Chinese APT Lotus Panda Targets Governments With New Sagerunex Backdoor VariantsThe Hacker News·Apr 22, 03:57 UTC · Apr 22, 2025Malware42
Chinese Lotus Blossom APT targets multiple sectors with Sagerunex backdoorSecurity Affairs·Mar 6, 08:17 UTC · Mar 6, 2025Malware42
From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on UkraineThe Hacker News·Oct 9, 09:10 UTC · Oct 9, 2025MalwareCVE-2023-43770CVE-2024-37383CVE-2025-49113+2 CVEs60
New Hacking Campaign Targeting Ukrainian Government with IcedID MalwareThe Hacker News·Apr 18, 06:00 UTC · Apr 18, 2022MalwareCVE-2018-688247
Dark Tequila Banking malware targets Latin America since 2013Security Affairs·Aug 22, 06:52 UTC · Aug 22, 2018Malware30
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams UpdateThe Hacker News·Jul 27, 12:37 UTC · Jul 27, 2026Malware142
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark CyberattacksThe Hacker News·Jun 27, 12:06 UTC · Jun 27, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs60
Mystery hackers use novel SharkLoader dropper against governments, software devsHelp Net Security·Jun 26, 00:00 UTC · Jun 26, 2026Malware30
StrikeShark: a new campaign involving a custom SharkLoader and Cobalt Strike BeaconKaspersky Securelist·Jun 24, 14:23 UTC · Jun 24, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs47
China-Linked SprySOCKS Backdoor Expands to Windows with DriverThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026MalwareCVE-2023-2493247
⚡ Weekly Recap: Airline Hacks, Citrix 0-Day, Outlook Malware, Banking Trojans and moreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Malware in the wildCVE-2025-6543CVE-2025-5777CVE-2025-49825+23 CVEs60
APT28 Uses Signal Chat to Deploy BEARDSHELL Malware and COVENANT in UkraineThe Hacker News·Sep 17, 18:18 UTC · Sep 17, 2025MalwareCVE-2020-35730CVE-2021-44026CVE-2020-1264147
⚡ Weekly Recap: Nation-State Hacks, Spyware Alerts, Deepfake Malware, Supply Chain BackdoorsThe Hacker News·May 6, 05:03 UTC · May 6, 2025MalwareCVE-2025-3928CVE-2025-1976CVE-2025-46271+33 CVEs60
State-Sponsored Hackers Weaponize ClickFix Tactic in Targeted Malware CampaignsThe Hacker News·Apr 18, 04:14 UTC · Apr 18, 2025Malware42
Rhadamanthys information stealer introduces AISecurity Affairs·Oct 2, 13:42 UTC · Oct 2, 2024Malware30
Earth Lusca's New SprySOCKS Linux Backdoor Targets Government EntitiesThe Hacker News·Sep 20, 04:37 UTC · Sep 20, 2023MalwareCVE-2022-39952CVE-2022-40684CVE-2021-22205+3 CVEs47
Earth Lusca expands its arsenal with SprySOCKS Linux malwareSecurity Affairs·Sep 19, 07:52 UTC · Sep 19, 2023MalwareCVE-2022-40684CVE-2022-39952CVE-2021-22205+6 CVEs160
Lazarus Group Exploits Critical Zoho ManageEngine Flaw to Deploy Stealthy QuiteRAT MalwareThe Hacker News·Aug 25, 06:26 UTC · Aug 25, 2023MalwareCVE-2022-4796660
Lazarus Group's infrastructure reuse leads to discovery of new malwareCisco Talos·Aug 24, 12:04 UTC · Aug 24, 2023MalwareCVE-2022-4796660
New AlienFox toolkit harvests credentials for tens of cloud servicesSecurity Affairs·Mar 31, 20:37 UTC · Mar 31, 2023Malware30
AlienFox Malware Targets API Keys and Secrets from AWS, Google, and Microsoft Cloud ServicesThe Hacker News·Mar 30, 10:26 UTC · Mar 30, 2023Malware130
Dark Tequila Banking Malware Uncovered After 5 Years of ActivityThe Hacker News·Aug 21, 15:37 UTC · Aug 21, 2018Malware30