Product showcase: Cross-platform and third-party endpoint patching with Action1Help Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Ransomware in the wild60
Arkanix Stealer targets a variety of data, offers a MaaS referral programKaspersky Securelist·Feb 19, 11:01 UTC · Feb 19, 2026Malware30
HoneyMyte updates CoolClient backdoor, uses new data stealing toolsKaspersky Securelist·Jan 26, 19:27 UTC · Jan 26, 2026Malware42
⚡ Weekly Recap: iPhone Spyware, Microsoft 0-Day, TokenBreak Hack, AI Data Leaks and MoreThe Hacker News·Oct 28, 08:29 UTC · Oct 28, 2025Malware in the wildCVE-2025-43200CVE-2025-32711CVE-2025-33053+24 CVEs260
Uncovering Qilin attack methods exposed through multiple casesCisco Talos·Oct 27, 02:00 UTC · Oct 27, 2025Ransomware57
XWorm 6.0 Returns with 35+ Plugins and Enhanced Data Theft CapabilitiesThe Hacker News·Oct 7, 14:26 UTC · Oct 7, 2025Ransomware60
Akira Ransomware bypasses MFA on SonicWall VPNsSecurity Affairs·Sep 29, 10:52 UTC · Sep 29, 2025RansomwareCVE-2024-4076660
Akira ransomware: From SonicWall VPN login to encryption in under four hoursHelp Net Security·Sep 29, 00:00 UTC · Sep 29, 2025RansomwareCVE-2024-4076660
Researchers Expose Phishing Threats Distributing CountLoader and PureRATThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Malware42
Ransomware attackers used incorrectly stored recovery codes to disable EDR agentsHelp Net Security·Sep 16, 00:00 UTC · Sep 16, 2025RansomwareCVE-2024-4076660
SonicWall firewalls targeted in ransomware attacks, possibly via zero-dayHelp Net Security·Aug 6, 09:33 UTC · Aug 6, 2025Ransomware in the wildCVE-2025-4059960
1,500+ Minecraft Players Infected by Java Malware Masquerading as Game Mods on GitHubThe Hacker News·Jun 18, 16:16 UTC · Jun 18, 2025Malware30
PureRAT Malware Spikes 4x in 2025, Deploying PureLogs to Target Russian FirmsThe Hacker News·May 21, 13:15 UTC · May 21, 2025Malware42
Paper Werewolf Deploys PowerModul Implant in Targeted Cyberattacks on Russian SectorsThe Hacker News·Apr 12, 05:17 UTC · Apr 12, 2025Vulnerability42
RansomHub Becomes 2024’s Top Ransomware Group, Hitting 600+ Organizations GloballyThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025RansomwareCVE-2024-3400CVE-2021-42278CVE-2020-1472+1 CVEs60
Hackers Exploit Webview2 to Deploy CoinLurker Malware and Evade Security DetectionThe Hacker News·Dec 17, 13:56 UTC · Dec 17, 2024Malware30
SmokeLoader Malware Resurfaces, Targeting Manufacturing and IT in TaiwanThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2024MalwareCVE-2017-0199CVE-2017-1188235
What NIST’s latest password standards mean, and why the old ones weren’t workingCisco Talos·Oct 10, 18:00 UTC · Oct 10, 2024Data breach in the wildCVE-2024-43572CVE-2024-4357360
CISA is warning us (again) about the threat to critical infrastructure networksCisco Talos·Oct 3, 18:00 UTC · Oct 3, 2024Ransomware60
Are hardware supply chain attacks “cyber attacks?”Cisco Talos·Sep 26, 18:01 UTC · Sep 26, 2024Ransomware60
Threat Actors Favor Rclone, WinSCP and cURL as Data Exfiltration ToolsInfosecurity Magazine·Aug 9, 10:00 UTC · Aug 9, 2024Threat actor60
North Korea-linked hackers target construction and machinery sectors with watering hole and supply chain attacksSecurity Affairs·Aug 6, 07:02 UTC · Aug 6, 2024Vulnerability42
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
Void Banshee APT Exploits Microsoft MHTML Flaw to Spread Atlantida StealerThe Hacker News·Jul 21, 08:04 UTC · Jul 21, 2024MalwareCVE-2024-38112CVE-2021-40444CVE-2024-2719860
It's best to just assume you’ve been involved in a data breach somehowCisco Talos·Jul 18, 18:00 UTC · Jul 18, 2024Data breachCVE-2024-3811260
Void Banshee APT exploited "lingering Windows relic" in zero-day attacksHelp Net Security·Jul 16, 00:00 UTC · Jul 16, 2024Exploit / PoCCVE-2024-3811260
Checking in on the state of cybersecurity and the OlympicsCisco Talos·Jul 11, 18:01 UTC · Jul 11, 2024Ransomware60
Tabletop exercises are headed to the next frontier: SpaceCisco Talos·Jun 20, 18:00 UTC · Jun 20, 2024Data breachCVE-2022-4247560
Rust infostealer Fickle Stealer spreads through various methodsSecurity Affairs·Jun 20, 13:08 UTC · Jun 20, 2024Malware30
New Rust-based Fickle Malware Uses PowerShell for UAC Bypass and Data ExfiltrationThe Hacker News·Jun 20, 08:09 UTC · Jun 20, 2024Malware30
How we can separate botnets from the malware operations that rely on themCisco Talos·Jun 13, 18:01 UTC · Jun 13, 2024Malware42
The sliding doors of misinformation that come with AICisco Talos·Jun 6, 18:03 UTC · Jun 6, 2024Ransomware57
TeamTNT Actively Enumerating Cloud Environments to Infiltrate OrganizationsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Vulnerability30
Novel News on Cuba Ransomware: Greetings From Tropical ScorpiusPalo Alto Unit 42·Jun 5, 20:16 UTC · Jun 5, 2024Ransomware57
Attackers are impersonating a road toll payment processor across the U.S. in phishing attacksCisco Talos·May 30, 18:01 UTC · May 30, 2024Phishing & fraudCVE-2024-21785CVE-2024-23601CVE-2024-24963+1 CVEs47
Apple and Google are taking steps to curb the abuse of location-tracking devices — but what about others?Cisco Talos·May 23, 20:20 UTC · May 23, 2024Data breach45
Kimsuky's New Golang Stealer 'Troll' and 'GoBear' Backdoor Target South KoreaThe Hacker News·May 17, 06:51 UTC · May 17, 2024Malware42
Rounding up some of the major headlines from RSACisco Talos·May 16, 18:00 UTC · May 16, 2024RansomwareCVE-2024-30044CVE-2024-3005160
New 'Cuckoo' Persistent macOS Spyware Targeting Intel and Arm MacsThe Hacker News·May 10, 06:52 UTC · May 10, 2024Malware42
Akira ransomware received $42M in ransom payments from over 250 victimsSecurity Affairs·Apr 21, 20:07 UTC · Apr 21, 2024RansomwareCVE-2020-3259CVE-2023-2026960