How RainyDay, Turian and a new PlugX variant abuse DLL search order hijackingCisco Talos·Sep 23, 18:00 UTC · Sep 23, 2025Malware42
Hiding in plain sight: PhantomLance walks into a marketKaspersky Securelist·Apr 28, 15:00 UTC · Apr 28, 2020Malware42
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
StrikeShark: a new campaign involving a custom SharkLoader and Cobalt Strike BeaconKaspersky Securelist·Jun 24, 14:23 UTC · Jun 24, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs47
Review of the Virus.Win32.Virut.ce Malware SampleKaspersky Securelist·Jun 10, 15:28 UTC · Jun 10, 2010Malware42
Loncom packer: from backdoors to Cobalt StrikeKaspersky Securelist·Apr 2, 10:00 UTC · Apr 2, 2020Malware42
New Dohdoor malware campaign targets education and health careCisco Talos·Feb 26, 11:00 UTC · Feb 26, 2026Malware42
Hidden between the tags: Insights into spammers’ evasion techniques in HTML SmugglingCisco Talos·Jul 10, 12:00 UTC · Jul 10, 2024Malware42
Comnie Continues to Target Organizations in East AsiaPalo Alto Unit 42·Nov 1, 11:01 UTC · Nov 1, 2018Malware42
menuPass Returns with New Malware and New Attacks Against Japanese Academics and OrganizationsPalo Alto Unit 42·Nov 1, 10:44 UTC · Nov 1, 2018Malware42
The Mystery of the Encrypted Gauss PayloadKaspersky Securelist·Aug 14, 17:00 UTC · Aug 14, 2012Malware42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
APT10: sophisticated multi-layered loader Ecipekac discovered in A41APT campaignKaspersky Securelist·Mar 30, 10:00 UTC · Mar 30, 2021Malware42
Operation AppleJeus: Lazarus hits cryptocurrency exchange with fake installer and macOS malwareKaspersky Securelist·Aug 23, 08:00 UTC · Aug 23, 2018Malware42
HoneyMyte updates CoolClient backdoor, uses new data stealing toolsKaspersky Securelist·Jan 26, 19:27 UTC · Jan 26, 2026Malware42
Cloud Atlas using a new backdoor, VBCloud, to steal dataKaspersky Securelist·Dec 23, 10:00 UTC · Dec 23, 2024MalwareCVE-2018-080247
Big banks want to intentionally weaken the internet’s most important security protocolCyberScoop·Mar 1, 21:52 UTC · Mar 1, 2018Malware42
Intel and AMD trusted enclaves, a foundation for network security, fall to physical attacksArs Technica · Security·Sep 30, 20:25 UTC · Sep 30, 2025Malware42
New Mirai botnet campaign targets DVR devicesKaspersky Securelist·Jun 6, 10:52 UTC · Jun 6, 2025MalwareCVE-2024-372147
“Red October”. Detailed Malware Description 1. First Stage of AttackKaspersky Securelist·Jan 17, 16:09 UTC · Jan 17, 2013MalwareCVE-2009-3129CVE-2010-3333CVE-2012-0158+1 CVEs47
OctLurk and SilkLurk: new Backdoors in Central AsiaKaspersky Securelist·Jul 31, 09:44 UTC · Jul 31, 2026Malware42
PipeMagic in 2025: How the backdoor operators’ tactics have changedKaspersky Securelist·Aug 18, 09:00 UTC · Aug 18, 2025MalwareCVE-2025-29824CVE-2017-014447
COMpfun authors spoof visa application with HTTP statusKaspersky Securelist·May 14, 10:00 UTC · May 14, 2020Malware42
Unit 42 Identifies New DragonOK Backdoor Malware Deployed Against Japanese TargetsPalo Alto Unit 42·Nov 1, 09:41 UTC · Nov 1, 2018Malware42
Abused Update of GOM Player Poses a ThreatKaspersky Securelist·Feb 4, 20:40 UTC · Feb 4, 2014Malware42
OceanLotus suspected of distributing ZiChatBot malware via wheel packages in PyPIKaspersky Securelist·May 5, 14:33 UTC · May 5, 2026Malware42
Evasive Panda cyberespionage campaign uses DNS poisoning to install MgBot backdoorSecurity Affairs·Dec 29, 08:51 UTC · Dec 29, 2025Malware42
Analysis of the CloudWizard APT frameworkKaspersky Securelist·May 19, 10:30 UTC · May 19, 2023Malware42
Researchers Decrypted Qakbot Banking Trojan’s Encrypted Registry KeysThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022Malware42
Chafer used Remexi malware to spy on IranKaspersky Securelist·Jan 30, 10:00 UTC · Jan 30, 2019Malware42
Threat Actors Target Government of Belarus Using CMSTAR TrojanPalo Alto Unit 42·Nov 1, 10:55 UTC · Nov 1, 2018MalwareCVE-2015-164147
Hacking The Hacker. Stopping a big botnet targeting USA,Canada and ItalySecurity Affairs·Aug 31, 14:54 UTC · Aug 31, 2018Malware42
GoPix banking Trojan targeting Brazilian financial institutionsKaspersky Securelist·Mar 16, 09:36 UTC · Mar 16, 2026Malware42