 0-Days, LinkedIn Spies, Crypto Crimes, IoT Flaws and New Malware WavesThe Hacker News·Nov 21, 06:45 UTC · Nov 21, 2025MalwareCVE-2025-61757CVE-2025-1124360
TA558 Uses AI-Generated Scripts to Deploy Venom RAT in Brazil Hotel AttacksThe Hacker News·Sep 17, 18:30 UTC · Sep 17, 2025MalwareCVE-2017-019960
⚡ Weekly Recap: WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & MoreThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Malware in the wildCVE-2025-55177CVE-2025-43300CVE-2025-907460
GeoServer Exploits, PolarEdge, and Gayfemboy Push Cybercrime Beyond Traditional BotnetsThe Hacker News·Aug 24, 13:31 UTC · Aug 24, 2025MalwareCVE-2024-3640160
SquidLoader Malware Campaign Targets Hong Kong Financial SectorInfosecurity Magazine·Jul 16, 16:45 UTC · Jul 16, 2025Malware55
Chinese and Russian Communities Analyze Shadow Brokers Malware ReleaseRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025MalwareCVE-2017-014360