Tomorrow, and tomorrow, and tomorrow: Information security and the Baseball Hall of FameCisco Talos·Mar 20, 18:00 UTC · Mar 20, 2025Exploit / PoC60
Lotus Blossom espionage group targets multiple industries with different versions of Sagerunex and hacking toolsCisco Talos·Feb 27, 11:00 UTC · Feb 27, 2025Threat actor57
Talos IR trends Q4 2024: Web shell usage and exploitation of publicCisco Talos·Jan 30, 11:00 UTC · Jan 30, 2025Ransomware57
Don't let these open-source cybersecurity tools slip under your radarHelp Net Security·Jan 27, 00:00 UTC · Jan 27, 2025Vulnerability30
MSSqlPwner: Open-source tool for pentesting MSSQL serversHelp Net Security·Jan 17, 00:00 UTC · Jan 17, 2025Tools130
Exposed: Russian military Unit 29155 does digital sabotage, espionageHelp Net Security·Dec 24, 13:27 UTC · Dec 24, 2024Threat actor60
Researchers Uncover 4-Month Cyberattack on U.S. Firm Linked to Chinese HackersThe Hacker News·Dec 5, 11:00 UTC · Dec 5, 2024Threat actor145
CISA Warns of Active Exploitation of Microsoft SharePoint Vulnerability (CVE-2024The Hacker News·Nov 3, 05:44 UTC · Nov 3, 2024Vulnerability in the wildCVE-2024-38094CVE-2024-4406860
North Korean Hackers Collaborate with Play RansomwareInfosecurity Magazine·Oct 31, 13:00 UTC · Oct 31, 2024Ransomware57
Talos IR trends Q3 2024: IdentityCisco Talos·Oct 24, 10:00 UTC · Oct 24, 2024RansomwareCVE-2024-3708560
Ransomware attackers hop from on-premises systems to cloud to compromise Microsoft 365 accountsHelp Net Security·Sep 30, 00:00 UTC · Sep 30, 2024Ransomware157
Microsoft Identifies Storm-0501 as Major Threat in Hybrid Cloud Ransomware AttacksThe Hacker News·Sep 28, 05:55 UTC · Sep 28, 2024Ransomware57
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major AttacksThe Hacker News·Sep 9, 04:33 UTC · Sep 9, 2024Exploit / PoC in the wild60
Ongoing Campaign Bombards Enterprises with Spam Emails and Phone CallsThe Hacker News·May 15, 00:00 UTC · May 15, 2024Threat actor157
Kaspersky report on APT trends in Q1 2024Kaspersky Securelist·May 7, 13:19 UTC · May 7, 2024Malware42
ToddyCat’s traffic tunneling and data extraction toolsKaspersky Securelist·Apr 22, 10:36 UTC · Apr 22, 2024Threat actor57
RedCurl Cybercrime Group Abuses Windows PCA Tool for Corporate EspionageThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2024Threat actor57
TA577 Exploits NTLM Authentication VulnerabilityInfosecurity Magazine·Mar 4, 16:30 UTC · Mar 4, 2024Vulnerability55
Hackers backed by Russia and China are infecting SOHO routers like yours, FBI warnsArs Technica · Security·Feb 27, 20:57 UTC · Feb 27, 2024Exploit / PoCCVE-2023-2339760
Warning: New Malware Emerges in Attacks Exploiting Ivanti VPN VulnerabilitiesThe Hacker News·Feb 2, 04:53 UTC · Feb 2, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Multiple malware used in attacks exploiting Ivanti VPN flawsSecurity Affairs·Feb 1, 10:53 UTC · Feb 1, 2024Malware in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
CERT-UA Uncovers New Malware Wave Distributing OCEANMAP, MASEPIE, STEELHOOKThe Hacker News·Jan 8, 04:12 UTC · Jan 8, 2024MalwareCVE-2023-2339760
Russia's APT28 used new malware in a recent phishing campaignSecurity Affairs·Dec 29, 14:59 UTC · Dec 29, 2023Malware42
New malware found in analysis of Russian hacks on Ukraine, PolandThe Record·Dec 29, 13:24 UTC · Dec 29, 2023Malware42
Ukraine: Wiper malware masquerading as ransomware hits government organizationsHelp Net Security·Nov 14, 07:54 UTC · Nov 14, 2023RansomwareCVE-2021-3264860
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
New Report Uncovers 3 Distinct Clusters of China-Nexus Attacks on Southeast Asian GovernmentThe Hacker News·Sep 25, 10:12 UTC · Sep 25, 2023Vulnerability55
Lazarus Group exploited ManageEngine vulnerability to target critical infrastructureHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2023Vulnerability in the wildCVE-2022-4796660
Lazarus Group's infrastructure reuse leads to discovery of new malwareCisco Talos·Aug 24, 12:04 UTC · Aug 24, 2023MalwareCVE-2022-4796660
Spacecolon Toolset Fuels Global Surge in Scarab Ransomware AttacksThe Hacker News·Aug 23, 13:25 UTC · Aug 23, 2023Ransomware60
Uncovering weaknesses in Apple macOS and VMWare vCenter: 12 vulnerabilities in RPC implementationCisco Talos·Jul 13, 16:00 UTC · Jul 13, 2023Vulnerability55
Microsoft Names Russian Threat ActorInfosecurity Magazine·Jun 15, 17:00 UTC · Jun 15, 2023Threat actor57
Notorious Cyber Gang FIN7 Returns With Cl0p Ransomware in New Wave of AttacksThe Hacker News·May 20, 13:45 UTC · May 20, 2023RansomwareCVE-2023-2753260
Quarterly Report: Incident Response Trends in Q1 2023Cisco Talos·Apr 26, 12:00 UTC · Apr 26, 2023Ransomware57
Iranian Government-Backed Hackers Targeting U.S. Energy and Transit SystemsThe Hacker News·Apr 21, 04:57 UTC · Apr 21, 2023Exploit / PoCCVE-2022-47966CVE-2022-4798660
Chinese hackers linked to months-long attack on Taiwanese financial sectorThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Vulnerability30
Cisco confirms May attack by Yanluowang ransomware groupThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Ransomware57
New ‘Prestige’ ransomware campaign targets Ukraine and PolandThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Ransomware57
Microsoft attributes ‘Prestige’ ransomware attacks on Ukraine and Poland to Russian groupThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Ransomware57