Frebniis malware abuses Microsoft IIS feature to create a backdoorSecurity Affairs·Feb 19, 20:22 UTC · Feb 19, 2023Malware42
New Mirai botnet targets tens of flaws in popular IoT devicesSecurity Affairs·Jun 22, 20:58 UTC · Jun 22, 2023MalwareCVE-2019-12725CVE-2019-17621CVE-2019-20500+13 CVEs47
Iran-linked group TEMP.Zagros now targets Asia and Middle East regionsSecurity Affairs·Mar 19, 13:44 UTC · Mar 19, 2018Malware42
CISA warns of malware deployed through Ivanti EPMM flawsSecurity Affairs·Sep 20, 14:07 UTC · Sep 20, 2025Malware in the wildCVE-2025-4427CVE-2025-4428160
Experts Reports Sharp Increase in Automated Botnet Attacks Targeting PHP Servers and IoT DevicesThe Hacker News·Oct 29, 15:38 UTC · Oct 29, 2025Malware in the wildCVE-2017-9841CVE-2021-3129CVE-2022-47945+2 CVEs160
US Government Urges Action to Mitigate Androxgh0st Malware ThreatInfosecurity Magazine·Jan 17, 11:05 UTC · Jan 17, 2024Malware in the wildCVE-2017-9841CVE-2018-15133CVE-2021-4177360
Using leak tests to evaluate firewall effectivenessKaspersky Securelist·Dec 20, 16:35 UTC · Dec 20, 2007Malware42
SpeakUp Linux Backdoor targets Linux servers in East Asia and LATAM.Security Affairs·Feb 5, 22:42 UTC · Feb 5, 2019MalwareCVE-2018-20062CVE-2012-0874CVE-2010-1871+3 CVEs47
Review of the Virus.Win32.Virut.ce Malware SampleKaspersky Securelist·Jun 10, 15:28 UTC · Jun 10, 2010Malware42
CosmicStrand: the discovery of a sophisticated UEFI firmware rootkitKaspersky Securelist·Jul 25, 10:00 UTC · Jul 25, 2022Malware42
ThreatsDay Bulletin: GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ StoriesThe Hacker News·Jan 1, 15:52 UTC · Jan 1, 2026MalwareCVE-2023-26359CVE-2023-38205CVE-2023-44353+7 CVEs47
Hackers Infect macOS with New DazzleSpy Backdoor in WateringThe Hacker News·Jan 27, 04:35 UTC · Jan 27, 2022MalwareCVE-2021-1789CVE-2021-30869CVE-2019-852647
New EnemyBot DDoS Botnet Borrows Exploit Code from Mirai and GafgytThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022MalwareCVE-2020-17456CVE-2018-10823CVE-2022-27226+2 CVEs47
Backdoored Webmin versions were available for download for over a yearSecurity Affairs·Aug 20, 06:40 UTC · Aug 20, 2019MalwareCVE-2019-1510747
Tor-Based Clipper Malware Targets Wallet Seed PhrasesSecurity Affairs·Jun 18, 18:32 UTC · Jun 18, 2026Malware42
Windows DOS-to-NT flaws exploited to achieve unprivileged rootkitSecurity Affairs·Apr 22, 10:45 UTC · Apr 22, 2024MalwareCVE-2023-36396CVE-2023-32054CVE-2023-4275747
New IoT/Linux Malware Targets DVRs, Forms BotnetPalo Alto Unit 42·Jan 28, 20:33 UTC · Jan 28, 2022Malware42
Hackers Using PowerPoint Mouseover Trick to Infect Systems with MalwareThe Hacker News·Oct 2, 05:18 UTC · Oct 2, 2022MalwareCVE-2021-40444147
Magecart skimmer turns Stripe into a malware command serverSansec (Magento / e-commerce security)·Jun 4, 05:31 UTC · Jun 4, 2026Malware42
Netgear Routers' Flaws Expose Users to Malware, Remote Attacks, and SurveillanceThe Hacker News·May 12, 15:59 UTC · May 12, 2023MalwareCVE-2023-27357CVE-2023-27368CVE-2023-27369+2 CVEs47
17-Year-Old MS Office Flaw Lets Hackers Install Malware Without User InteractionThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2017MalwareCVE-2017-11882CVE-2017-1184747
Open-source malware zeroes in on developer environmentsHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2026Malware42
Hackers Exploiting Three Microsoft Office Flaws to Spread Zyklon MalwareThe Hacker News·Jan 17, 18:25 UTC · Jan 17, 2018MalwareCVE-2017-8759CVE-2017-11882147
OilRig Group Steps Up Attacks with New Delivery Documents and New Injector TrojanPalo Alto Unit 42·Dec 17, 08:59 UTC · Dec 17, 2018MalwareCVE-2017-019947
PRevent: Open-source tool to detect malicious code in pull requestsHelp Net Security·Feb 24, 09:13 UTC · Feb 24, 2025Malware42
Necro Python Malware Upgrades With New Exploits and Crypto Mining CapabilitiesThe Hacker News·Jun 3, 17:01 UTC · Jun 3, 2021MalwareCVE-2021-21972CVE-2017-0144CVE-2017-014547
North Korean Hackers Are Turning Developer Tools Into Malware Delivery ChannelsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware42
PyPI halted new users and projects while it fended off supplyArs Technica · Security·Mar 28, 18:50 UTC · Mar 28, 2024Malware42
Compromised dYdX npm and PyPI Packages Deliver Wallet Stealers and RAT MalwareThe Hacker News·Feb 6, 08:40 UTC · Feb 6, 2026Malware42
Microsoft Removes 119 Edge Extensions That Hid Malware in Images and FontsThe Hacker News·Jun 29, 08:32 UTC · Jun 29, 2026Malware42
Two Compromised joyfill npm Packages Run RAT When Imported Into Node.jsThe Hacker News·Aug 4, 05:21 UTC · Aug 4, 2026Malware142
SapphireStealer: Open-source information stealer enables credential and data theftCisco Talos·Aug 31, 12:00 UTC · Aug 31, 2023Malware42
Japan Quake Spam leads to Malware Part 3Kaspersky Securelist·Mar 21, 20:52 UTC · Mar 21, 2011MalwareCVE-2010-0886CVE-2010-1885CVE-2010-0842+4 CVEs47
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
Popular Rust Crate liblzma-sys Compromised with XZ Utils Backdoor FilesThe Hacker News·Apr 12, 14:55 UTC · Apr 12, 2024Malware42