Awaken Likho APT group targets Russian government with a new implantSecurity Affairs·Oct 9, 14:00 UTC · Oct 9, 2024Threat actor57
Cyberattack Group 'Awaken Likho' Targets Russian Government with Advanced ToolsThe Hacker News·Oct 8, 11:17 UTC · Oct 8, 2024Threat actor60
AI-Powered Rhadamanthys Stealer Targets Crypto Wallets with Image RecognitionThe Hacker News·Oct 2, 05:17 UTC · Oct 2, 2024Malware30
Rocinante Trojan Poses as Banking Apps to Steal Sensitive Data from Brazilian Android UsersThe Hacker News·Sep 10, 03:36 UTC · Sep 10, 2024Malware30
Threat actors using MacroPack to deploy Brute Ratel, Havoc and PhantomCore payloadsCisco Talos·Sep 3, 13:14 UTC · Sep 3, 2024Threat actor45
APT-C-60 Group Exploit WPS Office Flaw to Deploy SpyGlace BackdoorThe Hacker News·Aug 29, 04:31 UTC · Aug 29, 2024MalwareCVE-2024-7262CVE-2024-726360
CrowdStrike Warns of New Phishing Scam Targeting German CustomersThe Hacker News·Jul 29, 12:19 UTC · Jul 29, 2024Phishing & fraud155
Cybercriminals Exploit Free Software Lures to Deploy Hijack Loader and Vidar StealerThe Hacker News·Jun 18, 15:55 UTC · Jun 18, 2024Malware30
Sticky Werewolf Expands Cyber Attack Targets in Russia and BelarusThe Hacker News·Jun 10, 05:29 UTC · Jun 10, 2024Malware42
Navigating the Vast Ocean of Sandbox EvasionsPalo Alto Unit 42·Jun 5, 17:00 UTC · Jun 5, 2024Vulnerability42
Latrodectus Malware Loader Emerges as IcedID's Successor in Phishing CampaignsThe Hacker News·May 21, 11:12 UTC · May 21, 2024Malware30
Hackers Using Sneaky HTML Smuggling to Deliver Malware via Fake Google SitesThe Hacker News·Apr 11, 11:07 UTC · Apr 11, 2024Malware30
Mispadu Trojan Targets Europe, Thousands of Credentials CompromisedThe Hacker News·Apr 9, 03:51 UTC · Apr 9, 2024MalwareCVE-2023-3602547
The most prevalent malware behaviors and techniquesHelp Net Security·Mar 20, 00:00 UTC · Mar 20, 2024Malware30
Invoice Phishing Alert: TA866 Deploys WasabiSeed & Screenshotter MalwareThe Hacker News·Jan 25, 13:46 UTC · Jan 25, 2024Malware30
Lazarus Group Using Log4j Exploits to Deploy Remote Access TrojansThe Hacker News·Dec 12, 04:59 UTC · Dec 12, 2023MalwareCVE-2021-44228CVE-2021-44832CVE-2023-4279360
Kaspersky malware report for Q3 2023Kaspersky Securelist·Dec 1, 16:01 UTC · Dec 1, 2023MalwareCVE-2023-23397CVE-2023-2932460
DarkGate campaign abuses Skype and TeamsSecurity Affairs·Oct 16, 07:19 UTC · Oct 16, 2023Threat actor57
Lighting the Exfiltration Infrastructure of a LockBit AffiliateSecurity Affairs·Oct 3, 09:01 UTC · Oct 3, 2023Ransomware57
Microsoft Teams users targeted in phishing attack delivering DarkGate malwareHelp Net Security·Sep 11, 00:00 UTC · Sep 11, 2023Malware30
Mispadu Banking Trojan Targets Latin America: 90,000+ Credentials StolenThe Hacker News·Jul 26, 10:56 UTC · Jul 26, 2023Malware42
Brazilian Cybercriminals Using LOLBaS and CMD Scripts to Drain Bank AccountsThe Hacker News·Jun 5, 04:48 UTC · Jun 5, 2023Malware30
Unmasking XE Group: Experts Reveal Identity of Suspected Cybercrime KingpinThe Hacker News·Jun 1, 14:55 UTC · Jun 1, 2023VulnerabilityCVE-2019-1893560
Armenia and Azerbaijan Hackers Use OxtaRAT to Monitor ConflictInfosecurity Magazine·Feb 17, 16:00 UTC · Feb 17, 2023Malware42
Armenian Entities Hit by New Version of OxtaRAT Spying ToolThe Hacker News·Feb 17, 12:47 UTC · Feb 17, 2023Malware42
TrickGate, a packer used by malware to evade detection since 2016Security Affairs·Feb 1, 07:24 UTC · Feb 1, 2023Malware30
LodaRAT Malware Resurfaces with New Variants Employing Updated FunctionalitiesThe Hacker News·Nov 19, 04:11 UTC · Nov 19, 2022Malware30
Threat Source newsletter (Nov. 17, 2022): Hot off the press! The Snort 2023 Calendar is hereCisco Talos·Nov 17, 19:01 UTC · Nov 17, 2022RansomwareCVE-2022-2046560
Prynt Stealer Contains a Backdoor to Steal Victims' Data Stolen by Other CybercriminalsThe Hacker News·Sep 3, 03:49 UTC · Sep 3, 2022Malware42
Researchers Warn of 'Matanbuchus' Malware Campaign Dropping Cobalt Strike BeaconsThe Hacker News·Jun 27, 10:00 UTC · Jun 27, 2022Malware30
Review: Group-IB Threat Intelligence & Attribution (TI&A)Help Net Security·Feb 1, 00:00 UTC · Feb 1, 2022Vulnerability142
Beware of Fake Telegram Messenger App Hacking PCs with Purple Fox MalwareThe Hacker News·Jan 6, 04:19 UTC · Jan 6, 2022Malware42
Purple Fox backdoor spreads through fake Telegram App installerSecurity Affairs·Jan 4, 12:39 UTC · Jan 4, 2022Malware42
Magnat malvertising campaigns spreads malicious Chrome extensions, backdoors and info stealersSecurity Affairs·Dec 6, 07:25 UTC · Dec 6, 2021Malware42
New Malvertising Campaigns Spreading Backdoors, Malicious Chrome ExtensionsThe Hacker News·Dec 4, 04:47 UTC · Dec 4, 2021Malware42
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
Unknown ransomware gang uses SQL injection bug in BillQuick Web Suite to deploy ransomwareSecurity Affairs·Oct 25, 21:13 UTC · Oct 25, 2021RansomwareCVE-2021-42258CVE-2021-42344CVE-2021-42345+6 CVEs60
Arrests of members of Tetrade seed groups Grandoreiro and MelcozKaspersky Securelist·Jul 14, 18:00 UTC · Jul 14, 2021Malware42
Necro Python bot adds new exploits and Tezos mining to its bag of tricksCisco Talos·Jun 3, 12:00 UTC · Jun 3, 2021VulnerabilityCVE-2021-3129CVE-2020-14882CVE-2017-014447
WINTRIAGE: THE TRIAGE TOOL FOR WINDOWS DFIRERSSecurity Affairs·Mar 18, 12:58 UTC · Mar 18, 2021Malware30