How RainyDay, Turian and a new PlugX variant abuse DLL search order hijackingCisco Talos·Sep 23, 18:00 UTC · Sep 23, 2025Malware42
Meet hrtng, Kaspersky GReAT’s plugin for IDA ProKaspersky Securelist·Dec 5, 10:00 UTC · Dec 5, 2024Malware30
TimbreStealer campaign targets Mexican users with financial luresCisco Talos·Feb 27, 13:00 UTC · Feb 27, 2024Malware30
Nanocore, Netwire and AsyncRAT spreading campaign uses public cloud infrastructureCisco Talos·Jan 12, 13:02 UTC · Jan 12, 2022Malware30
Hiding in plain sight: PhantomLance walks into a marketKaspersky Securelist·Apr 28, 15:00 UTC · Apr 28, 2020Malware42
T9000: Advanced Modular Backdoor Uses Complex AntiPalo Alto Unit 42·Nov 1, 10:04 UTC · Nov 1, 2018MalwareCVE-2012-1856CVE-2015-164160
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
StrikeShark: a new campaign involving a custom SharkLoader and Cobalt Strike BeaconKaspersky Securelist·Jun 24, 14:23 UTC · Jun 24, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs47
How Kaspersky obtained all stages of Operation TriangulationKaspersky Securelist·Oct 26, 10:30 UTC · Oct 26, 2023Malware30
Review of the Virus.Win32.Virut.ce Malware SampleKaspersky Securelist·Jun 10, 15:28 UTC · Jun 10, 2010Malware42
New Mandrake Android spyware version discovered on Google PlayKaspersky Securelist·Jul 29, 10:05 UTC · Jul 29, 2024Malware30
Loncom packer: from backdoors to Cobalt StrikeKaspersky Securelist·Apr 2, 10:00 UTC · Apr 2, 2020Malware42
Malware researchers decrypted the Qrypter PayloadSecurity Affairs·Mar 29, 12:35 UTC · Mar 29, 2019Malware30
New PXA Stealer targets government and education sectors for sensitive informationCisco Talos·Nov 14, 11:00 UTC · Nov 14, 2024Malware30
Starry Addax targets human rights defenders in North Africa with new malwareCisco Talos·Apr 9, 12:02 UTC · Apr 9, 2024Malware30
Malware expert analyzed a threat that went undetected for at least 2 yearsSecurity Affairs·Aug 20, 13:58 UTC · Aug 20, 2018Malware30
Control Flow Integrity, a fun and innovative Javascript Evasion TechniqueSecurity Affairs·Feb 21, 14:29 UTC · Feb 21, 2018Malware30
New Dohdoor malware campaign targets education and health careCisco Talos·Feb 26, 11:00 UTC · Feb 26, 2026Malware42
Aveo Malware Family Targets Japanese Speaking UsersPalo Alto Unit 42·Apr 27, 08:51 UTC · Apr 27, 2020Malware30
Hidden between the tags: Insights into spammers’ evasion techniques in HTML SmugglingCisco Talos·Jul 10, 12:00 UTC · Jul 10, 2024Malware42
TwoFace Webshell: Persistent Access Point for Lateral MovementPalo Alto Unit 42·Nov 1, 10:54 UTC · Nov 1, 2018Malware30
StegBaus: Because Sometimes XOR Just Isn’t EnoughPalo Alto Unit 42·Jan 28, 20:35 UTC · Jan 28, 2022Malware30
Comnie Continues to Target Organizations in East AsiaPalo Alto Unit 42·Nov 1, 11:01 UTC · Nov 1, 2018Malware42
menuPass Returns with New Malware and New Attacks Against Japanese Academics and OrganizationsPalo Alto Unit 42·Nov 1, 10:44 UTC · Nov 1, 2018Malware42
False Flag Attack on Multi Stage Delivery of Malware to Italian OrganisationsSecurity Affairs·Aug 1, 10:01 UTC · Aug 1, 2017Malware30
The Mystery of the Encrypted Gauss PayloadKaspersky Securelist·Aug 14, 17:00 UTC · Aug 14, 2012Malware42
New Lua-based malware “LucidRook” observed in targeted attacks against Taiwanese organizationsCisco Talos·Apr 8, 10:00 UTC · Apr 8, 2026Malware30
SparkCat crypto stealer in Google Play and App StoreKaspersky Securelist·Feb 5, 08:00 UTC · Feb 5, 2025Malware30
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
APT10: sophisticated multi-layered loader Ecipekac discovered in A41APT campaignKaspersky Securelist·Mar 30, 10:00 UTC · Mar 30, 2021Malware42
Operation AppleJeus: Lazarus hits cryptocurrency exchange with fake installer and macOS malwareKaspersky Securelist·Aug 23, 08:00 UTC · Aug 23, 2018Malware42