⚡ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and MoreThe Hacker News·Feb 9, 12:59 UTC · Feb 9, 2026MalwareCVE-2026-25049CVE-2026-0709CVE-2026-23795+23 CVEs160
Mobile Bootloaders From Top Manufacturers Found Vulnerable to Persistent ThreatsThe Hacker News·Sep 6, 08:11 UTC · Sep 6, 2017MalwareCVE-2014-979860
Duqu Malware Techniques Used by CybercriminalsSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Malware55
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosThe Hacker News·May 26, 04:39 UTC · May 26, 2026Malware in the wildCVE-2026-46333CVE-2026-41091CVE-2026-45498+31 CVEs60
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160
Massive China-state IoT botnet went undetected for four years—until nowArs Technica · Security·Sep 18, 19:58 UTC · Sep 18, 2024Malware in the wildCVE-2024-2188760
New KV-Botnet Targeting Cisco, DrayTek, and Fortinet Devices for Stealthy AttacksThe Hacker News·Feb 1, 08:56 UTC · Feb 1, 2024Malware55
BlackTech espionage group exploited ASUS update process to deliver Plead BackdoorSecurity Affairs·May 16, 08:00 UTC · May 16, 2019Malware55
Coinhive cryptojacker is currently the most prevalent malware onlineCyberScoop·Jan 16, 19:53 UTC · Jan 16, 2018Malware in the wild60
New VPNFilter malware targets at least 500K networking devices worldwideCisco Talos·May 23, 13:00 UTC · May 23, 2018Malware55
SkillSpector: NVIDIA's open-source security scanner for AI agent skillsHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2026Malware55
Newly Discovered PowMix Botnet Hits Czech Workers Using Randomized C2 TrafficThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Malware55
Hackers Deploy Linux Rootkits via Cisco SNMP Flaw in 'Zero Disco' AttacksThe Hacker News·Oct 17, 04:35 UTC · Oct 17, 2025MalwareCVE-2025-20352CVE-2017-388160
Muhstik Botnet Exploiting Apache RocketMQ Flaw to Expand DDoS AttacksThe Hacker News·Jun 8, 17:28 UTC · Jun 8, 2024MalwareCVE-2023-3324660
The Hottest Malware Hits of the SummerThe Hacker News·Sep 11, 17:03 UTC · Sep 11, 2019MalwareCVE-2018-845360
Flaw Affecting Millions of Cisco Devices Let Attackers Implant Persistent BackdoorThe Hacker News·May 15, 00:00 UTC · May 15, 2019MalwareCVE-2019-1649CVE-2019-186260
Brazil Hit by Banking Trojan Spread via WhatsApp Worm and RelayNFC NFC Relay FraudThe Hacker News·Dec 4, 04:30 UTC · Dec 4, 2025Malware55
EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesThe Hacker News·Jun 7, 15:47 UTC · Jun 7, 2026Malware155
New China-Aligned Hackers Hit State and Telecom SectorsInfosecurity Magazine·Oct 1, 11:00 UTC · Oct 1, 2025Malware55
Vault7 - Wikileaks published documentation for AfterMidnight and Assassin malwareSecurity Affairs·May 15, 14:25 UTC · May 15, 2017Malware55
Researchers And The FBI Work Together to Take Down the Russian VPNFilter Botnet Targeting Home RoutersSecurity Affairs·May 28, 19:08 UTC · May 28, 2018Malware55
GrayAlpha Unmasked: New FIN7-Linked Infrastructure, PowerNet Loader, and Fake Update AttacksRecorded Future·Jul 4, 00:00 UTC · Jul 4, 2024Malware55
Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without PromptsThe Hacker News·Jul 30, 10:33 UTC · Jul 30, 2026Malware55
13 Critical flaws and exploitable backdoors found in various AMD chipsSecurity Affairs·Mar 14, 08:03 UTC · Mar 14, 2018Malware in the wild60
Critical Ivanti Flaw Actively Exploited to Deploy TRAILBLAZE and BRUSHFIRE MalwareThe Hacker News·Apr 7, 06:39 UTC · Apr 7, 2025Malware in the wildCVE-2025-22457CVE-2024-38657CVE-2025-22467+2 CVEs60
Microsoft Warns of FoggyWeb Malware Targeting Active Directory FS ServersThe Hacker News·Sep 28, 06:15 UTC · Sep 28, 2021Malware55
Chinese Hackers Use ‘BRICKSTORM’ Backdoor to Breach US FirmsInfosecurity Magazine·Sep 25, 12:30 UTC · Sep 25, 2025Malware55
Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL SideloadingThe Hacker News·Jan 20, 13:46 UTC · Jan 20, 2026Malware55
Sophisticated APT group compromised routers to deliver Slingshot SpywareSecurity Affairs·Mar 10, 12:14 UTC · Mar 10, 2018MalwareCVE-2007-5633CVE-2010-1592CVE-2009-082460
European firm DSIRF behind the attacks with Subzero surveillance malwareSecurity Affairs·Jul 28, 11:04 UTC · Jul 28, 2022MalwareCVE-2022-22047CVE-2021-31199CVE-2021-31201+2 CVEs60
China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom AttacksThe Hacker News·Mar 6, 08:22 UTC · Mar 6, 2026Malware55
MixShell Malware Delivered via Contact Forms Targets U.S. Supply Chain ManufacturersThe Hacker News·Aug 28, 08:41 UTC · Aug 28, 2025Malware55
UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology SectorsThe Hacker News·Sep 25, 15:04 UTC · Sep 25, 2025MalwareCVE-2023-46805CVE-2024-2188760
Threat Spotlight: Rombertik - Gazing Past the Smoke, Mirrors, and Trap DoorsCisco Talos·May 4, 08:00 UTC · May 4, 2015Malware55
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
A New Bug in Microsoft Windows Could Let Hackers Easily Install a RootkitThe Hacker News·Sep 24, 04:54 UTC · Sep 24, 2021Malware55
Operation Sharpshooter targets critical infrastructure and global defenseSecurity Affairs·Dec 13, 15:01 UTC · Dec 13, 2018Malware55
APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO AlliesThe Hacker News·Apr 8, 13:50 UTC · Apr 8, 2026MalwareCVE-2026-21509CVE-2026-2151360