New FileFix Variant Delivers StealC Malware Through Multilingual Phishing SiteThe Hacker News·Sep 17, 04:13 UTC · Sep 17, 2025Malware30
Russia-Aligned TAG-110 Targets Asia and Europe with HATVIBE and CHERRYSPYRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2024-2369260
SOC files: an APT41 attack on government IT services in AfricaKaspersky Securelist·Jul 21, 08:00 UTC · Jul 21, 2025Threat actor60
PowerShell-Based Loader Deploys Remcos RAT in New Fileless AttackInfosecurity Magazine·May 15, 16:00 UTC · May 15, 2025Malware42
⚡ Weekly Recap: Critical SAP Exploit, AI-Powered Phishing, Major Breaches, New CVEs & MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Phishing & fraudCVE-2025-31324CVE-2024-58136CVE-2025-32432+16 CVEs60
MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth AttacksThe Hacker News·May 2, 08:57 UTC · May 2, 2025Malware30
Kimsuky APT exploited BlueKeep RDP flaw in attacks against South Korea and JapanSecurity Affairs·Apr 21, 18:25 UTC · Apr 21, 2025Threat actorCVE-2019-0708CVE-2017-1188260
How Lumma Stealer sneaks into organizationsKaspersky Securelist·Apr 21, 12:00 UTC · Apr 21, 2025Malware30
Fake CAPTCHA PDFs Spread Lumma Stealer via Webflow, GoDaddy, and Other DomainsThe Hacker News·Mar 1, 07:55 UTC · Mar 1, 2025Malware30
North Korea-linked APt Emerald Sleet is using a new tacticSecurity Affairs·Feb 12, 11:55 UTC · Feb 12, 2025Malware42
Kimsuky Group used custom RDP Wrapper versionSecurity Affairs·Feb 8, 18:15 UTC · Feb 8, 2025Threat actor57
Malware peddlers experimenting with BPL sideloading and masking malicious payloads as PGP keysHelp Net Security·Aug 23, 08:23 UTC · Aug 23, 2024Malware30
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
Weaponization of Excel Add-Ins Part 2: Dridex Infection Chain Case StudiesPalo Alto Unit 42·Jun 5, 20:44 UTC · Jun 5, 2024Vulnerability30
Post-Macro World Sees Rise in Microsoft OneNote Documents Delivering MalwareThe Hacker News·Feb 4, 04:21 UTC · Feb 4, 2023Malware42
All You Need to Know About Emotet in 2022The Hacker News·Nov 26, 11:49 UTC · Nov 26, 2022Ransomware57
Experts analyzed the evolution of the Emotet supply chainSecurity Affairs·Oct 11, 10:40 UTC · Oct 11, 2022Ransomware57
New Report Uncovers Emotet's Delivery and Evasion Techniques Used in Recent AttacksThe Hacker News·Oct 11, 06:25 UTC · Oct 11, 2022Ransomware57
Cyber Criminals Using Quantum Builder Sold on Dark Web to Deliver Agent Tesla MalwareThe Hacker News·Sep 29, 07:13 UTC · Sep 29, 2022Malware30
Threat actors use Quantum Builder to deliver Agent Tesla malwareSecurity Affairs·Sep 28, 15:43 UTC · Sep 28, 2022Malware42
Researchers Detail OriginLogger RAT — Successor to Agent Tesla MalwareThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Malware30
New 'Quantum' Builder Lets Attackers Easily Create Malicious Windows ShortcutsThe Hacker News·Jun 25, 04:05 UTC · Jun 25, 2022Ransomware57
Researchers Warn of Spam Campaign Targeting Victims with SVCReady MalwareThe Hacker News·Jun 7, 12:26 UTC · Jun 7, 2022Malware30
Xbash Combines Botnet, Ransomware, Coinmining in Worm that Targets Linux and WindowsPalo Alto Unit 42·Mar 24, 08:51 UTC · Mar 24, 2022Ransomware57
ScarCruft surveilling North Korean defectors and human rights activistsKaspersky Securelist·Nov 29, 10:00 UTC · Nov 29, 2021Data breach57
Lemon Duck brings cryptocurrency miners back into the spotlightCisco Talos·Oct 13, 14:59 UTC · Oct 13, 2020Ransomware57
Authors of Purple Fox EK adds 2 Microsoft exploitsSecurity Affairs·Jul 7, 14:00 UTC · Jul 7, 2020Exploit / PoC in the wildCVE-2020-0674CVE-2019-1458CVE-2018-8120+1 CVEs60
APT or not APT? What’s Behind the Aggah CampaignSecurity Affairs·Sep 24, 14:26 UTC · Sep 24, 2019Threat actor57
Threat Roundup for September 14 to September 21Cisco Talos·Sep 22, 14:23 UTC · Sep 22, 2018Vulnerability30
A new multi-stage attack deploys a password stealer without using macrosSecurity Affairs·Feb 20, 09:05 UTC · Feb 20, 2018MalwareCVE-2017-1188235
The Cobalt group is exploiting the CVE-2017-11882 Microsoft Office flaw in targeted attacksSecurity Affairs·Nov 26, 14:06 UTC · Nov 26, 2017VulnerabilityCVE-2017-11882CVE-2017-875947
Go to HELL, PowersHELL : Powerdown the PowerShell AttacksSecurity Affairs·Nov 15, 07:20 UTC · Nov 15, 2017Malware in the wild157