“Red October”. Detailed Malware Description 1. First Stage of AttackKaspersky Securelist·Jan 17, 16:09 UTC · Jan 17, 2013MalwareCVE-2009-3129CVE-2010-3333CVE-2012-0158+1 CVEs47
UAT-7237 targets Taiwanese web hosting infrastructureCisco Talos·Aug 15, 10:00 UTC · Aug 15, 2025Vulnerability42
MoonBounce: the dark side of UEFI firmwareKaspersky Securelist·Jan 20, 10:00 UTC · Jan 20, 2022Malware42
Vulnerability Spotlight: Microsoft issues security update for Azure SphereCisco Talos·Jul 31, 16:56 UTC · Jul 31, 2020Vulnerability in the wild57
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
Watering Hole Attack on Aerospace Firm Exploits CVE-2015Palo Alto Unit 42·Nov 1, 09:48 UTC · Nov 1, 2018Data breachCVE-2015-512260
US restaurants targeted with fileless malwareHelp Net Security·Jun 26, 21:22 UTC · Jun 26, 2018Malware42
Turla APT group leverages for the first time the Metasploit framework for the Mosquito campaignSecurity Affairs·May 23, 13:47 UTC · May 23, 2018Exploit / PoC57
CVE-2015Kaspersky Securelist·May 25, 10:56 UTC · May 25, 2016Exploit / PoCCVE-2015-2545CVE-2015-170160
CVE-2013-3906 : Another 0Kaspersky Securelist·Nov 11, 18:14 UTC · Nov 11, 2013VulnerabilityCVE-2013-390647
Mustang Panda deploys ToneShell via signed kernelSecurity Affairs·Dec 30, 15:22 UTC · Dec 30, 2025Threat actor57
The HoneyMyte APT now protects malware with a kernelKaspersky Securelist·Dec 29, 11:28 UTC · Dec 29, 2025Malware42
Deadglyph, a very sophisticated and unknown backdoor targets the Middle EastSecurity Affairs·Sep 24, 17:25 UTC · Sep 24, 2023Malware42
Scarlet Mimic: Years-Long Espionage Campaign Targets Minority ActivistsPalo Alto Unit 42·Nov 1, 10:03 UTC · Nov 1, 2018Threat actor57
Vulnerability Walkthrough: 7zip CVE-2016Cisco Talos·Nov 30, 15:00 UTC · Nov 30, 2017VulnerabilityCVE-2016-233447
Different x86 Bytecode InterpretationsKaspersky Securelist·Jul 22, 20:17 UTC · Jul 22, 2010Vulnerability42
Evasive Panda cyberespionage campaign uses DNS poisoning to install MgBot backdoorSecurity Affairs·Dec 29, 08:51 UTC · Dec 29, 2025Malware42
China-Linked Evasive Panda Ran DNS Poisoning Campaign to Deliver MgBot MalwareThe Hacker News·Dec 29, 07:15 UTC · Dec 29, 2025Malware142
Silver Fox APT Targets Taiwan with Complex Gh0stCringe and HoldingHands RAT MalwareThe Hacker News·Jun 25, 04:22 UTC · Jun 25, 2025Malware42
UAT-6382 exploits Cityworks zeroCisco Talos·May 22, 10:00 UTC · May 22, 2025Vulnerability in the wildCVE-2025-0994CVE-2025-094460
SideWinder APT’s postKaspersky Securelist·Oct 15, 10:00 UTC · Oct 15, 2024VulnerabilityCVE-2017-1188247
ScarCruft surveilling North Korean defectors and human rights activistsKaspersky Securelist·Nov 29, 10:00 UTC · Nov 29, 2021Data breach57
Cheating the cheater: How adversaries are using backdoored video game cheat engines and modding toolsCisco Talos·Mar 31, 13:02 UTC · Mar 31, 2021Malware42
Vulnerability Spotlight: Remote code execution, privilege escalation bugs in Microsoft Azure SphereCisco Talos·Aug 24, 19:28 UTC · Aug 24, 2020Vulnerability in the wild57
Exclusive: Dirty Political Spying Attempt behind the FHAPPI Campaign: all the details in the interview with @unixfreaxjpSecurity Affairs·Mar 22, 13:09 UTC · Mar 22, 2017Threat actor57
Dragon Breath Uses RONINGLOADER to Disable Security Tools and Deploy Gh0st RATThe Hacker News·Jul 17, 15:19 UTC · Jul 17, 2026Malware42
APT28 Uses Microsoft Office CVE-2026-21509 in EspionageThe Hacker News·Feb 4, 16:49 UTC · Feb 4, 2026VulnerabilityCVE-2026-21509147
HoneyMyte updates CoolClient backdoor, uses new data stealing toolsKaspersky Securelist·Jan 26, 19:27 UTC · Jan 26, 2026Malware42
Donot Team group updates its Windows malware frameworkSecurity Affairs·Jun 2, 20:10 UTC · Jun 2, 2025Malware42
New wave of targeted attacks of the Angry Likho APT on Russian organizationsKaspersky Securelist·Feb 21, 10:00 UTC · Feb 21, 2025Malware42
Multi-Stage ValleyRAT Targets Chinese Users with Advanced TacticsThe Hacker News·Aug 20, 03:56 UTC · Aug 20, 2024MalwareCVE-2017-019947
Advanced ValleyRAT Campaign Hits Windows Users in ChinaInfosecurity Magazine·Aug 15, 16:00 UTC · Aug 15, 2024Malware42
Microsoft MSHTML Flaw Exploited to Deliver MerkSpy Spyware ToolThe Hacker News·Jul 3, 09:53 UTC · Jul 3, 2024MalwareCVE-2021-4044447