MintsLoader Malware Analysis: Multi-Stage Loader Used by TAGRecorded Future·Apr 20, 00:00 UTC · Apr 20, 2025Malware42
Gamaredon targeted the military mission of a Western country based in UkraineSecurity Affairs·Apr 11, 07:09 UTC · Apr 11, 2025Malware42
SWEED: Exposing years of Agent Tesla campaignsCisco Talos·Jul 15, 15:04 UTC · Jul 15, 2019Threat actorCVE-2017-8759CVE-2017-11882160
JasperLoader Emerges, Targets Italy with Gootkit Banking TrojanCisco Talos·Apr 25, 15:00 UTC · Apr 25, 2019Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
Experts shared up-to-date C2 domains and other artifacts related to recent MintsLoader attacksSecurity Affairs·May 5, 11:24 UTC · May 5, 2025Malware30
Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF FilesThe Hacker News·Oct 22, 16:55 UTC · Oct 22, 2025Malware42
New Phishing Campaign Deploys WARMCOOKIE Backdoor Targeting Job SeekersThe Hacker News·Jun 12, 09:34 UTC · Jun 12, 2024Malware42
MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth AttacksThe Hacker News·May 2, 08:57 UTC · May 2, 2025Malware30
Iranian APT MuddyWater targets Turkish users via malicious PDFs, executablesCisco Talos·Jan 31, 13:00 UTC · Jan 31, 2022Ransomware57
Detecting evolving threats: NetSupport RAT campaignCisco Talos·Aug 1, 10:00 UTC · Aug 1, 2024Malware30
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
The Solidity Language open-source package was used in a $500,000 crypto heistKaspersky Securelist·Jul 10, 11:00 UTC · Jul 10, 2025Malware42
Suspected Russian hackers deploy CANFAIL malware against UkraineSecurity Affairs·Feb 14, 11:05 UTC · Feb 14, 2026Malware42
Attackers Using Obfuscation Tools to Deliver MultiThe Hacker News·Apr 10, 14:05 UTC · Apr 10, 2024Malware30
Government, Union-Themed Lures Used to Deliver Cobalt Strike PayloadsInfosecurity Magazine·Sep 29, 17:00 UTC · Sep 29, 2022Vulnerability42
TA558 Hackers Weaponize Images for WideThe Hacker News·Jul 31, 06:36 UTC · Jul 31, 2024Data breachCVE-2017-1188250
New Brazilian-Linked SambaSpy Malware Targets Italian Users via Phishing EmailsThe Hacker News·Sep 19, 14:10 UTC · Sep 19, 2024Malware30
Metamorfo Banking Trojan Keeps Its Sights on BrazilCisco Talos·Nov 8, 17:09 UTC · Nov 8, 2018Malware30
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaignCisco Talos·Jul 16, 10:00 UTC · Jul 16, 2026Malware30
Review: Group-IB Threat Hunting FrameworkHelp Net Security·Jun 15, 08:51 UTC · Jun 15, 2021Ransomware60
Malware campaign attempts to evade analysis with Any.Run sandboxSecurity Affairs·Jul 13, 11:58 UTC · Jul 13, 2020Malware30
JackFix Uses Fake Windows Update Pop-Ups on Adult Sites to Deliver Multiple StealersThe Hacker News·Dec 2, 05:40 UTC · Dec 2, 2025Malware55
Phishing LNK files and GitHub C2 power new DPRK cyber attacksSecurity Affairs·Apr 6, 19:34 UTC · Apr 6, 2026Phishing & fraud30
Malware Complexity Jumps 127% in Six MonthsInfosecurity Magazine·Aug 6, 14:00 UTC · Aug 6, 2025Malware55
Lemon Duck brings cryptocurrency miners back into the spotlightCisco Talos·Oct 13, 14:59 UTC · Oct 13, 2020Ransomware57
Crooks start exploiting Coronavirus as bait to spread malwareSecurity Affairs·Feb 1, 16:06 UTC · Feb 1, 2020Malware42
Microsoft: Info-Stealing malware expands from Windows to macOSSecurity Affairs·Feb 4, 11:30 UTC · Feb 4, 2026Malware42
Researchers spot cryptojacking attack that disables endpoint protectionsArs Technica · Security·May 21, 19:14 UTC · May 21, 2024Vulnerability30
ScrubCrypt used to drop VenomRAT along with many malicious pluginsSecurity Affairs·Apr 9, 16:40 UTC · Apr 9, 2024Malware30
New Malware Campaign Targeting Job Seekers with Cobalt Strike BeaconsThe Hacker News·Oct 1, 05:49 UTC · Oct 1, 2022MalwareCVE-2017-019947
Hackers use steganography in targeted attacks on industrial enterprisesSecurity Affairs·May 29, 08:10 UTC · May 29, 2020Malware30
Microsoft warns of "massive campaign" using COVID-19 themed emailsSecurity Affairs·May 22, 10:11 UTC · May 22, 2020Threat actor45
Iran-linked MuddyWater APT group campaign targets Turkish entitiesSecurity Affairs·Feb 1, 11:09 UTC · Feb 1, 2022Threat actor57