Writing a BugSleep C2 server and detecting its traffic with SnortCisco Talos·Oct 30, 10:00 UTC · Oct 30, 2024Malware130
Detecting evolving threats: NetSupport RAT campaignCisco Talos·Aug 1, 10:00 UTC · Aug 1, 2024Malware30
Some Snort discussion about Murofet, Kazy, or whatever we're calling it..Cisco Talos·Mar 7, 21:51 UTC · Mar 7, 2012Malware30
Gamaredon campaign abuses LNK files to distribute Remcos backdoorCisco Talos·Mar 28, 10:00 UTC · Mar 28, 2025Malware42
DarkGate switches up its tactics with new payload, email templatesCisco Talos·Jun 5, 12:00 UTC · Jun 5, 2024Malware30
Old certificate, new signature: Open-source tools forge signature timestamps on Windows driversCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
CloudZ RAT potentially steals OTP messages using Pheno pluginCisco Talos·May 5, 10:00 UTC · May 5, 2026Malware55
Tired of gaps in your security? These open-source tools can helpHelp Net Security·Jul 17, 00:00 UTC · Jul 17, 2025Malware30
Newly identified wiper malware “PathWiper” targets critical infrastructure in UkraineCisco Talos·Jun 5, 10:00 UTC · Jun 5, 2025Malware55
FIN7 Group Uses JavaScript and Stealer DLL Variant in New AttacksCisco Talos·Sep 27, 17:38 UTC · Sep 27, 2017Malware30
Analysis of TAG-140 Campaign and DRAT V2 Development Targeting Indian Government OrganizationsRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware42
Rhadamanthys Stealer Adds Innovative AI Feature in Version 0.7.0Recorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Malware55
Special Delivery: Recorded Future Hunting PackagesRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Malware30
From CastleLoader to CastleRAT: TAG-150 Advances Operations with MultiRecorded Future·Jun 22, 00:00 UTC · Jun 22, 2025Malware30
Unmasking the new XorDDoS controller and infrastructureCisco Talos·Apr 17, 10:00 UTC · Apr 17, 2025Malware30
Threat actors use copyright infringement phishing lure to deploy infostealersCisco Talos·Oct 31, 13:37 UTC · Oct 31, 2024Malware30
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
Unveiling SpiceRAT: SneakyChef's latest tool targeting EMEA and AsiaCisco Talos·Jun 21, 12:00 UTC · Jun 21, 2024Malware30
LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoaderCisco Talos·May 30, 12:01 UTC · May 30, 2024Malware42
Suspected CoralRaider continues to expand victimology using three information stealersCisco Talos·Apr 23, 12:42 UTC · Apr 23, 2024Malware30
OfflRouter virus causes Ukrainian users to upload confidential documents to VirusTotalCisco Talos·Apr 17, 12:54 UTC · Apr 17, 2024Malware30
CoralRaider targets victims’ data and social media accountsCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2024Malware30
New Zardoor backdoor used in long-term cyber espionage operation targeting an Islamic organizationCisco Talos·Feb 8, 14:10 UTC · Feb 8, 2024Malware42
Year in Malware 2023: Recapping the major cybersecurity stories of the past yearCisco Talos·Dec 19, 13:00 UTC · Dec 19, 2023Malware142
New InfectedSlurs Mirai-based botnet exploits two zeroSecurity Affairs·Dec 16, 19:22 UTC · Dec 16, 2023Malware in the wild60
New SugarGh0st RAT targets Uzbekistan government and South KoreaCisco Talos·Nov 30, 13:00 UTC · Nov 30, 2023Malware30
Cybercriminals target graphic designers with GPU minersCisco Talos·Sep 7, 12:00 UTC · Sep 7, 2023Malware42
SapphireStealer: Open-source information stealer enables credential and data theftCisco Talos·Aug 31, 12:00 UTC · Aug 31, 2023Malware142
Lazarus Group's infrastructure reuse leads to discovery of new malwareCisco Talos·Aug 24, 12:04 UTC · Aug 24, 2023MalwareCVE-2022-4796660
".Zip" top-level domains draw potential for information leaksCisco Talos·Jun 13, 12:03 UTC · Jun 13, 2023Malware30
Typhon Reborn V2: Updated stealer features enhanced antiCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2023Malware30
Emotet resumes spam operations, switches to OneNoteCisco Talos·Mar 22, 19:41 UTC · Mar 22, 2023Malware30
Researcher Spotlight: How David Liebenberg went from never having opened Terminal to hunting international APTsCisco Talos·Mar 13, 12:00 UTC · Mar 13, 2023Malware42