Transparent Tribe campaign uses new bespoke malware to target Indian government officialsCisco Talos·Mar 29, 12:01 UTC · Mar 29, 2022Malware30
A China-aligned espionage group is targeting global telecoms, sweeping up call data dating back yearsCyberScoop·Oct 19, 13:20 UTC · Oct 19, 2021Threat actor in the wild60
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
Popular Android apps are rife with cryptographic vulnerabilitiesHelp Net Security·Sep 8, 00:00 UTC · Sep 8, 2020Vulnerability30
Cisco fixes small business routers, kills eavesdropping vulnerability in conferencing devicesHelp Net Security·Nov 10, 10:47 UTC · Nov 10, 2019Vulnerability in the wild60
Magecart attackers target mobile users of hotel chain booking websitesSecurity Affairs·Sep 20, 06:58 UTC · Sep 20, 2019Threat actor45
New HawkEye Reborn Variant Emerges Following Ownership ChangeCisco Talos·Apr 15, 16:37 UTC · Apr 15, 2019VulnerabilityCVE-2017-1188235
North Korea-linked Lazarus APT uses first Mac malware in cryptocurrency exchange attackSecurity Affairs·Aug 24, 15:17 UTC · Aug 24, 2018Malware42
Two Mac malware-as-a-Service offerings uncoveredHelp Net Security·Jun 26, 21:22 UTC · Jun 26, 2018Malware42
OceanLotus APT is very active, it used new Backdoor in recent campaignsSecurity Affairs·Mar 14, 15:15 UTC · Mar 14, 2018Malware42
The Hajime Botnet continues to grow and implements a new attack techniqueSecurity Affairs·Dec 29, 13:45 UTC · Dec 29, 2017Malware30
Crooks abused the Orcus RAT to target Bitcoin investorsSecurity Affairs·Dec 12, 20:41 UTC · Dec 12, 2017Malware30
Symantec is monitoring the Hajime IoT malware, is it the work of vigilante hacker?Security Affairs·Apr 27, 08:18 UTC · Apr 27, 2017Malware30
AirDroid app opens millions of Android users to device compromiseHelp Net Security·Dec 4, 02:33 UTC · Dec 4, 2016Exploit / PoC57
BE2 extraordinary plugins, Siemens targeting, dev failsKaspersky Securelist·Feb 17, 23:37 UTC · Feb 17, 2015Malware42
“Red October”. Detailed Malware Description 4. Second Stage of AttackKaspersky Securelist·Jan 17, 16:06 UTC · Jan 17, 2013Malware42
LianSpy: Android spyware leveraging Yandex Disk as C2Kaspersky Securelist·Aug 5, 09:40 UTC · Aug 5, 2024Malware30
Halloware Ransomware, a new malware offered for sale on the Dark Web for Only $40Security Affairs·Dec 3, 08:33 UTC · Dec 3, 2017Ransomware57
Researchers find hardcoded passwords in popular buildingCyberScoop·Jan 15, 16:39 UTC · Jan 15, 2019Exploit / PoCCVE-2019-390660
FortiClient improper access control exposes users' VPN credentialsSecurity Affairs·Dec 14, 13:28 UTC · Dec 14, 2017Exploit / PoCCVE-2017-1418460
mHealth apps consistently expose PII and PHI through APIsHelp Net Security·Feb 12, 00:00 UTC · Feb 12, 2021Data breach60
Dridex banking Trojan and the FriedEx ransomware were developed by the same groupSecurity Affairs·Jan 29, 21:20 UTC · Jan 29, 2018Ransomware57
In ExPetr/Petya’s shadow, FakeCry ransomware wave hits UkraineKaspersky Securelist·Jul 4, 18:22 UTC · Jul 4, 2017Ransomware57
Thousands of Algolia API Keys Could Expose Users' DataInfosecurity Magazine·Nov 21, 17:00 UTC · Nov 21, 2022Threat actor60
Analyzing the Various Layers of AgentTesla’s PackingPalo Alto Unit 42·Sep 25, 17:00 UTC · Sep 25, 2017Malware30
Titanium: the Platinum group strikes againKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2019Malware42
Meta adds proof-based security to encrypted backupsHelp Net Security·May 5, 00:00 UTC · May 5, 2026Research30
From Linux to Windows – New Family of CrossKaspersky Securelist·Jan 29, 15:52 UTC · Jan 29, 2016Malware42
Forgot About Default Accounts? No Worries, GoScanSSH Didn’tCisco Talos·Mar 26, 14:45 UTC · Mar 26, 2018Malware30
Sofacy APT hits high profile targets with updated toolsetKaspersky Securelist·Dec 4, 10:59 UTC · Dec 4, 2015Data breachCVE-2015-259060
Ransom Cartel Ransomware: A Possible Connection With REvilPalo Alto Unit 42·Jun 5, 17:50 UTC · Jun 5, 2024Ransomware57
Malicious PyPI, npm, and Ruby Packages Exposed in Ongoing OpenThe Hacker News·Jun 4, 10:11 UTC · Jun 4, 2025Vulnerability142
Updates from the MaaS: new threats delivered through NullMixerSecurity Affairs·Mar 27, 13:41 UTC · Mar 27, 2023Malware42
Unveiling NKAbuse: a new multiplatform threat abusing the NKN protocolKaspersky Securelist·Dec 14, 13:00 UTC · Dec 14, 2023Exploit / PoCCVE-2017-563860
Andariel evolves to target South Korea with ransomwareKaspersky Securelist·Jun 15, 12:40 UTC · Jun 15, 2021Ransomware57
China-linked APT41 used Google Calendar as C2 to control its TOUGHPROGRESS malwareSecurity Affairs·May 29, 11:17 UTC · May 29, 2025Malware30
Finding vulnerabilities in ClipSp, the driver at the core of Windows’ Client License PlatformCisco Talos·Nov 25, 13:00 UTC · Nov 25, 2024VulnerabilityCVE-2024-38184CVE-2024-38185CVE-2024-38186+2 CVEs35