Rorschach Ransomware Emerges: Experts Warn of Advanced Evasion StrategiesThe Hacker News·Apr 6, 03:23 UTC · Apr 6, 2023RansomwareCVE-2022-41352160
Talos IR trends: BEC attacks surge, while weaknesses in MFA persistCisco Talos·Apr 25, 12:00 UTC · Apr 25, 2024Phishing & fraudCVE-2021-27876CVE-2023-27532147
Stayin' Alive campaign targets high-profile Asian government and telecom entities. Is it linked to ToddyCat APT?Security Affairs·Oct 13, 17:50 UTC · Oct 13, 2023Threat actor57
Cruciferra Crypter Uses Process Ghosting to Evade DetectionInfosecurity Magazine·Jul 20, 15:00 UTC · Jul 20, 2026Ransomware57
ToddyCat’s traffic tunneling and data extraction toolsKaspersky Securelist·Apr 22, 10:36 UTC · Apr 22, 2024Threat actor57
China-Linked Bronze Starlight Group Targeting Gambling Sector with Cobalt Strike BeaconsThe Hacker News·Jan 22, 08:28 UTC · Jan 22, 2025Ransomware57
⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160
Lazarus APT targeted employees at an unnamed nuclearSecurity Affairs·Dec 23, 08:07 UTC · Dec 23, 2024Threat actor57
IT threat evolution Q2 2018Kaspersky Securelist·Aug 6, 10:00 UTC · Aug 6, 2018Exploit / PoCCVE-2018-817460
Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy CirclesThe Hacker News·Apr 22, 07:58 UTC · Apr 22, 2026Threat actor57
Russia-Linked Gamaredon Uses Troop-Related Lures to Deploy Remcos RAT in UkraineThe Hacker News·Apr 1, 05:37 UTC · Apr 1, 2025Malware42
NailaoLocker ransomware targets EU healthcareSecurity Affairs·Feb 20, 15:48 UTC · Feb 20, 2025RansomwareCVE-2024-2491960
North Korean Hackers Using New VeilShell Backdoor in Stealthy Cyber AttacksThe Hacker News·Oct 3, 13:24 UTC · Oct 3, 2024Malware42
Mustang Panda Hackers Targets Philippines Government Amid South China Sea TensionsThe Hacker News·Jan 24, 04:25 UTC · Jan 24, 2024Threat actor57
Quarterly Report: Incident Response Trends in Q2 2022Cisco Talos·Jul 26, 14:03 UTC · Jul 26, 2022RansomwareCVE-2021-44228CVE-2021-4504660
Quarterly Report: Incident Response trends in Q1 2022Cisco Talos·Apr 26, 13:11 UTC · Apr 26, 2022Ransomware in the wildCVE-2021-44228CVE-2021-45046CVE-2021-22204+1 CVEs60
Talos Incident Response quarterly threat report — The top malware families and TTPs used in Q2 2021Cisco Talos·Aug 11, 12:00 UTC · Aug 11, 2021Malware55
Kremlin-Backed APT28 Targets Polish Institutions in LargeThe Hacker News·May 10, 09:55 UTC · May 10, 2024Threat actor60
IT threat evolution Q2 2021Kaspersky Securelist·Aug 12, 10:12 UTC · Aug 12, 2021RansomwareCVE-2018-0802CVE-2021-1732CVE-2021-28310+2 CVEs60
APT41-Linked Silver Dragon Targets Governments Using Cobalt Strike and Google Drive C2The Hacker News·Mar 4, 14:52 UTC · Mar 4, 2026Threat actor57
Chinese Group Silver Fox Uses Fake Websites to Deliver Sainbox RAT and Hidden RootkitThe Hacker News·Jun 27, 15:11 UTC · Jun 27, 2025Malware30
SteelFox and Rhadamanthys Malware Use Copyright Scams, Driver Exploits to Target VictimsThe Hacker News·Nov 8, 04:07 UTC · Nov 8, 2024MalwareCVE-2020-14979CVE-2021-4128547
Iranian MuddyWater Hackers Adopt New C2 Tool 'DarkBeatC2' in Latest CampaignThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2024Threat actor57
PlugX malware delivered by exploiting flaws in Chinese programsSecurity Affairs·Mar 11, 19:40 UTC · Mar 11, 2023Malware42
PlugX malware: A good hacker is an apologetic hackerKaspersky Securelist·Mar 10, 11:59 UTC · Mar 10, 2016Malware42
ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More StoriesThe Hacker News·Jul 9, 15:09 UTC · Jul 9, 2026Phishing & fraudCVE-2026-918160
CPUID Breach Distributes STX RAT via Trojanized CPUThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Malware30
⚡ Weekly Recap: Apple 0-Days, WinRAR Exploit, LastPass Fines, .NET RCE, OAuth Scams & MoreThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-14174CVE-2025-43529CVE-2025-6218+43 CVEs60
China-Linked Tick Group Exploits Lanscope ZeroThe Hacker News·Nov 1, 13:31 UTC · Nov 1, 2025Exploit / PoCCVE-2025-61932CVE-2016-783660
TA455’s Iranian Dream Job Campaign Targets Aerospace with MalwareInfosecurity Magazine·Nov 12, 16:30 UTC · Nov 12, 2024Malware42
Cyberattackers Exploit Google Sheets for Malware Control in Likely Espionage CampaignThe Hacker News·Oct 25, 05:16 UTC · Oct 25, 2024Malware42
RedCurl Cybercrime Group Abuses Windows PCA Tool for Corporate EspionageThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2024Threat actor57
New OXLOADER Loader Uses Malicious Google Ads to Deliver CastleStealerThe Hacker News·Jun 23, 08:36 UTC · Jun 23, 2026Malware30
LeakNet Ransomware Uses ClickFix via Hacked Sites, Deploys Deno InThe Hacker News·Mar 17, 14:34 UTC · Mar 17, 2026Ransomware57
APT24 Deploys BADAUDIO in Years-Long Espionage Hitting Taiwan and 1,000+ DomainsThe Hacker News·Nov 22, 06:13 UTC · Nov 22, 2025Threat actorCVE-2012-0158CVE-2014-1761CVE-2025-808860
PUBLOAD and Pubshell Malware Used in Mustang Panda's TibetThe Hacker News·Jun 28, 07:01 UTC · Jun 28, 2025Malware42
APT29 Deploys GRAPELOADER Malware Targeting European Diplomats Through WineThe Hacker News·Apr 20, 04:58 UTC · Apr 20, 2025Malware55
Vice Society: Profiling a Persistent Threat to the Education SectorPalo Alto Unit 42·Jun 5, 17:12 UTC · Jun 5, 2024RansomwareCVE-2021-3452760
Open-Source Xeno RAT Trojan Emerges as a Potent Threat on GitHubThe Hacker News·Feb 28, 03:29 UTC · Feb 28, 2024Malware42
Beware: Malicious Google Ads Trick WinSCP Users into Installing MalwareThe Hacker News·Nov 20, 06:04 UTC · Nov 20, 2023Malware30