Threat actors use copyright infringement phishing lure to deploy infostealersCisco Talos·Oct 31, 13:37 UTC · Oct 31, 2024Malware30
Bitter APT adds Bangladesh to their targetsCisco Talos·May 11, 12:00 UTC · May 11, 2022Exploit / PoCCVE-2017-11882CVE-2018-0798CVE-2018-0802+1 CVEs60
SQUIRRELWAFFLE Leverages malspam to deliver Qakbot, Cobalt StrikeCisco Talos·Oct 26, 12:00 UTC · Oct 26, 2021Ransomware45
A wolf in sheep's clothing: Actors spread malware by leveraging trust in Amnesty International and fear of PegasusCisco Talos·Sep 30, 12:01 UTC · Sep 30, 2021Malware42
Operation “Armor Piercer:” Targeted attacks in the Indian subcontinent using commercial RATsCisco Talos·Sep 23, 12:01 UTC · Sep 23, 2021Vulnerability42
New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel ImplantsCisco Talos·Sep 19, 12:00 UTC · Sep 19, 2023Malware55
SneakyChef espionage group targets government agencies with SugarGh0st and more infection techniquesCisco Talos·Jun 21, 12:00 UTC · Jun 21, 2024Threat actor45
Transparent Tribe begins targeting education sector in latest campaignCisco Talos·Jul 13, 23:58 UTC · Jul 13, 2022Threat actor57
Operation Layover: How we tracked an attack on the aviation industry to five years of compromiseCisco Talos·Sep 16, 12:00 UTC · Sep 16, 2021Malware30
Understanding the Phobos affiliate structure and activityCisco Talos·Nov 17, 13:01 UTC · Nov 17, 2023Ransomware57
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
New phishing-as-a-service tool “Greatness” already seen in the wildCisco Talos·May 10, 12:00 UTC · May 10, 2023Phishing & fraud30
New threat actor targets Bulgaria, China, Vietnam and other countries with customized Yashma ransomwareCisco Talos·Aug 7, 12:00 UTC · Aug 7, 2023Ransomware57
Kazakhstan-associated YoroTrooper disguises origin of attacks as AzerbaijanCisco Talos·Oct 25, 12:01 UTC · Oct 25, 2023Vulnerability30
New SugarGh0st RAT targets Uzbekistan government and South KoreaCisco Talos·Nov 30, 13:00 UTC · Nov 30, 2023Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
OfflRouter virus causes Ukrainian users to upload confidential documents to VirusTotalCisco Talos·Apr 17, 12:54 UTC · Apr 17, 2024Malware30
Following the LNK metadata trailCisco Talos·Jan 19, 13:00 UTC · Jan 19, 2023VulnerabilityCVE-2015-009635
Back from the dead: Emotet re-emerges, begins rebuilding to wrap up 2021Cisco Talos·Nov 22, 13:00 UTC · Nov 22, 2021Ransomware57
Emotet resumes spam operations, switches to OneNoteCisco Talos·Mar 22, 19:41 UTC · Mar 22, 2023Malware30
Unwrapping the emerging Interlock ransomware attackCisco Talos·Nov 7, 11:00 UTC · Nov 7, 2024Ransomware57
SapphireStealer: Open-source information stealer enables credential and data theftCisco Talos·Aug 31, 12:00 UTC · Aug 31, 2023Malware42
Threat Spotlight: Cyber Criminal Adoption of IPFS for Phishing, Malware CampaignsCisco Talos·Nov 9, 13:00 UTC · Nov 9, 2022Malware30
CoralRaider targets victims’ data and social media accountsCisco Talos·Apr 4, 12:00 UTC · Apr 4, 2024Malware30
Operation Celestial Force employs mobile and desktop malware to target Indian entitiesCisco Talos·Jun 13, 10:00 UTC · Jun 13, 2024Malware42
Threat actors using MacroPack to deploy Brute Ratel, Havoc and PhantomCore payloadsCisco Talos·Sep 3, 13:14 UTC · Sep 3, 2024Threat actor45
Cybercriminals camouflaging threats as AI tool installersCisco Talos·May 29, 10:00 UTC · May 29, 2025Ransomware57
Suspected CoralRaider continues to expand victimology using three information stealersCisco Talos·Apr 23, 12:42 UTC · Apr 23, 2024Malware30
Astaroth, Mekotio & Ousaban abusing Google Cloud Run in LATAMCisco Talos·Feb 20, 13:00 UTC · Feb 20, 2024Malware30
Talos uncovers espionage campaigns targeting CIS countries, embassies and EU health care agencyCisco Talos·Mar 14, 11:00 UTC · Mar 14, 2023Threat actor60
Starry Addax targets human rights defenders in North Africa with new malwareCisco Talos·Apr 9, 12:02 UTC · Apr 9, 2024Malware30
Malicious campaigns target government, military and civilian entities in Ukraine, PolandCisco Talos·Jul 13, 10:45 UTC · Jul 13, 2023Threat actor145
Your item has sold! Avoiding scams targeting online sellersCisco Talos·Feb 25, 11:17 UTC · Feb 25, 2025Phishing & fraud30
New campaign uses government, union-themed lures to deliver Cobalt Strike beaconsCisco Talos·Sep 28, 12:12 UTC · Sep 28, 2022Threat actorCVE-2017-019960
Gamaredon APT targets Ukrainian government agencies in new campaignCisco Talos·Sep 15, 13:00 UTC · Sep 15, 2022Threat actor157
Transparent Tribe campaign uses new bespoke malware to target Indian government officialsCisco Talos·Mar 29, 12:01 UTC · Mar 29, 2022Malware30