APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-3361760
Weaponization of Excel Add-Ins Part 1: Malicious XLL Files and Agent Tesla Case StudiesPalo Alto Unit 42·Jun 6, 00:46 UTC · Jun 6, 2024Data breach45
SockDetour – a Silent, Fileless, Socketless BackdoorPalo Alto Unit 42·Jun 5, 23:28 UTC · Jun 5, 2024MalwareCVE-2021-40539CVE-2021-44077CVE-2021-2879947
Harmful Help: Analyzing a Malicious Compiled HTML Help File Delivering Agent TeslaPalo Alto Unit 42·Jun 5, 22:35 UTC · Jun 5, 2024Malware30
Weaponization of Excel Add-Ins Part 2: Dridex Infection Chain Case StudiesPalo Alto Unit 42·Jun 5, 20:44 UTC · Jun 5, 2024Vulnerability30
Popping Eagle: How We Leveraged Global Analytics to Discover a Sophisticated Threat ActorPalo Alto Unit 42·Jun 5, 20:40 UTC · Jun 5, 2024Threat actor57
Understanding REvil: REvil Threat Actors May Have Returned (Updated)Palo Alto Unit 42·Jun 5, 20:39 UTC · Jun 5, 2024Threat actor57
GALLIUM Expands Targeting Across Telecommunications, Government and Finance Sectors With New PingPull ToolPalo Alto Unit 42·Jun 5, 20:24 UTC · Jun 5, 2024Malware42
Top CVEs to Patch: Insights from the 2022 Unit 42 Network Threat Trends Research ReportPalo Alto Unit 42·Jun 5, 20:14 UTC · Jun 5, 2024VulnerabilityCVE-2017-5638CVE-2017-9841CVE-2018-19986+26 CVEs160
BlueSky Ransomware: Fast Encryption via MultithreadingPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024RansomwareCVE-2020-0796CVE-2021-173260
Network Security Trends: Recent Exploits Observed in the Wild Include Remote Code Execution, CrossPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-22954CVE-2022-22963CVE-2022-22965+20 CVEs60
Threat Assessment: Black Basta RansomwarePalo Alto Unit 42·Jun 5, 17:55 UTC · Jun 5, 2024Ransomware60
More Than Meets the Eye: Exposing a Polyglot File That Delivers IcedIDPalo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Malware30
Banking Trojan Techniques: How Financially Motivated Malware Became InfrastructurePalo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024Malware55
Network Security Trends: MayPalo Alto Unit 42·Jun 5, 17:26 UTC · Jun 5, 2024Exploit / PoC in the wild60
An AI Based Solution to Detecting the DoubleZero .NET WiperPalo Alto Unit 42·Jun 5, 17:25 UTC · Jun 5, 2024Malware55
Blowing Cobalt Strike Out of the Water With Memory AnalysisPalo Alto Unit 42·Jun 5, 17:24 UTC · Jun 5, 2024Ransomware57
Vice Society: Profiling a Persistent Threat to the Education SectorPalo Alto Unit 42·Jun 5, 17:12 UTC · Jun 5, 2024RansomwareCVE-2021-3452760
Realtek SDK Vulnerability Attacks Highlight IoT Supply Chain ThreatsPalo Alto Unit 42·Jun 5, 17:03 UTC · Jun 5, 2024VulnerabilityCVE-2021-3539447
Xbash Combines Botnet, Ransomware, Coinmining in Worm that Targets Linux and WindowsPalo Alto Unit 42·Mar 24, 08:51 UTC · Mar 24, 2022Ransomware57
EMEA Bi-Monthly Threat Reports: United Kingdom, Germany & FrancePalo Alto Unit 42·Jan 28, 22:07 UTC · Jan 28, 2022Ransomware57
EMEA Bi-Monthly Threat Reports: Turkey, Saudi Arabia & United Arab EmiratesPalo Alto Unit 42·Jan 28, 22:06 UTC · Jan 28, 2022Ransomware57
Ransomware: Locky, TeslaCrypt, Other Malware Families Use New Tool To Evade DetectionPalo Alto Unit 42·Jan 28, 22:00 UTC · Jan 28, 2022Ransomware57
StegBaus: Because Sometimes XOR Just Isn’t EnoughPalo Alto Unit 42·Jan 28, 20:35 UTC · Jan 28, 2022Malware30
New Android Malware Family Evades Antivirus Detection by Using Popular Ad LibrariesPalo Alto Unit 42·Jan 28, 20:24 UTC · Jan 28, 2022Malware30
Review of Regional Malware Trends in EMEA: Part 2Palo Alto Unit 42·Jan 28, 20:21 UTC · Jan 28, 2022Malware42
Sure, I’ll take that! New ComboJack Malware Alters Clipboards to Steal CryptocurrencyPalo Alto Unit 42·Jan 28, 20:18 UTC · Jan 28, 2022MalwareCVE-2017-857935
Oregon County Hit by Ransomware AttackInfosecurity Magazine·Nov 19, 18:07 UTC · Nov 19, 2020Ransomware57
RMS unveils new model and product releases and updates for RMS Risk IntelligenceHelp Net Security·May 6, 00:00 UTC · May 6, 2020Model release50
US FEMA agency suffered a data leak that exposed data of 2.3M survivorsSecurity Affairs·Mar 24, 14:30 UTC · Mar 24, 2019Data breach57
FEMA exposed personal data on 2.3 million disaster survivors, violated privacy law, IG findsCyberScoop·Mar 23, 00:30 UTC · Mar 23, 2019Exploit / PoC in the wild60
SquirtDanger: The Swiss Army Knife Malware from Veteran Malware Author TheBottlePalo Alto Unit 42·Nov 1, 11:06 UTC · Nov 1, 2018Malware30
Say “Cheese”: WebMonitor RAT Comes with C2-as-aPalo Alto Unit 42·Nov 1, 11:05 UTC · Nov 1, 2018Malware30