Quarterly Report: Incident Response trends from Spring 2021Cisco Talos·Jun 10, 12:00 UTC · Jun 10, 2021RansomwareCVE-2021-26855CVE-2021-26857CVE-2021-26858+4 CVEs60
⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & VibeThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Data breach in the wildCVE-2026-21385CVE-2026-2796CVE-2026-2256+13 CVEs60
From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal effortsCyberScoop·Feb 3, 14:03 UTC · Feb 3, 2025Exploit / PoC60
CVE-2019-2725 Oracle WebLogic flaw exploited in cryptojacking campaignSecurity Affairs·Jun 11, 05:53 UTC · Jun 11, 2019Vulnerability in the wildCVE-2019-272560
APT29 group exploited WinRAR 0day in attacks against embassiesSecurity Affairs·Nov 20, 13:44 UTC · Nov 20, 2023Threat actorCVE-2023-3883160
Hackers Abuse Russian Bulletproof Host Proton66 for Global Attacks and Malware DeliveryThe Hacker News·Feb 12, 06:21 UTC · Feb 12, 2026Malware in the wildCVE-2025-0108CVE-2024-41713CVE-2024-10914+2 CVEs60
Is Emotet gang targeting companies with external SOC?Security Affairs·Oct 14, 17:49 UTC · Oct 14, 2019Exploit / PoC60
Linux variant of Qilin Ransomware targets Windows via remote management tools and BYOVDSecurity Affairs·Oct 27, 10:45 UTC · Oct 27, 2025Ransomware60
Spam and phishing in Q1 2021Kaspersky Securelist·May 3, 10:00 UTC · May 3, 2021Phishing & fraud in the wild60
Report: Criminals loved to target PowerPoint in 2017CyberScoop·Mar 27, 22:12 UTC · Mar 27, 2018Ransomware in the wildCVE-2017-019960
CloudZ RAT potentially steals OTP messages using Pheno pluginCisco Talos·May 5, 10:00 UTC · May 5, 2026Malware55
Medusa ransomware hit over 300 critical infrastructure organizations until February 2025Security Affairs·Mar 13, 08:49 UTC · Mar 13, 2025RansomwareCVE-2024-1709CVE-2023-4878860
New ‘PowerDrop’ malware targeting US aerospace industryThe Record·Jun 6, 21:09 UTC · Jun 6, 2023Malware55
Russian Hackers Exploit CVE-2025-26633 via MSC EvilTwin to Deploy SilentPrism and DarkWispThe Hacker News·Apr 1, 05:36 UTC · Apr 1, 2025Vulnerability in the wildCVE-2025-2663360
91% of critical incidents involve known, legitimate binaries like PowerShellHelp Net Security·Jun 28, 00:00 UTC · Jun 28, 2018Malware55
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-orThe Hacker News·May 7, 17:59 UTC · May 7, 2026VulnerabilityCVE-2026-7411CVE-2026-7412CVE-2026-467060
Operation SkyCloak Deploys Tor-Enabled OpenSSH Backdoor Targeting Defense SectorsThe Hacker News·Nov 4, 10:49 UTC · Nov 4, 2025Malware55
THN Recap: Top Cybersecurity Threats, Tools and Tips (Nov 25The Hacker News·Dec 2, 11:25 UTC · Dec 2, 2024RansomwareCVE-2024-9680CVE-2024-49039CVE-2024-11680+14 CVEs60
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
APT29 Deploys GRAPELOADER Malware Targeting European Diplomats Through WineThe Hacker News·Apr 20, 04:58 UTC · Apr 20, 2025Malware55
⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & MoreThe Hacker News·Dec 27, 07:49 UTC · Dec 27, 2025VulnerabilityCVE-2025-20393CVE-2025-40602CVE-2025-23006+22 CVEs60
⚡ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and MoreThe Hacker News·Jun 23, 03:40 UTC · Jun 23, 2026Malware in the wildCVE-2026-24858CVE-2025-59718CVE-2025-59719+1 CVEs60
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto AttacksThe Hacker News·Jun 2, 08:55 UTC · Jun 2, 2026Malware55
Cybercrime gang exploited VeraCore zero-day vulnerabilities for years (CVE-2025-25181, CVE-2024-57968)Help Net Security·Feb 11, 13:53 UTC · Feb 11, 2025Exploit / PoCCVE-2025-25181CVE-2024-5796860
Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoaderThe Hacker News·Apr 18, 12:03 UTC · Apr 18, 2025MalwareCVE-2021-4044960
ThreatsDay Bulletin: $15B Crypto Bust, Satellite Spying, BillionThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability55
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
Pro-Russian Hackers Exploiting Recent WinRAR Vulnerability in New CampaignThe Hacker News·Nov 18, 05:56 UTC · Nov 18, 2023VulnerabilityCVE-2023-3883160
Web-based Threats-2018 Q2: U.S. Remains #1 in Malicious Web Addresses, China Falls from #2 to #7Palo Alto Unit 42·Nov 6, 12:34 UTC · Nov 6, 2018Exploit / PoCCVE-2018-8174CVE-2009-0075CVE-2008-4844+3 CVEs60
The Gentlemen RaaS: rapid growth and a new ransomware variantKaspersky Securelist·Jun 30, 10:06 UTC · Jun 30, 2026Ransomware160
14,971 WordPress Sites Cleaned in Global SocGholish TakedownSecurity Affairs·Jun 19, 13:41 UTC · Jun 19, 2026Ransomware60
GrayAlpha Unmasked: New FIN7-Linked Infrastructure, PowerNet Loader, and Fake Update AttacksRecorded Future·Jul 4, 00:00 UTC · Jul 4, 2024Malware55
A new campaign by the ForumTroll APT groupKaspersky Securelist·Dec 17, 10:00 UTC · Dec 17, 2025Threat actorCVE-2025-278360
⚡ Weekly Recap: Windows 0-Day, VPN Exploits, Weaponized AI, Hijacked Antivirus and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025RansomwareCVE-2025-29824CVE-2024-11859CVE-2025-3102+17 CVEs60
GootLoader Malware Uses 500–1,000 Concatenated ZIP Archives to Evade DetectionThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Malware55
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160