APT10: Tracking down LODEINFO 2022, part IIKaspersky Securelist·Oct 31, 07:27 UTC · Oct 31, 2022Threat actor57
Mustang Panda deploys ToneShell via signed kernelSecurity Affairs·Dec 30, 15:22 UTC · Dec 30, 2025Threat actor57
ProjectSauron: top level cyber-espionage platform covertly extracts encrypted government commsKaspersky Securelist·Aug 8, 14:03 UTC · Aug 8, 2016Threat actor57
RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global ScaleRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actorCVE-2022-24682CVE-2022-27924CVE-2022-27925+2 CVEs60
Old dog, new tricks - Analysing new RTF-based campaign distributing Agent Tesla, Loki with PyREboxCisco Talos·Oct 15, 16:00 UTC · Oct 15, 2018Threat actorCVE-2017-0199CVE-2017-1188260
Malicious campaign uses a barrage of commodity RATs to target Afghanistan and IndiaCisco Talos·Oct 20, 00:00 UTC · Oct 20, 2021Threat actorCVE-2017-11882CVE-2012-11882260