Hackers Use Leaked Shellter Tool License to Spread Lumma Stealer and SectopRAT MalwareThe Hacker News·Jul 10, 07:51 UTC · Jul 10, 2025Malware42
From CastleLoader to CastleRAT: TAG-150 Advances Operations with MultiRecorded Future·Jun 22, 00:00 UTC · Jun 22, 2025Malware30
GrayCharlie Hijacks Law Firm Sites in Suspected SupplyRecorded Future·Aug 29, 00:00 UTC · Aug 29, 2025Malware42
Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service InfrastructureThe Hacker News·Dec 11, 04:16 UTC · Dec 11, 2025Malware42
ClickFix Helps Infostealers Use MHSTA for Defense EvasionInfosecurity Magazine·Jun 18, 13:00 UTC · Jun 18, 2025Malware42
Node.js Malware Campaign Targets Crypto Users with Fake Binance and TradingView InstallersThe Hacker News·Apr 17, 08:57 UTC · Apr 17, 2025Malware30
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresThe Hacker News·Jun 17, 08:52 UTC · Jun 17, 2026Malware42
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & MoreThe Hacker News·Feb 26, 11:25 UTC · Feb 26, 2026MalwareCVE-2026-22769CVE-2026-25926CVE-2026-26119+32 CVEs60
Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA PagesThe Hacker News·Jan 27, 14:14 UTC · Jan 27, 2026Malware42
CastleLoader Malware Infects 469 Devices Using Fake GitHub Repos and ClickFix PhishingThe Hacker News·Oct 14, 05:07 UTC · Oct 14, 2025Malware42
GrayBravo’s CastleLoader Activity Clusters Target Multiple IndustriesRecorded Future·Oct 9, 00:00 UTC · Oct 9, 2025Malware30
TAG-150 Develops CastleRAT in Python and C, Expanding CastleLoader Malware OperationsThe Hacker News·Sep 6, 11:36 UTC · Sep 6, 2025Malware130
New Malware Campaign Uses Cloudflare Tunnels to Deliver RATs via Phishing ChainsThe Hacker News·Jun 19, 16:44 UTC · Jun 19, 2025Malware30
Crazy Evil Gang Targets Crypto with StealC, AMOS, and Angel Drainer MalwareThe Hacker News·Feb 6, 07:14 UTC · Feb 6, 2025Malware42
New Stealthy BabbleLoader Malware Spotted Delivering WhiteSnake and Meduza StealersThe Hacker News·Nov 18, 16:48 UTC · Nov 18, 2024Malware42
Russian RomCom Attacks Target Ukrainian Government with New SingleCamper RAT VariantThe Hacker News·Oct 18, 05:13 UTC · Oct 18, 2024Malware42
PEAKLIGHT Downloader Deployed in Attacks Targeting Windows with Malicious Movie DownloadsThe Hacker News·Sep 26, 03:54 UTC · Sep 26, 2024Malware30
Cybercriminals Exploit Popular Software Searches to Spread FakeBat MalwareThe Hacker News·Aug 20, 03:55 UTC · Aug 20, 2024Malware30
FakeBat Loader Malware Spreads Widely Through DriveThe Hacker News·Jul 8, 14:56 UTC · Jul 8, 2024Malware30
TA547 Phishing Attack Hits German Firms with Rhadamanthys StealerThe Hacker News·Apr 11, 11:32 UTC · Apr 11, 2024Malware42
Microsoft Disables MSIX App Installer Protocol Widely Used in Malware AttacksThe Hacker News·Feb 14, 03:14 UTC · Feb 14, 2024Malware142
Hackers Using MSIX App Packages to Infect Windows PCs with GHOSTPULSE MalwareThe Hacker News·Oct 30, 06:58 UTC · Oct 30, 2023Malware30
Google shuts down malicious ad posing as Brave browser but delivering malwareThe Record·Dec 14, 00:00 UTC · Dec 14, 2022Malware30