Uncovering Qilin attack methods exposed through multiple casesCisco Talos·Oct 27, 02:00 UTC · Oct 27, 2025Ransomware57
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
Twelve: from initial compromise to ransomware and wipersKaspersky Securelist·Sep 20, 13:33 UTC · Sep 20, 2024RansomwareCVE-2021-21972CVE-2021-2200560
Detecting evolving threats: NetSupport RAT campaignCisco Talos·Aug 1, 10:00 UTC · Aug 1, 2024Malware30
Experts Uncover Weaknesses in PowerShell Gallery Enabling Supply Chain AttacksThe Hacker News·Aug 17, 04:40 UTC · Aug 17, 2023Threat actor57
Masslogger campaigns exfiltrates user credentialsCisco Talos·Feb 17, 13:00 UTC · Feb 17, 2021Threat actor57
OilRig Targets Technology Service Provider and Government Agency with QUADAGENTPalo Alto Unit 42·Sep 5, 07:07 UTC · Sep 5, 2018Data breach57
The Curious Case of Notepad and Chthonic: Exposing a Malicious InfrastructurePalo Alto Unit 42·Aug 15, 12:00 UTC · Aug 15, 2017Malware30
New Fileless Malware Uses DNS Queries To Receive PowerShell CommandsThe Hacker News·Mar 6, 10:03 UTC · Mar 6, 2017Malware42
Automating web hosting creation in Azure with PowerShellTroy Hunt·Jan 23, 00:00 UTC · Jan 23, 2015AI tools & infra30
A Guide to Shift Away from Legacy Authentication Protocols in Microsoft 365The Hacker News·Oct 31, 11:14 UTC · Oct 31, 2021Data breach145
Vice Society leverages PrintNightmare in ransomware attacksCisco Talos·Aug 12, 22:33 UTC · Aug 12, 2021RansomwareCVE-2021-1675CVE-2021-3452760
Spoofed SEC Emails Distribute Evolved DNSMessengerCisco Talos·Oct 11, 16:11 UTC · Oct 11, 2017Policy & legal30
ClickFix Campaigns Targeting Windows and macOSRecorded Future·Feb 6, 00:00 UTC · Feb 6, 2026Threat actor57
What Am I Supposed to Do With This Threat Intelligence?Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Data breach60
ScarCruft surveilling North Korean defectors and human rights activistsKaspersky Securelist·Nov 29, 10:00 UTC · Nov 29, 2021Data breach57
Divergent: "Fileless" NodeJS Malware Burrows Deep Within the HostCisco Talos·Sep 26, 20:07 UTC · Sep 26, 2019Malware30
Cisco AMP tracks new campaign that delivers UrsnifCisco Talos·Jan 24, 18:39 UTC · Jan 24, 2019Threat actor45
New Tomiris tools and techniques: multiple reverse shells, Havoc, AdaptixC2Kaspersky Securelist·Nov 28, 07:00 UTC · Nov 28, 2025Malware142
IR Trends Q2 2025: Phishing attacks persist as actors leverage compromised valid accounts to enhance legitimacyCisco Talos·Jul 31, 10:00 UTC · Jul 31, 2025Phishing & fraud42
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
Threat Spotlight: AsyncRAT campaigns feature new version of 3LOSH crypterCisco Talos·Apr 5, 12:00 UTC · Apr 5, 2022Malware30
Ursnif: Long Live the Steganography and AtomBombing!Security Affairs·Feb 7, 11:00 UTC · Feb 7, 2019Malware30
New ExtraHop capabilities target malicious PowerShell use across enterprise environmentsHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2025Ransomware60
Critical Flaws in PowerShell Gallery Enable Malicious ExploitsInfosecurity Magazine·Aug 17, 17:00 UTC · Aug 17, 2023Exploit / PoC60
Experts spotted a new undetectable PowerShell BackdoorSecurity Affairs·Oct 20, 18:09 UTC · Oct 20, 2022Malware42
Alleged MuddyWater attack downloads a PowerShell script from GitHubSecurity Affairs·Jan 4, 08:49 UTC · Jan 4, 2021Malware142
Talos team spotted a PowerShell malware that uses DNS queries to contact the C2Security Affairs·Mar 3, 14:14 UTC · Mar 3, 2017Malware42
The rise of .NET and Powershell malwareKaspersky Securelist·Oct 12, 10:08 UTC · Oct 12, 2015Malware142
Cloud Atlas group acquires PowerCloud, ReverseSocks, SSHKaspersky Securelist·May 22, 09:12 UTC · May 22, 2026VulnerabilityCVE-2018-080247
Konni Hackers Deploy AI-Generated PowerShell Backdoor Against Blockchain DevelopersThe Hacker News·Jan 26, 08:54 UTC · Jan 26, 2026Malware42
Scarcity signals: Are rare activities red flags?Cisco Talos·May 23, 10:00 UTC · May 23, 2025Vulnerability30
PowerShell-Based Loader Deploys Remcos RAT in New Fileless AttackInfosecurity Magazine·May 15, 16:00 UTC · May 15, 2025Malware42
This Windows PowerShell Phish Has Scary PotentialKrebs on Security·Sep 19, 20:18 UTC · Sep 19, 2024Vulnerability55