Russian SVR-Linked APT29 Targets JetBrains TeamCity Servers in Ongoing AttacksThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2023Threat actor in the wildCVE-2023-4279360
Russian APT28 Exploits Outlook Bug to Access ExchangeInfosecurity Magazine·Dec 5, 10:40 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-4044460
China-linked APT group MirrorFace targets JapanSecurity Affairs·Jan 10, 08:24 UTC · Jan 10, 2025Threat actorCVE-2023-28461CVE-2023-27997CVE-2023-351960
Lazarus Hackers Exploited Windows Kernel Flaw as ZeroThe Hacker News·Feb 29, 14:41 UTC · Feb 29, 2024Threat actor in the wildCVE-2024-2133860
Lazarus APT exploited 0-day in Win driver to gain kernel privilegesSecurity Affairs·Feb 29, 08:11 UTC · Feb 29, 2024Threat actorCVE-2024-2133860
North Korea-linked APT groups actively exploit JetBrains TeamCity flawSecurity Affairs·Oct 19, 10:17 UTC · Oct 19, 2023Threat actor in the wildCVE-2023-4279360
Phemedrone campaign exploits Windows smartScreen bypassSecurity Affairs·Jan 15, 14:25 UTC · Jan 15, 2024Threat actorCVE-2023-3602560
Operation Morpheus took down 593 Cobalt Strike servers used by threat actorsSecurity Affairs·Jul 3, 18:24 UTC · Jul 3, 2024Threat actor160
Week in review: Confidential computing, data protection predictions, Sandworm hackers chargedHelp Net Security·Oct 25, 00:00 UTC · Oct 25, 2020Threat actor60
As Europe prepares to vote, Microsoft warns of Fancy Bear attacks on democratic think tanksCyberScoop·Feb 20, 14:50 UTC · Feb 20, 2019Threat actor in the wild60
OpenAI: Threat actors use us to be efficient, not make new toolsCyberScoop·Oct 7, 19:56 UTC · Oct 7, 2025Threat actor60
Nation-state groups hit hundreds of organizations with Microsoft Windows zeroCyberScoop·Mar 20, 14:07 UTC · Mar 20, 2025Threat actor in the wild60
China-based hackers target dozens of Taiwanese organizations in espionage operation, Microsoft warnsThe Record·Aug 24, 19:33 UTC · Aug 24, 2023Threat actor60
NATO allies’ new cyber pledges to remain classified — but here’s what we knowThe Record·Jul 12, 15:15 UTC · Jul 12, 2023Threat actor60
Commvault clients should beware of campaign targeting cloud applications, CISA saysThe Record·May 23, 19:06 UTC · May 23, 2025Threat actorCVE-2025-392860
Oort raises $15 million to defend enterprises against identity-based cyberattacksHelp Net Security·Oct 7, 00:00 UTC · Oct 7, 2022Threat actor60
Insiders worry CISA is too distracted from critical cyber missionCyberScoop·Dec 23, 00:45 UTC · Dec 23, 2022Threat actor160
Right country, wrong group? Researchers say it wasn’t APT10 that hacked Norwegian software firmCyberScoop·Feb 12, 21:26 UTC · Feb 12, 2019Threat actor in the wild60
Nation-state hacker group targeting Taiwan, US, Vietnam and Pacific IslandsThe Record·Oct 10, 20:14 UTC · Oct 10, 2023Threat actorCVE-2019-080360
Microsoft builds deepfakes detection tool to combat election disinformationHelp Net Security·Sep 2, 00:00 UTC · Sep 2, 2020Threat actor160
Chinese State-Sponsored Hacker Charged Over COVIDInfosecurity Magazine·Jul 9, 12:00 UTC · Jul 9, 2025Threat actor60
Microsoft details how SolarWinds hackers hid their espionageCyberScoop·Jan 20, 21:43 UTC · Jan 20, 2021Threat actor in the wild60
Microsoft disrupted APT28 attacks on Ukraine through a court orderSecurity Affairs·Apr 8, 09:44 UTC · Apr 8, 2022Threat actor60
Iranian hackers impersonate journalists in social engineering campaignCyberScoop·May 2, 03:00 UTC · May 2, 2024Threat actor60
Multiple threat actors exploited Progress Telerik bug to breach U.S. federal agencySecurity Affairs·Mar 16, 10:58 UTC · Mar 16, 2023Threat actorCVE-2019-1893560
Fancy Bear continues to target sporting and antiSecurity Affairs·Oct 29, 06:57 UTC · Oct 29, 2019Threat actor60
Cybercriminals and nation-state groups are exploiting a sixCyberScoop·Jan 27, 23:53 UTC · Jan 27, 2026Threat actor in the wildCVE-2025-8088CVE-2023-38831160
The Congressional remedy for Salt Typhoon? More information sharing with industryCyberScoop·Dec 2, 18:57 UTC · Dec 2, 2025Threat actor in the wild60
When Fancy Bear isn’t so Fancy: APT group’s ‘crude’ methods continue to workCyberScoop·Dec 18, 19:21 UTC · Dec 18, 2020Threat actor in the wild60
Sandworm probably wasn’t behind Danish critical infrastructure cyberattack, report saysCyberScoop·Jan 11, 22:44 UTC · Jan 11, 2024Threat actor in the wild60
NSA cyber director discusses US response, approach to apparent espionage operationCyberScoop·Jun 16, 17:19 UTC · Jun 16, 2021Threat actor in the wild60
Pentagon Cyber Policy Cites Learnings from Ukraine WarInfosecurity Magazine·May 31, 10:30 UTC · May 31, 2023Threat actor60
US warns of Russian state-sponsored attacks on critical infrastructureThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Threat actorCVE-2018-13379CVE-2019-1653CVE-2019-2725+10 CVEs60
Researchers say credential-stealing campaign used AI to build evasion ‘at every stage’CyberScoop·Mar 31, 14:47 UTC · Mar 31, 2026Threat actor in the wild60
A cybersecurity tip sheet for U.S. campaign officials is gaining traction, usage in fieldCyberScoop·Feb 1, 15:52 UTC · Feb 1, 2018Threat actor in the wild60
Attackers finding new ways to exploit and bypass Office 365 defensesHelp Net Security·Oct 26, 00:00 UTC · Oct 26, 2020Threat actor160
CI Security appoints Steve Sedlock as CRO and Kristoffer Turner as VP of Security OperationsHelp Net Security·Jan 19, 00:00 UTC · Jan 19, 2021Threat actor60
Congress calls on Anthropic CEO to testify on Chinese Claude espionage campaignCyberScoop·Nov 26, 19:31 UTC · Nov 26, 2025Threat actor in the wild60