New Malvertising Campaign Distributing Trojanized IT Tools via Google and Bing Search AdsThe Hacker News·Jul 27, 13:12 UTC · Jul 27, 2023Malware42
Microsoft Names Russian Threat ActorInfosecurity Magazine·Jun 15, 17:00 UTC · Jun 15, 2023Threat actor57
Buhti ransomware op uses rebranded LockBit and Babuk payloadsSecurity Affairs·May 27, 10:56 UTC · May 27, 2023RansomwareCVE-2023-27350CVE-2022-4798660
North Korean Kimsuky Hackers Strike Again with Advanced Reconnaissance MalwareThe Hacker News·May 24, 06:59 UTC · May 24, 2023Malware42
Blind Eagle Cyber Espionage Group Strikes Again: New Attack Chain UncoveredThe Hacker News·Apr 24, 04:37 UTC · Apr 24, 2023Threat actor57
YoroTrooper APT group targets CIS countries and embassiesSecurity Affairs·Mar 15, 20:44 UTC · Mar 15, 2023Threat actor60
YoroTrooper Stealing Credentials and Information from Government and Energy OrganizationsThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2023Malware30
YoroTrooper Espionage Campaigns Target CIS, EU CountriesInfosecurity Magazine·Mar 14, 17:30 UTC · Mar 14, 2023Threat actor60
APT-C-36 Strikes Again: Blind Eagle Hackers Target Key Industries in ColombiaThe Hacker News·Feb 28, 10:33 UTC · Feb 28, 2023Malware42
Hydrochasma Group Targets Asian Medical and Shipping SectorsInfosecurity Magazine·Feb 22, 16:00 UTC · Feb 22, 2023Malware30
Hydrochasma: New Threat Actor Targets Shipping Companies and Medical Labs in AsiaThe Hacker News·Feb 22, 12:38 UTC · Feb 22, 2023Threat actor45
IoC detection experiments with ChatGPTKaspersky Securelist·Feb 15, 10:00 UTC · Feb 15, 2023Exploit / PoC57
Researchers Uncover Obfuscated Malicious Code in PyPI Python PackagesThe Hacker News·Feb 11, 10:33 UTC · Feb 11, 2023Exploit / PoC157
Atlassian warns that Confluence zeroThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-2613460
OPERA1ER APT Hackers Targeted Dozens of Financial Organizations in AfricaThe Hacker News·Jan 5, 12:22 UTC · Jan 5, 2023Exploit / PoC60
Threat Spotlight: XLLing in Excel - threat actors using malicious addCisco Talos·Dec 20, 13:00 UTC · Dec 20, 2022Threat actor45
Cuba Ransomware Actors Pocket $60mInfosecurity Magazine·Dec 2, 10:15 UTC · Dec 2, 2022RansomwareCVE-2022-24521CVE-2020-147260
Server-side attacks, C&C in public clouds and other MDR cases we observedKaspersky Securelist·Nov 2, 08:00 UTC · Nov 2, 2022Vulnerability30
Quarterly Report: Incident Response Trends in Q3 2022Cisco Talos·Oct 25, 12:00 UTC · Oct 25, 2022RansomwareCVE-2020-147260
Alchimist: A new attack framework in Chinese for Mac, Linux and WindowsCisco Talos·Oct 13, 12:00 UTC · Oct 13, 2022Exploit / PoC in the wildCVE-2021-4034160
Notepad++ Plugins Allow Attackers to Infiltrate Systems, Achieve PersistenceInfosecurity Magazine·Sep 15, 17:28 UTC · Sep 15, 2022Malware42
New Stealthy Shikitega Malware Targeting Linux Systems and IoT DevicesThe Hacker News·Sep 8, 06:00 UTC · Sep 8, 2022MalwareCVE-2021-4034CVE-2021-349347
Chinese Hackers Used ScanBox Framework in Recent Cyber Espionage AttacksThe Hacker News·Sep 2, 02:43 UTC · Sep 2, 2022Threat actor57
Chinese hackers zero in on Australian manufacturers, wind turbine operatorsCyberScoop·Aug 30, 11:32 UTC · Aug 30, 2022Exploit / PoC in the wild60
Exploiting stolen session cookies to bypass multi-factor authentication (MFA)Help Net Security·Aug 19, 00:00 UTC · Aug 19, 2022Ransomware57
LockBit Ransomware Exploits Windows Defender to Sideload Cobalt Strike PayloadInfosecurity Magazine·Aug 2, 17:00 UTC · Aug 2, 2022Ransomware57
LockBit 3.0 sideloads Cobalt Strike through Windows DefenderSecurity Affairs·Aug 2, 12:30 UTC · Aug 2, 2022Ransomware57
LockBit Ransomware Abuses Windows Defender to Deploy Cobalt Strike PayloadThe Hacker News·Aug 2, 08:07 UTC · Aug 2, 2022Ransomware60
Russian Cybercrime Trickbot Group is systematically attacking UkraineSecurity Affairs·Jul 8, 10:25 UTC · Jul 8, 2022Ransomware57
Metasploit 6.2.0 comes with 138 new modules, 148 enhancements and featuresHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2022Exploit / PoC in the wildCVE-2021-44228CVE-2022-1388CVE-2022-22954+3 CVEs60
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Atlassian rolled out fixes for Confluence zeroSecurity Affairs·Jun 5, 09:51 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Unpatched critical Atlassian Confluence ZeroSecurity Affairs·Jun 3, 10:13 UTC · Jun 3, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-2608460
Hackers Exploiting Unpatched Critical Atlassian Confluence ZeroThe Hacker News·Jun 3, 09:27 UTC · Jun 3, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-2608460
Unpatched Atlassian Confluence zero-day exploited, fix expected today (CVE-2022-26134)Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC in the wildCVE-2022-2613460
Experts Uncover New Espionage Attacks by Chinese 'Mustang Panda' HackersThe Hacker News·May 9, 02:54 UTC · May 9, 2022Threat actor57
Bumblebee Malware Loader Has a Sting in the TailInfosecurity Magazine·Apr 29, 09:30 UTC · Apr 29, 2022Malware42
Cybercriminals Using New Malware Loader 'Bumblebee' in the WildThe Hacker News·Apr 29, 04:53 UTC · Apr 29, 2022Malware42
Bumblebee, a new loader used by multiple crimeware threat actorsSecurity Affairs·Apr 28, 14:49 UTC · Apr 28, 2022Malware42
Threat actors continue to exploit Log4j flaws, Microsoft WarnsSecurity Affairs·Jan 5, 10:46 UTC · Jan 5, 2022Threat actor in the wildCVE-2021-45046CVE-2021-45105CVE-2021-4104+2 CVEs60