Another nation-state actor exploits Microsoft Follina to attack European and US entitiesSecurity Affairs·Jun 6, 12:13 UTC · Jun 6, 2022Threat actorCVE-2022-3019060
APT review: what the world’s threat actors got up to in 2019Kaspersky Securelist·Dec 4, 10:00 UTC · Dec 4, 2019Threat actor60
State-sponsored actors, better known as the friends you don’t wantCisco Talos·May 12, 10:00 UTC · May 12, 2026Threat actor60
APT29 group exploited WinRAR 0day in attacks against embassiesSecurity Affairs·Nov 20, 13:44 UTC · Nov 20, 2023Threat actorCVE-2023-3883160
Threat actors continue to exploit Log4Shell in VMware Horizon SystemsSecurity Affairs·Jun 24, 15:08 UTC · Jun 24, 2022Threat actorCVE-2021-44228CVE-2022-2295460
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesThe Hacker News·May 27, 09:52 UTC · May 27, 2026Threat actor60
Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentialsSecurity Affairs·Dec 22, 10:44 UTC · Dec 22, 2025Threat actorCVE-2021-4044460
Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan TargetsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2022-1040CVE-2022-3019060
EncryptHub abuses Brave Support in new campaign exploiting MSC EvilTwin flawSecurity Affairs·Aug 16, 08:38 UTC · Aug 16, 2025Threat actorCVE-2025-2663360
Discord: A Playground for Nation-State Hackers Targeting Critical InfrastructureThe Hacker News·Oct 17, 14:48 UTC · Oct 17, 2023Threat actor60
APT28 Targets Ukrainian Government Entities with Fake "Windows Update" EmailsThe Hacker News·May 2, 11:27 UTC · May 2, 2023Threat actorCVE-2023-2339760
APT37 combines cloud storage and USB implants to infiltrate airSecurity Affairs·Mar 2, 12:38 UTC · Mar 2, 2026Threat actor60
A new campaign by the ForumTroll APT groupKaspersky Securelist·Dec 17, 10:00 UTC · Dec 17, 2025Threat actorCVE-2025-278360
⚡ Weekly Recap: Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & MoreThe Hacker News·Nov 3, 17:59 UTC · Nov 3, 2025Threat actorCVE-2025-61932CVE-2025-55315CVE-2025-10680+18 CVEs160
Sophisticated Phishing Campaign Targets Ukraine’s Largest BankInfosecurity Magazine·Feb 5, 16:30 UTC · Feb 5, 2025Threat actor60
State-sponsored APTs are leveraging WinRAR bugHelp Net Security·Oct 18, 00:00 UTC · Oct 18, 2023Threat actorCVE-2023-38831CVE-2023-4047760
Earth Estries' Espionage Campaign Targets Governments and Tech Titans Across ContinentsThe Hacker News·Sep 1, 04:22 UTC · Sep 1, 2023Threat actor60
Key factors for effective security automationHelp Net Security·Jul 27, 00:00 UTC · Jul 27, 2023Threat actor60
Ten most mysterious APT campaigns that remain unattributedKaspersky Securelist·Oct 7, 10:00 UTC · Oct 7, 2022Threat actorCVE-2021-21224CVE-2021-31955CVE-2021-31956160
State-Sponsored Hackers Likely Exploited MS Exchange 0The Hacker News·Oct 6, 12:45 UTC · Oct 6, 2022Threat actor in the wildCVE-2022-41040CVE-2022-4108260
North Korea-linked Lazarus APT uses Log4J to target VMware serversSecurity Affairs·May 23, 18:20 UTC · May 23, 2022Threat actorCVE-2021-4422860
Threat Actor Exploits Flaws and Uses Elastic Cloud SIEM to Manage StolInfosecurity Magazine·Mar 9, 15:45 UTC · Mar 9, 2026Threat actor60
Russian Cyber Threat Actor Uses GenAI to Compromise Fortinet FirewallsInfosecurity Magazine·Feb 23, 12:30 UTC · Feb 23, 2026Threat actor in the wildCVE-2019-7192CVE-2023-27532CVE-2024-40711160
Cyber-espionage campaign mirroring Sandworm TTPs hit Russian and Belarusian militaryHelp Net Security·Nov 3, 00:00 UTC · Nov 3, 2025Threat actor60
Billbug Espionage Group Deploys New Tools in Southeast AsiaInfosecurity Magazine·Apr 22, 16:00 UTC · Apr 22, 2025Threat actor60
Nation-State Attackers Exploiting Ivanti CSA Flaws for Network InfiltrationThe Hacker News·Jan 23, 05:18 UTC · Jan 23, 2025Threat actor in the wildCVE-2024-8190CVE-2024-8963CVE-2024-9380+1 CVEs60
China-linked APT group MirrorFace targets JapanSecurity Affairs·Jan 10, 08:24 UTC · Jan 10, 2025Threat actorCVE-2023-28461CVE-2023-27997CVE-2023-351960
Multiple threat actors exploit PHP flaw CVE-2024Security Affairs·Jul 11, 14:31 UTC · Jul 11, 2024Threat actor in the wildCVE-2024-4577CVE-2012-182360
MITRE December 2023 attack: threat actors created rogue VMs to evade detectionSecurity Affairs·May 25, 09:51 UTC · May 25, 2024Threat actor60
Russia’s APT29 Targets Embassies With Ngrok and WinRAR ExploitInfosecurity Magazine·Nov 20, 10:00 UTC · Nov 20, 2023Threat actorCVE-2023-388360
Israeli Entities Under Attack By MuddyWater’s Advanced TacticsInfosecurity Magazine·Nov 2, 17:00 UTC · Nov 2, 2023Threat actor60
North Korea-linked APT groups actively exploit JetBrains TeamCity flawSecurity Affairs·Oct 19, 10:17 UTC · Oct 19, 2023Threat actor in the wildCVE-2023-4279360
Multiple APT groups exploited WinRAR flaw CVE-2023Security Affairs·Oct 19, 07:14 UTC · Oct 19, 2023Threat actorCVE-2023-3883160
Google TAG Detects State-Backed Threat Actors Exploiting WinRAR FlawThe Hacker News·Oct 19, 06:38 UTC · Oct 19, 2023Threat actor in the wildCVE-2023-3883160
Ukrainian Military Targeted in Phishing Campaign Leveraging Drone ManualsThe Hacker News·Sep 25, 13:05 UTC · Sep 25, 2023Threat actor60
Researchers Uncover Years-Long Cyber Espionage on Foreign Embassies in BelarusThe Hacker News·Aug 12, 05:47 UTC · Aug 12, 2023Threat actor60
Multi-modal data protection with AI’s helpHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2023Threat actor160
Ongoing STARK#MULE Attack Campaign DiscoveredInfosecurity Magazine·Jul 31, 16:30 UTC · Jul 31, 2023Threat actor160
YoroTrooper APT group targets CIS countries and embassiesSecurity Affairs·Mar 15, 20:44 UTC · Mar 15, 2023Threat actor60