Unsecured Kubernetes Instances Could Be Vulnerable to ExploitationPalo Alto Unit 42·Jun 6, 12:44 UTC · Jun 6, 2024Malware130
MITRE ATT&CK v9 is out and includes ATT&CK for ContainersHelp Net Security·Sep 22, 09:24 UTC · Sep 22, 2023Malware30
Meet hrtng, Kaspersky GReAT’s plugin for IDA ProKaspersky Securelist·Dec 5, 10:00 UTC · Dec 5, 2024Malware30
What makes Windows 11 interesting from a digital forensics perspectiveKaspersky Securelist·Oct 14, 08:00 UTC · Oct 14, 2025Malware130
Necro Trojan infiltrates Google Play and Spotify and WhatsApp modsKaspersky Securelist·Sep 23, 10:00 UTC · Sep 23, 2024Malware30
TwoFace Webshell: Persistent Access Point for Lateral MovementPalo Alto Unit 42·Nov 1, 10:54 UTC · Nov 1, 2018Malware30
What is UserAssist and how to use it in IR activities?Kaspersky Securelist·Jul 14, 10:00 UTC · Jul 14, 2025Malware30
JasperLoader Emerges, Targets Italy with Gootkit Banking TrojanCisco Talos·Apr 25, 15:00 UTC · Apr 25, 2019Malware30
The Banking Trojan Emotet: Detailed AnalysisKaspersky Securelist·Apr 9, 14:00 UTC · Apr 9, 2015Malware30
SparkCat crypto stealer in Google Play and App StoreKaspersky Securelist·Feb 5, 08:00 UTC · Feb 5, 2025Malware30
Investigation Report for the September 2014 Equation malware detection incident in the USKaspersky Securelist·Nov 16, 10:00 UTC · Nov 16, 2017Malware30
Divergent: "Fileless" NodeJS Malware Burrows Deep Within the HostCisco Talos·Sep 26, 20:07 UTC · Sep 26, 2019Malware30
BeaverTail and OtterCookie evolve with a new Javascript moduleCisco Talos·Oct 16, 10:00 UTC · Oct 16, 2025Malware130
OriginLogger: A Look at Agent Tesla’s SuccessorPalo Alto Unit 42·Jun 5, 17:53 UTC · Jun 5, 2024Malware30
Transparent Tribe campaign uses new bespoke malware to target Indian government officialsCisco Talos·Mar 29, 12:01 UTC · Mar 29, 2022Malware30
Keepnet launches AI incident response agents that redefine post-delivery email threat containmentHelp Net Security·Apr 15, 10:19 UTC · Apr 15, 2026Malware30
Hackers Can Exploit Windows Container Isolation Framework to Bypass Endpoint SecurityThe Hacker News·Aug 31, 13:33 UTC · Aug 31, 2023Malware30
Hackers can easily target container ships by hacking load plans due to its vulnerable messaging systemSecurity Affairs·Nov 28, 12:41 UTC · Nov 28, 2017Malware30
Efimer Trojan delivered via email and hacked WordPress websitesKaspersky Securelist·Aug 8, 09:00 UTC · Aug 8, 2025Malware30
Tusk campaign uses infostealers and clippers for financial gainKaspersky Securelist·Aug 15, 12:00 UTC · Aug 15, 2024Malware30
Operation Layover: How we tracked an attack on the aviation industry to five years of compromiseCisco Talos·Sep 16, 12:00 UTC · Sep 16, 2021Malware30
Docker Images Containing Cryptojacking Malware Distributed via Docker HubThe Hacker News·Jun 25, 10:42 UTC · Jun 25, 2020Malware130
Combing Through Brushaloader Amid Massive Detection UptickCisco Talos·Feb 20, 16:27 UTC · Feb 20, 2019Malware30
FIN7 Group Uses JavaScript and Stealer DLL Variant in New AttacksCisco Talos·Sep 27, 17:38 UTC · Sep 27, 2017Malware30
An unknown actor distributes malicious VBS scripts via WhatsAppKaspersky Securelist·Jun 22, 10:00 UTC · Jun 22, 2026Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
The new SparkKitty Trojan spy in the App Store and Google PlayKaspersky Securelist·Jun 23, 08:00 UTC · Jun 23, 2025Malware30
Astaroth, Mekotio & Ousaban abusing Google Cloud Run in LATAMCisco Talos·Feb 20, 13:00 UTC · Feb 20, 2024Malware30
Nanocore, Netwire and AsyncRAT spreading campaign uses public cloud infrastructureCisco Talos·Jan 12, 13:02 UTC · Jan 12, 2022Malware30