An analysis of CrystalX commercial RAT with prankware featuresKaspersky Securelist·Apr 1, 05:33 UTC · Apr 1, 2026Malware42
Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP TunnelsThe Hacker News·Mar 30, 14:39 UTC · Mar 30, 2026Malware42
APT41-Linked Silver Dragon Targets Governments Using Cobalt Strike and Google Drive C2The Hacker News·Mar 4, 14:52 UTC · Mar 4, 2026Threat actor57
Evasive Panda cyberespionage campaign uses DNS poisoning to install MgBot backdoorSecurity Affairs·Dec 29, 08:51 UTC · Dec 29, 2025Malware42
Evasive Panda APT campaign overviewKaspersky Securelist·Dec 23, 14:35 UTC · Dec 23, 2025Threat actor257
Analysis of TAG-140 Campaign and DRAT V2 Development Targeting Indian Government OrganizationsRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware42
SesameOp: New backdoor exploits OpenAI API for covert C2Security Affairs·Nov 4, 17:06 UTC · Nov 4, 2025Malware42
FileFix Campaign Using Steganography and Multistage PayloadsInfosecurity Magazine·Sep 17, 16:45 UTC · Sep 17, 2025Threat actor in the wild60
Gh0st RAT-based GodRAT attacks financial organizationsKaspersky Securelist·Aug 19, 19:42 UTC · Aug 19, 2025Malware42
Malicious Code in XZ Utils for Linux Systems Enables Remote Code ExecutionThe Hacker News·Aug 13, 10:32 UTC · Aug 13, 2025VulnerabilityCVE-2024-309447
GhostContainer backdoor for Exchange serversKaspersky Securelist·Jul 17, 08:00 UTC · Jul 17, 2025MalwareCVE-2020-068847
WhisperGate Malware Corrupts Computers in UkraineRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Malware42
Prometei botnet activity has surged since March 2025Security Affairs·Jun 25, 07:34 UTC · Jun 25, 2025Malware42
Anubis Ransomware Encrypts and Wipes Files, Making Recovery Impossible Even After PaymentThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2025Ransomware57
Cybercriminals Target AI Users with Malware-Loaded Installers Posing as Popular ToolsThe Hacker News·May 30, 03:56 UTC · May 30, 2025Malware42
Outlaw Group Uses SSH Brute-Force to Deploy Cryptojacking Malware on Linux ServersThe Hacker News·May 1, 06:38 UTC · May 1, 2025MalwareCVE-2016-8655CVE-2016-519547
Amateur Hacker Leverages Bulletproof Hosting Server to Spread MalwareInfosecurity Magazine·Apr 3, 14:00 UTC · Apr 3, 2025Malware42
The EAGERBEE backdoor may be related to the CoughingDown actorKaspersky Securelist·Jan 6, 08:02 UTC · Jan 6, 2025Malware42
Researchers Discover "Bootkitty" – First UEFI Bootkit Targeting Linux KernelsThe Hacker News·Dec 2, 16:30 UTC · Dec 2, 2024RansomwareCVE-2023-4023860
SideWinder APT’s postKaspersky Securelist·Oct 15, 10:00 UTC · Oct 15, 2024VulnerabilityCVE-2017-1188247
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
BlueSky Ransomware: Fast Encryption via MultithreadingPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024RansomwareCVE-2020-0796CVE-2021-173260
Navigating the Vast Ocean of Sandbox EvasionsPalo Alto Unit 42·Jun 5, 17:00 UTC · Jun 5, 2024Vulnerability42
APT41: The threat of KeyPlug against Italian industriesSecurity Affairs·May 23, 13:18 UTC · May 23, 2024Threat actor57
New R Programming Vulnerability Exposes Projects to Supply Chain AttacksThe Hacker News·Apr 30, 03:39 UTC · Apr 30, 2024VulnerabilityCVE-2024-27322147
Hackers hijacked the eScan Antivirus update mechanism in malware campaignSecurity Affairs·Apr 24, 13:53 UTC · Apr 24, 2024Malware42
eScan Antivirus Update Mechanism Exploited to Spread Backdoors and MinersThe Hacker News·Apr 24, 07:02 UTC · Apr 24, 2024Malware42
Iranian Phishing Campaign Targets IsraelInfosecurity Magazine·Jan 18, 15:33 UTC · Jan 18, 2024Threat actor57
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
Carderbee APT targets Hong Kong orgs via supply chain attacksSecurity Affairs·Aug 23, 08:21 UTC · Aug 23, 2023Malware42
Meet the GoldenJackal APT group. Don’t expect any howlsKaspersky Securelist·May 22, 14:30 UTC · May 22, 2023Threat actor57
Emotet Rises Again: Evades Macro Security via OneNote AttachmentsThe Hacker News·Mar 21, 05:20 UTC · Mar 21, 2023Ransomware57
ChromeLoader Malware Targeting Gamers via Fake Nintendo and Steam Game HacksThe Hacker News·Feb 27, 10:53 UTC · Feb 27, 2023Malware42
ChromeLoader campaign uses VHD files disguised as cracked games and pirated softwareSecurity Affairs·Feb 27, 08:33 UTC · Feb 27, 2023Malware42
Threat actors use Quantum Builder to deliver Agent Tesla malwareSecurity Affairs·Sep 28, 15:43 UTC · Sep 28, 2022Malware42
NullMixer drops Redline Stealer, SmokeLoader and other malwareKaspersky Securelist·Sep 26, 08:00 UTC · Sep 26, 2022Malware42