CloudSorcerer APT uses cloud services and GitHub as C2Kaspersky Securelist·Jul 8, 07:00 UTC · Jul 8, 2024Malware142
Highlighting TA866/Asylum Ambuscade Activity Since 2021Cisco Talos·Oct 23, 10:02 UTC · Oct 23, 2024Malware42
BlueNoroff introduces new methods bypassing MoTWKaspersky Securelist·Dec 27, 07:04 UTC · Dec 27, 2022Malware in the wild157
FlawedAmmyy Leveraging Undetected XLM Macros as an Infection VehicleSecurity Affairs·Mar 2, 18:46 UTC · Mar 2, 2019Malware in the wild157
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing APIThe Hacker News·Jul 1, 05:32 UTC · Jul 1, 2026Malware30
UAT-9244 targets South American telecommunication providers with three new malware implantsCisco Talos·Mar 5, 11:00 UTC · Mar 5, 2026Malware55
Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted FirmsThe Hacker News·Jul 21, 06:31 UTC · Jul 21, 2025Malware42
Hackers Use TikTok Videos to Distribute Vidar and StealC Malware via ClickFix TechniqueThe Hacker News·May 29, 10:20 UTC · May 29, 2025Malware42
Cybersecurity Agencies Sound Alarm on Rising TrueBot Malware AttacksThe Hacker News·Jul 7, 06:40 UTC · Jul 7, 2023MalwareCVE-2022-3119960
Bad magic: new APT found in the area of RussoKaspersky Securelist·Mar 21, 08:00 UTC · Mar 21, 2023Malware42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
Everybody Gets One: QtBot Used to Distribute Trickbot and LockyPalo Alto Unit 42·Jul 3, 01:07 UTC · Jul 3, 2020Malware30
TA505 group updates tactics and expands the list of targetsSecurity Affairs·Aug 28, 08:39 UTC · Aug 28, 2019Malware42