Weathering the storm: In the midst of a TyphoonCisco Talos·Feb 20, 13:00 UTC · Feb 20, 2025VulnerabilityCVE-2018-0171CVE-2023-20198CVE-2023-20273+1 CVEs47
ToddyCat’s New Hacking Tools Steal Outlook Emails and Microsoft 365 Access TokensThe Hacker News·Nov 25, 16:23 UTC · Nov 25, 2025VulnerabilityCVE-2024-11859147
Chinese Hackers Use HTML Smuggling to Infiltrate European Ministries with PlugXThe Hacker News·Jul 4, 06:06 UTC · Jul 4, 2023Vulnerability42
Attackers used a public ASP.NET machine to conduct ViewState code injection attacksSecurity Affairs·Feb 7, 09:31 UTC · Feb 7, 2025Vulnerability42
“Red October” Diplomatic Cyber Attacks InvestigationKaspersky Securelist·Jan 14, 17:00 UTC · Jan 14, 2013VulnerabilityCVE-2009-3129CVE-2010-3333CVE-2012-0158+1 CVEs47
Attackers compromise IIS servers by leveraging exposed ASP.NET machine keysHelp Net Security·Feb 7, 00:00 UTC · Feb 7, 2025Vulnerability42
Cloud Atlas: RedOctober APT is back in styleKaspersky Securelist·Dec 10, 10:03 UTC · Dec 10, 2014VulnerabilityCVE-2012-015847
eScan AV users targeted with malicious updatesHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2026Vulnerability42
The BlueNoroff cryptocurrency hunt is still onKaspersky Securelist·Jan 13, 09:00 UTC · Jan 13, 2022VulnerabilityCVE-2017-019947
Friday Squid Blogging: Squid from UtensilsSchneier on Security·Jan 27, 14:17 UTC · Jan 27, 2020Vulnerability42
Operation ShadowHammer: A High Profile Supply Chain AttackKaspersky Securelist·Apr 23, 10:00 UTC · Apr 23, 2019Vulnerability42
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
ThreatsDay Bulletin: AI Prompt RCE, Claude 0-Click, RenEngine Loader, Auto 0The Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026VulnerabilityCVE-2026-2084147