Friday Squid Blogging: Why Mexican Jumbo Squid Populations Have DeclinedSchneier on Security·Jan 29, 08:03 UTC · Jan 29, 2020Malware55
Apple iPhone Air and iPhone 17 Feature A19 Chips With SpywareThe Hacker News·Sep 11, 08:54 UTC · Sep 11, 2025Malware55
Intel and AMD trusted enclaves, a foundation for network security, fall to physical attacksArs Technica · Security·Sep 30, 20:25 UTC · Sep 30, 2025Malware42
Experts analyzed the PREDATOR spyware and its loader AlienSecurity Affairs·May 29, 12:57 UTC · May 29, 2023Malware55
Rust infostealer Fickle Stealer spreads through various methodsSecurity Affairs·Jun 20, 13:08 UTC · Jun 20, 2024Malware30
The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth BackdoorPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Malware42
Deep dive into hack against Iranian state TV yields wiper malware, other custom toolsCyberScoop·Feb 18, 13:40 UTC · Feb 18, 2022Malware in the wild60
GoTrim botnet actively brute forces WordPress and OpenCart sitesSecurity Affairs·Dec 14, 21:15 UTC · Dec 14, 2022Malware42
TA505 cybercrime group use SDBbot RAT in recent campaignsSecurity Affairs·Oct 20, 17:57 UTC · Oct 20, 2019Malware42
Russia-linked threat actors targets Ukraine with PathWiper wiperSecurity Affairs·Jun 6, 18:30 UTC · Jun 6, 2025Malware55
Emotet directly drops Cobalt Strike beacons without intermediate TrojansSecurity Affairs·Dec 8, 06:32 UTC · Dec 8, 2021Malware42
Widespread Email Scam Targets Github Developers with Dimnie TrojanThe Hacker News·Mar 30, 08:52 UTC · Mar 30, 2017Malware30
TA505 group updates tactics and expands the list of targetsSecurity Affairs·Aug 28, 08:39 UTC · Aug 28, 2019Malware42
Advanced cyber attack hits Saudi Arabia to disrupt government computersSecurity Affairs·Nov 24, 05:19 UTC · Nov 24, 2017Malware in the wild57
Antlion APT's backdoor allowed it to fly under the radar for monthsSecurity Affairs·Feb 3, 19:09 UTC · Feb 3, 2022MalwareCVE-2019-145847
North Korea-linked APT Gleaming Pisces deliver new PondRAT backdoor via malicious Python packagesSecurity Affairs·Sep 23, 12:50 UTC · Sep 23, 2024Malware42
OSX/Linker, a new piece of Mac malware that exploits Gatekeeper bypassSecurity Affairs·Jun 25, 14:18 UTC · Jun 25, 2019Malware30
Bypassing major EDRs using Pool Party process injection techniquesSecurity Affairs·Dec 8, 15:02 UTC · Dec 8, 2023Malware30
The Platinum APT group adds the Titanium backdoor to its arsenalSecurity Affairs·Nov 9, 16:16 UTC · Nov 9, 2019Malware42
TAC-040 group used previously undetected Ljl BackdoorSecurity Affairs·Aug 5, 08:52 UTC · Aug 5, 2022MalwareCVE-2022-26134CVE-2022-2296547
WhisperGate Malware Corrupts Computers in UkraineRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Malware42
RomCom RAT campaigns abuses popular brands like KeePass and SolarWinds NPMSecurity Affairs·Nov 4, 13:51 UTC · Nov 4, 2022Malware42
Linux Cryptocurrency miner leverages rootkit to avoid detectionSecurity Affairs·Nov 11, 10:04 UTC · Nov 11, 2018Malware30
DuneQuixote campaign targets Middle East with a complex backdoorSecurity Affairs·Apr 21, 16:38 UTC · Apr 21, 2024Malware42
Roboto, a new P2P botnet targets Linux Webmin serversSecurity Affairs·Nov 21, 10:53 UTC · Nov 21, 2019MalwareCVE-2019-1510747
JOKERSPY used to target a cryptocurrency exchange in JapanSecurity Affairs·Jun 27, 07:27 UTC · Jun 27, 2023Malware42
North Korean Andariel APT used a new malware named EarlyRatSecurity Affairs·Jun 30, 03:44 UTC · Jun 30, 2023Malware42
China replies Hong Kong protests with spyware, MITM and censorshipSecurity Affairs·Jul 30, 10:02 UTC · Jul 30, 2017Malware42
China-backed Hackers Hijack Software Updates to Implant "NSPX30" SpywareThe Hacker News·Jan 25, 13:45 UTC · Jan 25, 2024MalwareCVE-2019-1652CVE-2019-165347
We infiltrated an IRC botnet. Here’s what we foundSecurity Affairs·Nov 19, 15:31 UTC · Nov 19, 2020Malware42
ZuoRAT malware hijacks SOHO Routers to spy in the vitimsSecurity Affairs·Jun 29, 08:01 UTC · Jun 29, 2022Malware42
Shamoon The Wiper: Further Details (Part II)Kaspersky Securelist·Sep 11, 01:08 UTC · Sep 11, 2012Malware30
Chinese Iron Tiger APT is back, a close look at the Operation PZChaoSecurity Affairs·Feb 2, 22:18 UTC · Feb 2, 2018Malware42
Experts detailed a previously undetected VMware ESXi backdoorSecurity Affairs·Dec 13, 14:15 UTC · Dec 13, 2022MalwareCVE-2019-5544CVE-2020-399247
Over 600,000 SOHO routers were destroyed by Chalubo malware in 72 hoursSecurity Affairs·May 31, 13:34 UTC · May 31, 2024Malware42