GoPix banking Trojan targeting Brazilian financial institutionsKaspersky Securelist·Mar 16, 09:36 UTC · Mar 16, 2026Malware42
New SolarMarker (Jupyter) Campaign Demonstrates the Malware’s Changing Attack PatternsPalo Alto Unit 42·Jun 5, 23:24 UTC · Jun 5, 2024Malware42
OilRig Targets Technology Service Provider and Government Agency with QUADAGENTPalo Alto Unit 42·Sep 5, 07:07 UTC · Sep 5, 2018Data breach57
Ransomware Families: 2021 Data to Supplement the Unit 42 Ransomware Threat ReportPalo Alto Unit 42·Jun 6, 12:18 UTC · Jun 6, 2024Ransomware57
Malware campaign uses multiple propagation methods, including EternalBlueSecurity Affairs·Apr 13, 05:36 UTC · Apr 13, 2019Malware42
IoC detection experiments with ChatGPTKaspersky Securelist·Feb 15, 10:00 UTC · Feb 15, 2023Exploit / PoC57
ClickFix Campaigns Targeting Windows and macOSRecorded Future·Feb 6, 00:00 UTC · Feb 6, 2026Threat actor57
North Korea–linked KONNI uses AI to build stealthy malware toolingSecurity Affairs·Jan 26, 10:47 UTC · Jan 26, 2026Malware42
New GootLoader Malware Variant Evades Detection and Spreads RapidlyThe Hacker News·Jan 25, 13:45 UTC · Jan 25, 2024Malware42
A mining multitoolKaspersky Securelist·Jul 26, 10:00 UTC · Jul 26, 2018RansomwareCVE-2017-0144CVE-2018-812060
The Evolution of Aggah: From Roma225 to the RG CampaignSecurity Affairs·Aug 6, 10:46 UTC · Aug 6, 2019Threat actor57
JAVS Courtroom Recording Software BackdooredThe Hacker News·May 25, 04:53 UTC · May 25, 2024MalwareCVE-2024-497847
New SolarMarker variant upgrades evasion abilities to avoid detectionSecurity Affairs·Apr 19, 08:54 UTC · Apr 19, 2022Malware42
FIN7 cybercrime gang creates fake cybersecurity firm to recruit pentesters for ransomware attacksSecurity Affairs·Oct 22, 11:02 UTC · Oct 22, 2021Ransomware57
Global Phishing Campaign Drops New Malware TrioInfosecurity Magazine·May 5, 10:22 UTC · May 5, 2021Malware42
New CRON#TRAP Malware Infects Windows by Hiding in Linux VM to Evade AntivirusThe Hacker News·Nov 8, 07:15 UTC · Nov 8, 2024Malware42
Cloud Atlas group acquires PowerCloud, ReverseSocks, SSHKaspersky Securelist·May 22, 09:12 UTC · May 22, 2026VulnerabilityCVE-2018-080247
PowerShell-Based Loader Deploys Remcos RAT in New Fileless AttackInfosecurity Magazine·May 15, 16:00 UTC · May 15, 2025Malware42
Courtroom Recording Software Vulnerable to Backdoor AttacksInfosecurity Magazine·May 28, 12:40 UTC · May 28, 2024Malware42
N. Korea's Kimsuky Targeting South Korean Research Institutes with Backdoor AttacksThe Hacker News·Dec 9, 05:08 UTC · Dec 9, 2023Malware42
Kaspersky crimeware report: GoPIX, Lumar, and Rhysida.Kaspersky Securelist·Oct 24, 10:00 UTC · Oct 24, 2023Ransomware57
Fenix Cybercrime Group Poses as Tax Authorities to Target Latin American UsersThe Hacker News·Jul 26, 10:52 UTC · Jul 26, 2023Ransomware57
XWorm Malware Exploits Follina Vulnerability in New Wave of AttacksThe Hacker News·May 15, 00:00 UTC · May 15, 2023VulnerabilityCVE-2022-3019047
GuLoader Targets US Financial Firms With TaxInfosecurity Magazine·Apr 13, 16:30 UTC · Apr 13, 2023Malware42
New Incident Report Reveals How Hive Ransomware Targets OrganizationsThe Hacker News·Apr 21, 10:00 UTC · Apr 21, 2022RansomwareCVE-2021-31207CVE-2021-34523CVE-2021-3447360
New SolarMarker Malware Variant Using Updated Techniques to Stay Under the RadarThe Hacker News·Apr 19, 04:52 UTC · Apr 19, 2022Malware42
Iran's MuddyWater Hacker Group Using New Malware in Worldwide Cyber AttacksThe Hacker News·Feb 26, 07:01 UTC · Feb 26, 2022Malware in the wild157
US Cyber Command Links 'MuddyWater' Hacking Group to Iranian IntelligenceThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022VulnerabilityCVE-2020-147247
USCYBERCOM: MuddyWater APT is linked to Iran's MOIS intelligenceSecurity Affairs·Jan 13, 08:26 UTC · Jan 13, 2022VulnerabilityCVE-2020-068847
Iranian Hackers Using Remote Utilities Software to Spy On Its TargetsThe Hacker News·Mar 8, 12:15 UTC · Mar 8, 2021Malware42
FIN7 group has enhanced its phishing techniquesSecurity Affairs·Oct 9, 21:14 UTC · Oct 9, 2017Phishing & fraud42
Go to HELL, PowersHELL : Powerdown the PowerShell AttacksSecurity Affairs·Nov 15, 07:20 UTC · Nov 15, 2017Malware in the wild157
New campaign uses government, union-themed lures to deliver Cobalt Strike beaconsCisco Talos·Sep 28, 12:12 UTC · Sep 28, 2022Threat actorCVE-2017-019960
MintsLoader Malware Analysis: Multi-Stage Loader Used by TAGRecorded Future·Apr 20, 00:00 UTC · Apr 20, 2025Malware42
Gamaredon targeted the military mission of a Western country based in UkraineSecurity Affairs·Apr 11, 07:09 UTC · Apr 11, 2025Malware42