Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsThe Hacker News·May 18, 08:39 UTC · May 18, 2026Malware42
⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreThe Hacker News·Apr 28, 07:38 UTC · Apr 28, 2026MalwareCVE-2025-20333CVE-2025-20362CVE-2026-40372+20 CVEs147
Security Affairs newsletter Round 572 by Pierluigi PaganiniSecurity Affairs·Apr 12, 08:34 UTC · Apr 12, 2026Ransomware in the wildCVE-2026-35616CVE-2026-2576960
The threat hunter’s gambitCisco Talos·Apr 9, 18:00 UTC · Apr 9, 2026Ransomware in the wildCVE-2026-173160
GitHub-hosted malware campaign uses split payload to evade detectionHelp Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Malware30
CISA Flags Actively Exploited Wing FTP Vulnerability Leaking Server PathsThe Hacker News·Mar 17, 05:23 UTC · Mar 17, 2026Vulnerability in the wildCVE-2025-47813CVE-2025-4781260
VulHunt: Open-source vulnerability detection frameworkHelp Net Security·Mar 16, 00:00 UTC · Mar 16, 2026Vulnerability30
Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
SmartLoader Attack Uses Trojanized Oura MCP Server to Deploy StealC InfostealerThe Hacker News·Feb 18, 05:47 UTC · Feb 18, 2026AI safety & security30
Notepad++ supply chain attack: Researchers reveal details, IoCs, targetsHelp Net Security·Feb 17, 10:13 UTC · Feb 17, 2026Exploit / PoC60
Notepad++ Hosting Breach Attributed to ChinaThe Hacker News·Feb 8, 07:21 UTC · Feb 8, 2026Data breach57
Desktop and IoT malware report for Q3 2025Kaspersky Securelist·Nov 19, 10:00 UTC · Nov 19, 2025MalwareCVE-2024-4076660
AI-Enabled Malware Now Actively Deployed, Says GoogleInfosecurity Magazine·Nov 6, 09:45 UTC · Nov 6, 2025Malware42
Google Uncovers PROMPTFLUX Malware That Uses Gemini AI to Rewrite Its Code HourlyThe Hacker News·Nov 6, 04:37 UTC · Nov 6, 2025Malware42
Google uncovers malware using LLMs to operate and evade detectionHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2025Malware142
Malicious VSX Extension "SleepyDuck" Uses Ethereum to Keep Its Command Server AliveThe Hacker News·Nov 4, 04:23 UTC · Nov 4, 2025Malware30
BadCandy Webshell threatens unpatched Cisco IOS XE devices, warns Australian governmentSecurity Affairs·Nov 1, 17:41 UTC · Nov 1, 2025VulnerabilityCVE-2023-2019835
ASD Warns of Ongoing BADCANDY Attacks Exploiting Cisco IOS XE VulnerabilityThe Hacker News·Nov 1, 13:43 UTC · Nov 1, 2025Vulnerability in the wildCVE-2023-2019860
Major Vulnerabilities Found in TPInfosecurity Magazine·Oct 23, 12:30 UTC · Oct 23, 2025VulnerabilityCVE-2025-7850CVE-2025-7851CVE-2024-2182760
Rhadamanthys Stealer Evolves: Adds Device Fingerprinting, PNG Steganography PayloadsThe Hacker News·Oct 8, 04:31 UTC · Oct 8, 2025Malware30
Agentic AI coding assistant helped attacker breach, extort 17 distinct organizationsHelp Net Security·Sep 9, 09:53 UTC · Sep 9, 2025Ransomware57
Researchers flag code that uses AI systems to carry out ransomware attacksCyberScoop·Aug 26, 20:20 UTC · Aug 26, 2025Ransomware in the wild60
H1 2024 Malware & Vulnerability Trends Report: Zero-Day Exploits, Infostealers, and Emerging Malware ThreatsRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Exploit / PoC60
Mirai-Variant IoT Botnet Used to Target Financial Sector in January 2018Recorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Malware30
Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWTThe Hacker News·Jun 3, 16:58 UTC · Jun 3, 2025Vulnerability in the wildCVE-2025-2018860
Cybercriminals camouflaging threats as AI tool installersCisco Talos·May 29, 10:00 UTC · May 29, 2025Ransomware57
China-linked threat actors stole 10% of Belgian State Security Service (VSSE)'s staff emailsSecurity Affairs·Feb 28, 07:54 UTC · Feb 28, 2025Threat actorCVE-2023-286860
PRevent: Open-source tool to detect malicious code in pull requestsHelp Net Security·Feb 24, 09:13 UTC · Feb 24, 2025Malware42
Wireshark 4.4.2: Security updates, bug fixes, updated protocol supportHelp Net Security·Jan 9, 08:56 UTC · Jan 9, 2025Vulnerability30
Evilginx: Open-source man-in-the-middle attack frameworkHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2024Exploit / PoC60
Malicious NPM Packages Target Roblox Users with DataThe Hacker News·Nov 8, 11:53 UTC · Nov 8, 2024Malware42
Russian RomCom Attacks Target Ukrainian Government with New SingleCamper RAT VariantThe Hacker News·Oct 18, 05:13 UTC · Oct 18, 2024Malware42
Russia-linked RomCom group targeted Ukrainian government agencies since late 2023Security Affairs·Oct 17, 21:13 UTC · Oct 17, 2024Ransomware57
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
GitHub, Telegram Bots, and ASCII QR Codes Abused in New Wave of Phishing AttacksThe Hacker News·Oct 12, 04:55 UTC · Oct 12, 2024Phishing & fraud30
Rspamd: Open-source spam filtering systemHelp Net Security·Oct 7, 00:00 UTC · Oct 7, 2024AI tools & infra30