Talos Incident Response quarterly threat report — The top malware families and TTPs used in Q2 2021Cisco Talos·Aug 11, 12:00 UTC · Aug 11, 2021Malware55
GrayAlpha Unmasked: New FIN7-Linked Infrastructure, PowerNet Loader, and Fake Update AttacksRecorded Future·Jul 4, 00:00 UTC · Jul 4, 2024Malware55
New VPNFilter malware targets at least 500K networking devices worldwideCisco Talos·May 23, 13:00 UTC · May 23, 2018Malware55
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160
Experts observed Magecart 5 hacker group targeting L7 RoutersSecurity Affairs·Sep 27, 12:37 UTC · Sep 27, 2019Malware55
Behind the Curtain: How Lumma Affiliates OperateRecorded Future·Nov 28, 00:00 UTC · Nov 28, 2025Malware55
⚡ Weekly Recap: Fortinet Exploit, Chrome 0-Day, BadIIS Malware, Record DDoS, SaaS Breach & MoreThe Hacker News·Nov 24, 12:32 UTC · Nov 24, 2025Malware in the wildCVE-2025-58034CVE-2025-64446CVE-2025-13223+12 CVEs60
Dissecting UAT-8099: New persistence mechanisms and regional focusCisco Talos·Jan 29, 11:00 UTC · Jan 29, 2026Malware55
ThreatsDay Bulletin: CarPlay Exploit, BYOVD Tactics, SQL C2 Attacks, iCloud Backdoor Demand & MoreThe Hacker News·Oct 3, 04:59 UTC · Oct 3, 2025MalwareCVE-2024-3400CVE-2017-792160
New Shameless Commodity Cryptocurrency Stealer (WeSteal) and Commodity RAT (WeControl)Palo Alto Unit 42·Jun 6, 12:43 UTC · Jun 6, 2024Malware55
Russia-Ukraine Cyberattacks (Updated): How to Protect Against Related Cyberthreats Including DDoS, HermeticWiper, Gamaredon, Website Defacement, Phishing and ScamsPalo Alto Unit 42·Jun 5, 23:29 UTC · Jun 5, 2024Malware55
Multiple DDoS botnets were observed targeting Zyxel devicesSecurity Affairs·Jul 22, 17:02 UTC · Jul 22, 2023Malware in the wildCVE-2023-2877160
Researchers observed a 125% increase in malware targeting Windows 7Help Net Security·Feb 19, 00:00 UTC · Feb 19, 2020Malware155
BlackTech espionage group exploited ASUS update process to deliver Plead BackdoorSecurity Affairs·May 16, 08:00 UTC · May 16, 2019Malware55
Threat Spotlight: "A String of Paerls", Part 2, Deep DiveCisco Talos·Jul 8, 14:00 UTC · Jul 8, 2014Malware155
⚡ Weekly Recap: Chrome 0-Day, Data Wipers, Misused Tools and ZeroThe Hacker News·Jul 25, 08:27 UTC · Jul 25, 2026Malware in the wildCVE-2025-20286CVE-2025-49113CVE-2025-5419+8 CVEs60
Defenders on high alert as backdoor attacks become more commonHelp Net Security·Apr 23, 13:39 UTC · Apr 23, 2026Malware55
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
⚡ Weekly Recap: Hyper-V Malware, Malicious AI Bots, RDP Exploits, WhatsApp Lockdown and MoreThe Hacker News·Nov 10, 12:51 UTC · Nov 10, 2025MalwareCVE-2025-21042160
⚡ Weekly Recap: WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & MoreThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Malware in the wildCVE-2025-55177CVE-2025-43300CVE-2025-907460
Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoaderThe Hacker News·Apr 18, 12:03 UTC · Apr 18, 2025MalwareCVE-2021-4044960
New version of MysterySnail RAT and lightweight MysteryMonoSnail backdoorKaspersky Securelist·Apr 17, 08:00 UTC · Apr 17, 2025MalwareCVE-2021-4044960
Old certificate, new signature: Open-source tools forge signature timestamps on Windows driversCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
DragonOK APT adopts new tactics, techniques and proceduresSecurity Affairs·Sep 2, 15:59 UTC · Sep 2, 2017Malware55
Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident responseHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2026Malware55
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
China and Russiaʼs Competition for Central AsiaRecorded Future·Jun 4, 00:00 UTC · Jun 4, 2026Malware55
CloudZ RAT potentially steals OTP messages using Pheno pluginCisco Talos·May 5, 10:00 UTC · May 5, 2026Malware55
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
Building a High-Impact Tier 1: The 3 Steps CISOs Must FollowThe Hacker News·Mar 3, 14:30 UTC · Mar 3, 2026Malware55
When security decisions come too late, and attackers know itHelp Net Security·Feb 12, 00:00 UTC · Feb 12, 2026Malware55
React2Shell Exploitation Delivers Crypto Miners and New Malware Across Multiple SectorsThe Hacker News·Dec 11, 04:19 UTC · Dec 11, 2025MalwareCVE-2025-5518260
⚡ Weekly Recap: USB Malware, React2Shell, WhatsApp Worms, AI IDE Bugs & MoreThe Hacker News·Dec 9, 04:05 UTC · Dec 9, 2025MalwareCVE-2025-55182CVE-2025-6389CVE-2025-66516+19 CVEs60
⚡ Weekly Recap: VPN 0-Day, Encryption Backdoor, AI Malware, macOS Flaw, ATM Hack & MoreThe Hacker News·Aug 5, 04:38 UTC · Aug 5, 2025Malware in the wildCVE-2025-40596CVE-2025-40597CVE-2025-40598+8 CVEs60
⚡ Weekly Recap: Chrome 0-Day, 7.3 Tbps DDoS, MFA Bypass Tricks, Banking Trojan and MoreThe Hacker News·Jun 30, 13:01 UTC · Jun 30, 2025MalwareCVE-2025-2783CVE-2025-34509CVE-2025-34510+17 CVEs60
Mass exploitation campaign hit 4,000+ ISP networks to deploy info stealers and crypto minersSecurity Affairs·Mar 4, 11:51 UTC · Mar 4, 2025Malware in the wild60