New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel ImplantsCisco Talos·Sep 19, 12:00 UTC · Sep 19, 2023Malware55
2016 Updates to Shifu Banking TrojanPalo Alto Unit 42·Jan 6, 20:00 UTC · Jan 6, 2017MalwareCVE-2016-0167CVE-2015-0003160
This New Fileless Malware Hides Shellcode in Windows Event LogsThe Hacker News·May 9, 02:51 UTC · May 9, 2022Malware155
T9000: Advanced Modular Backdoor Uses Complex AntiPalo Alto Unit 42·Nov 1, 10:04 UTC · Nov 1, 2018MalwareCVE-2012-1856CVE-2015-164160
Kaspersky malware report for Q3 2023Kaspersky Securelist·Dec 1, 16:01 UTC · Dec 1, 2023MalwareCVE-2023-23397CVE-2023-2932460
Deadglyph: New Advanced Backdoor with Distinctive Malware TacticsThe Hacker News·Sep 23, 12:03 UTC · Sep 23, 2023MalwareCVE-2018-8611CVE-2019-079760
Manjusaka: A Chinese sibling of Sliver and Cobalt StrikeCisco Talos·Aug 2, 12:00 UTC · Aug 2, 2022Malware55
UAT-9244 targets South American telecommunication providers with three new malware implantsCisco Talos·Mar 5, 11:00 UTC · Mar 5, 2026Malware55
4-year campaign backdoored iPhones using possibly the most advanced exploit everArs Technica · Security·Dec 27, 17:03 UTC · Dec 27, 2023MalwareCVE-2023-32434CVE-2023-32435CVE-2023-38606+1 CVEs160
Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT SystemsThe Hacker News·Apr 24, 09:29 UTC · Apr 24, 2026Malware55
Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and MalwareThe Hacker News·Jul 29, 09:05 UTC · Jul 29, 2025MalwareCVE-2023-38950CVE-2023-38951CVE-2023-3895260
⚡ Weekly Recap: Chrome 0-Day, Ivanti Exploits, MacOS Stealers, Crypto Heists and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2025-32462CVE-2025-32463CVE-2025-20309+23 CVEs60
Industrial companies in Europe targeted with GuLoaderHelp Net Security·Nov 7, 00:00 UTC · Nov 7, 2024Malware55
North Korean Hackers Deploy FudModule Rootkit via Chrome ZeroThe Hacker News·Oct 23, 04:44 UTC · Oct 23, 2024Malware in the wildCVE-2024-7971CVE-2024-4947CVE-2024-5274+3 CVEs60
ShroudedSnooper's HTTPSnoop Backdoor Targets Middle East Telecom CompaniesThe Hacker News·Sep 20, 04:36 UTC · Sep 20, 2023Malware155
SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware ChainsThe Hacker News·Mar 3, 06:53 UTC · Mar 3, 2026Malware55
JackFix Uses Fake Windows Update Pop-Ups on Adult Sites to Deliver Multiple StealersThe Hacker News·Dec 2, 05:40 UTC · Dec 2, 2025Malware55
Lazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePEThe Hacker News·Sep 3, 03:44 UTC · Sep 3, 2025Malware55
Analyzing evolution of the PipeMagic malwareSecurity Affairs·Aug 19, 08:02 UTC · Aug 19, 2025Malware in the wildCVE-2025-29824CVE-2017-014460
New APT32 Malware Campaign Targets Cambodian GovernmentRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Malware55
RomCom hackers chained Firefox and Windows zero-days to deliver backdoorHelp Net Security·Nov 26, 00:00 UTC · Nov 26, 2024MalwareCVE-2024-9680CVE-2024-49039CVE-2023-3688460
North Korea's Lazarus Group Deploys New Kaolin RAT via Fake Job LuresThe Hacker News·Apr 26, 05:06 UTC · Apr 26, 2024MalwareCVE-2024-21338CVE-2023-4279360
Redfly group infiltrated an Asian national grid as long as six monthsSecurity Affairs·Sep 13, 11:51 UTC · Sep 13, 2023Malware55
Which malware delivery techniques are currently favored by attackers?Help Net Security·Aug 11, 00:00 UTC · Aug 11, 2022MalwareCVE-2022-3019060
Candiru Spyware Caught Exploiting Google Chrome ZeroThe Hacker News·Aug 3, 08:33 UTC · Aug 3, 2022Malware in the wildCVE-2022-229460
Monthly Malware Statistics, March 2011Kaspersky Securelist·Apr 5, 12:57 UTC · Apr 5, 2011MalwareCVE-2010-0840CVE-2011-060960
Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without PromptsThe Hacker News·Jul 30, 10:33 UTC · Jul 30, 2026Malware55
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksThe Hacker News·Jul 23, 12:20 UTC · Jul 23, 2026Malware in the wildCVE-2018-11511CVE-2021-24139CVE-2021-31755+1 CVEs60
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareThe Hacker News·Jul 8, 09:04 UTC · Jul 8, 2026MalwareCVE-2020-22653CVE-2020-22658CVE-2023-25717+1 CVEs60
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark CyberattacksThe Hacker News·Jun 27, 12:06 UTC · Jun 27, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs60
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto AttacksThe Hacker News·Jun 2, 08:55 UTC · Jun 2, 2026Malware55
⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreThe Hacker News·May 11, 12:36 UTC · May 11, 2026Malware in the wildCVE-2026-6973CVE-2026-030060
China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across RegionsThe Hacker News·May 5, 16:00 UTC · May 5, 2026Malware55
New Cisco firewall malware can only be killed by pulling the plugHelp Net Security·Apr 24, 00:00 UTC · Apr 24, 2026MalwareCVE-2025-20333CVE-2025-2036260
China-Linked groups target Southeast Asian government with advanced malware in 2025Security Affairs·Mar 30, 18:05 UTC · Mar 30, 2026Malware55
⚡ Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & MoreThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2026Malware in the wildCVE-2026-3909CVE-2026-3910CVE-2026-3913+40 CVEs260
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & MoreThe Hacker News·Feb 26, 11:25 UTC · Feb 26, 2026MalwareCVE-2026-22769CVE-2026-25926CVE-2026-26119+32 CVEs60
Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL SideloadingThe Hacker News·Jan 20, 13:46 UTC · Jan 20, 2026Malware55