New Ongoing Campaign Targets npm Ecosystem with Unique Execution ChainThe Hacker News·Jun 28, 05:23 UTC · Jun 28, 2023Threat actor57
Cyber Attacks Strike Ukraine's State Bodies in Espionage OperationThe Hacker News·May 26, 03:32 UTC · May 26, 2023Threat actor57
DownEx cyberespionage operation targets Central AsiaSecurity Affairs·May 10, 17:02 UTC · May 10, 2023Threat actor57
Blind Eagle Cyber Espionage Group Strikes Again: New Attack Chain UncoveredThe Hacker News·Apr 24, 04:37 UTC · Apr 24, 2023Threat actor57
New Cryptojacking Campaign Targeting Vulnerable Docker and Kubernetes InstancesThe Hacker News·Mar 16, 13:33 UTC · Mar 16, 2023Threat actor57
Chinese Hackers Using 42,000 Imposter Domains in Massive Phishing Attack CampaignThe Hacker News·Nov 18, 04:15 UTC · Nov 18, 2022Threat actor45
Malicious Package on PyPI Hides Behind Image Files, Spreads Via GitHubInfosecurity Magazine·Nov 9, 17:00 UTC · Nov 9, 2022Threat actor145
Threat Actor Deploys Raven Storm Tool to Perform DDoS AttacksInfosecurity Magazine·Aug 22, 15:00 UTC · Aug 22, 2022Threat actor45
New Hacking Campaign by Transparent Tribe Hackers Targeting Indian OfficialsThe Hacker News·Mar 30, 03:15 UTC · Mar 30, 2022Threat actor57
A Large-Scale Supply Chain Attack Distributed Over 800 Malicious NPM PackagesThe Hacker News·Mar 29, 12:14 UTC · Mar 29, 2022Threat actor57
Threat actors are abusing MSBuild to implant Cobalt Strike BeaconsSecurity Affairs·Dec 28, 15:56 UTC · Dec 28, 2021Threat actor45
APT annual review: What the world’s threat actors got up to in 2020Kaspersky Securelist·Dec 3, 11:00 UTC · Dec 3, 2020Threat actor57
UNC1945, a threat actor used Oracle Solaris ZeroSecurity Affairs·Nov 4, 00:32 UTC · Nov 4, 2020Threat actorCVE-2020-1487160
NeoML: Open source library for building, training, and deploying machine learning modelsHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2020Threat actor45
Friday Squid Blogging: Searching for Humboldt Squid with Electronic BaitSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Threat actor145
Cryptojacking campaign uses Shodan to scan for Docker hosts to hackSecurity Affairs·Jun 1, 12:29 UTC · Jun 1, 2019Threat actor145
Beapy Cryptojacking campaign leverages EternalBlue exploit to spreadSecurity Affairs·Apr 26, 19:36 UTC · Apr 26, 2019Threat actorCVE-2017-5638CVE-2017-12615CVE-2017-1027160
The TopHat Campaign: Attacks Within The Middle East Region Using Popular ThirdPalo Alto Unit 42·Nov 1, 11:01 UTC · Nov 1, 2018Threat actorCVE-2017-019960
Experts detailed the new Operation Wilted Tulip campaign of the CopyKittens APTSecurity Affairs·Oct 10, 12:51 UTC · Oct 10, 2017Threat actor57
Iranian hackers behind the Magic Hound campaign linked to ShamoonSecurity Affairs·Oct 10, 12:49 UTC · Oct 10, 2017Threat actor45
FreeMilk: A Highly Targeted Spear Phishing CampaignPalo Alto Unit 42·Oct 5, 12:00 UTC · Oct 5, 2017Threat actorCVE-2017-019960
Black Hat 2017 - GitPwnd tool could be used by attackers to communicate with compromised devices via Git repositoriesSecurity Affairs·Aug 4, 13:38 UTC · Aug 4, 2017Threat actor45
KopiLuwak: A New JavaScript Payload from TurlaKaspersky Securelist·Feb 2, 15:00 UTC · Feb 2, 2017Threat actor57