Recent DarkGate campaign exploited Microsoft Windows zeroSecurity Affairs·Mar 14, 20:57 UTC · Mar 14, 2024Threat actor in the wildCVE-2024-2141260
Nation-state groups hit hundreds of organizations with Microsoft Windows zeroCyberScoop·Mar 20, 14:07 UTC · Mar 20, 2025Threat actor in the wild60
The controversial case of the threat actor EncryptHubSecurity Affairs·Apr 7, 13:14 UTC · Apr 7, 2025Threat actorCVE-2025-24061CVE-2025-24071CVE-2025-26633+1 CVEs60
Abusing Windows RDP servers to amplify DDoS attacksSecurity Affairs·Jan 22, 11:20 UTC · Jan 22, 2021Threat actor60
‘Tick’ espionage group is likely trying to hop air gaps, researchers sayCyberScoop·Jun 26, 00:16 UTC · Jun 26, 2018Threat actor in the wild160
A cascade of compromise: unveiling Lazarus' new campaignKaspersky Securelist·Oct 27, 05:41 UTC · Oct 27, 2023Threat actor160
SandWorm hacking team exploited 0Security Affairs·Mar 22, 22:02 UTC · Mar 22, 2019Threat actorCVE-2014-4114CVE-2013-3906160
QR codes are relevant again for everyone from diners to threat actorsCisco Talos·Jul 13, 18:00 UTC · Jul 13, 2023Threat actor in the wild60
Phemedrone campaign exploits Windows smartScreen bypassSecurity Affairs·Jan 15, 14:25 UTC · Jan 15, 2024Threat actorCVE-2023-3602560
SOC files: an APT41 attack on government IT services in AfricaKaspersky Securelist·Jul 21, 08:00 UTC · Jul 21, 2025Threat actor60
Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accountsSecurity Affairs·Dec 5, 14:19 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-40444+4 CVEs60
'Chafer' group advances espionage tactics by hacking Windows machines in Middle EastCyberScoop·Feb 1, 14:20 UTC · Feb 1, 2019Threat actor in the wild160
Threat actors exploited Windows 0-day for more than a year before Microsoft fixed itArs Technica · Security·Jul 10, 21:44 UTC · Jul 10, 2024Threat actor160
LapDogs: China-nexus hackers Hijack 1,000+ SOHO devices for espionageSecurity Affairs·Jun 28, 13:29 UTC · Jun 28, 2025Threat actorCVE-2015-1548CVE-2017-1766360
The Epic Turla OperationKaspersky Securelist·Aug 7, 13:55 UTC · Aug 7, 2014Threat actorCVE-2013-5065CVE-2013-3346CVE-2012-172360
NATO and the EU formally condemned APT28 cyber espionageSecurity Affairs·May 12, 16:39 UTC · May 12, 2024Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
A new campaign by the ForumTroll APT groupKaspersky Securelist·Dec 17, 10:00 UTC · Dec 17, 2025Threat actorCVE-2025-278360
Criminal campaign uses leaked NSA tools to set up cryptomining scheme, Trend Micro saysCyberScoop·Jun 14, 21:20 UTC · Jun 14, 2019Threat actor60
Nation-state APTs ramp up attacks on Ukraine and the EUHelp Net Security·May 21, 00:00 UTC · May 21, 2025Threat actorCVE-2024-11182CVE-2024-9680CVE-2024-4903960
Russian APT Groups Intensify Attacks in Europe with ZeroInfosecurity Magazine·May 20, 15:15 UTC · May 20, 2025Threat actorCVE-2024-11182CVE-2024-9680CVE-2024-49039160
CrowdStrike Outage Serves as Dress Rehearsal for Chinese CyberInfosecurity Magazine·Aug 7, 20:10 UTC · Aug 7, 2024Threat actor160
Microsoft Outlook Flaw Exploited by Russia's APT28 to Hack Czech, German EntitiesThe Hacker News·May 9, 05:20 UTC · May 9, 2024Threat actorCVE-2023-23397CVE-2022-3802860
APT28 Hacker Group Targeting Europe, Americas, Asia in Widespread Phishing SchemeThe Hacker News·Mar 19, 13:33 UTC · Mar 19, 2024Threat actorCVE-2023-2339760
Russia's APT8 exploited Outlook 0day to target EU NATO membersSecurity Affairs·Dec 8, 00:07 UTC · Dec 8, 2023Threat actorCVE-2023-23397CVE-2022-30190CVE-2020-12641+2 CVEs60
Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploitedHelp Net Security·Jun 28, 00:00 UTC · Jun 28, 2026Threat actor in the wildCVE-2026-2023060
Operation Morpheus took down 593 Cobalt Strike servers used by threat actorsSecurity Affairs·Jul 3, 18:24 UTC · Jul 3, 2024Threat actor160
Russian APT28 Exploits Outlook Bug to Access ExchangeInfosecurity Magazine·Dec 5, 10:40 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-4044460
Russia-linked APT28 compromised Ubiquiti EdgeRouters to facilitate cyber operationsSecurity Affairs·Feb 28, 11:43 UTC · Feb 28, 2024Threat actorCVE-2021-36260CVE-2022-46169CVE-2021-35394+1 CVEs160
Another nation-state actor exploits Microsoft Follina to attack European and US entitiesSecurity Affairs·Jun 6, 12:13 UTC · Jun 6, 2022Threat actorCVE-2022-3019060
Lazarus Hackers Exploited Windows Kernel Flaw as ZeroThe Hacker News·Feb 29, 14:41 UTC · Feb 29, 2024Threat actor in the wildCVE-2024-2133860
MHTML Exploited By APT Group Void BansheeInfosecurity Magazine·Jul 16, 16:30 UTC · Jul 16, 2024Threat actor in the wildCVE-2024-3811260
Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentialsSecurity Affairs·Dec 22, 10:44 UTC · Dec 22, 2025Threat actorCVE-2021-4044460
Microsoft Uncovers Sandworm Subgroup's Global Cyber Attacks Spanning 15+ CountriesThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025Threat actorCVE-2024-1709CVE-2023-48788CVE-2021-34473+4 CVEs160
OpenAI: Threat actors use us to be efficient, not make new toolsCyberScoop·Oct 7, 19:56 UTC · Oct 7, 2025Threat actor60
Phishing campaign across Mideast, North Africa is attributed to Iranian groupThe Record·Oct 23, 13:10 UTC · Oct 23, 2025Threat actor160
Multiple threat actors exploited Progress Telerik bug to breach U.S. federal agencySecurity Affairs·Mar 16, 10:58 UTC · Mar 16, 2023Threat actorCVE-2019-1893560
North Korea-linked APT37 exploited IE zeroSecurity Affairs·Oct 19, 14:07 UTC · Oct 19, 2024Threat actor in the wildCVE-2024-38178CVE-2022-4112860