How threat actors are using AI and other modern tools to enhance their phishing attemptsCisco Talos·Apr 13, 04:48 UTC · Apr 13, 2023Threat actor45
Fake Cisco ‘Critical Update’ used in phishing campaign to steal WebEx credentialsSecurity Affairs·Apr 11, 11:37 UTC · Apr 11, 2020Threat actorCVE-2016-9223160
Upgraded Aggah malspam campaign delivers multiple RATsCisco Talos·Apr 29, 15:48 UTC · Apr 29, 2020Threat actor57
Masslogger campaigns exfiltrates user credentialsCisco Talos·Feb 17, 13:00 UTC · Feb 17, 2021Threat actor57
A year of Fajan evolution and Bloomberg themed campaignsCisco Talos·Apr 21, 11:59 UTC · Apr 21, 2021Threat actor45
New KONNI Campaign References North Korean Missile CapabilitiesCisco Talos·Jul 6, 07:58 UTC · Jul 6, 2017Threat actor145
Lotus Blossom espionage group targets multiple industries with different versions of Sagerunex and hacking toolsCisco Talos·Feb 27, 11:00 UTC · Feb 27, 2025Threat actor57
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
SneakyChef espionage group targets government agencies with SugarGh0st and more infection techniquesCisco Talos·Jun 21, 12:00 UTC · Jun 21, 2024Threat actor45
New details on TinyTurla’s post-compromise activity reveal full kill chainCisco Talos·Mar 21, 13:08 UTC · Mar 21, 2024Threat actor57
TinyTurla-NG in-depth tooling and command and control analysisCisco Talos·Feb 22, 13:00 UTC · Feb 22, 2024Threat actor157
Operation Blacksmith: Lazarus targets organizations worldwide using novel TelegramCisco Talos·Dec 11, 13:50 UTC · Dec 11, 2023Threat actorCVE-2021-4422860
Talos uncovers espionage campaigns targeting CIS countries, embassies and EU health care agencyCisco Talos·Mar 14, 11:00 UTC · Mar 14, 2023Threat actor60
New campaign uses government, union-themed lures to deliver Cobalt Strike beaconsCisco Talos·Sep 28, 12:12 UTC · Sep 28, 2022Threat actorCVE-2017-019960
Gamaredon APT targets Ukrainian government agencies in new campaignCisco Talos·Sep 15, 13:00 UTC · Sep 15, 2022Threat actor157
Transparent Tribe begins targeting education sector in latest campaignCisco Talos·Jul 13, 23:58 UTC · Jul 13, 2022Threat actor57
What’s with the shared VBA code between Transparent Tribe and other threat actors?Cisco Talos·Feb 9, 13:05 UTC · Feb 9, 2022Threat actor57
Malicious campaign uses a barrage of commodity RATs to target Afghanistan and IndiaCisco Talos·Oct 20, 00:00 UTC · Oct 20, 2021Threat actorCVE-2017-11882CVE-2012-11882260
Threat actors attempt to capitalize on coronavirus outbreakCisco Talos·Feb 13, 19:07 UTC · Feb 13, 2020Threat actor45
SWEED: Exposing years of Agent Tesla campaignsCisco Talos·Jul 15, 15:04 UTC · Jul 15, 2019Threat actorCVE-2017-8759CVE-2017-11882160
Tracking Tick Through Recent Campaigns Targeting East AsiaCisco Talos·Oct 18, 16:49 UTC · Oct 18, 2018Threat actor57
Threat actor believed to be spreading new MedusaLocker variant since 2022Cisco Talos·Oct 3, 10:00 UTC · Oct 3, 2024Threat actor57
Threat actors using MacroPack to deploy Brute Ratel, Havoc and PhantomCore payloadsCisco Talos·Sep 3, 13:14 UTC · Sep 3, 2024Threat actor45
Malicious campaigns target government, military and civilian entities in Ukraine, PolandCisco Talos·Jul 13, 10:45 UTC · Jul 13, 2023Threat actor145
Cybercriminals Exploit CSS to Evade Spam Filters and Track Email Users' ActionsThe Hacker News·Mar 17, 11:52 UTC · Mar 17, 2025Threat actor45
Threat Actors Exploit Government Websites for PhishingInfosecurity Magazine·Jan 29, 14:00 UTC · Jan 29, 2025Threat actorCVE-2024-2560860
Spam campaign targeting Brazil abuses Remote Monitoring and Management toolsCisco Talos·May 8, 10:00 UTC · May 8, 2025Threat actor57
2017 Cisco WebEx flaw increasingly leveraged by attackers, phishing campaigns riseHelp Net Security·Mar 25, 00:00 UTC · Mar 25, 2019Threat actor45
⚡ Weekly Recap: AI Automation Exploits, Telecom Espionage, Prompt Poaching & MoreThe Hacker News·Jan 12, 16:26 UTC · Jan 12, 2026Threat actorCVE-2026-21858CVE-2025-22224CVE-2025-22225+1 CVEs60