OctLurk and SilkLurk: new Backdoors in Central AsiaKaspersky Securelist·Jul 31, 09:44 UTC · Jul 31, 2026Malware42
Phishing Campaign Hides Lua Loader as TrueType Font FileInfosecurity Magazine·Jul 16, 15:00 UTC · Jul 16, 2026Malware30
Magecart skimmer turns Stripe into a malware command serverSansec (Magento / e-commerce security)·Jun 4, 05:31 UTC · Jun 4, 2026Malware42
DeepLoad Malware Uses ClickFix and WMI Persistence to Steal Browser CredentialsThe Hacker News·Mar 31, 06:09 UTC · Mar 31, 2026Malware30
UAT-9244 targets South American telecommunication providers with three new malware implantsCisco Talos·Mar 5, 11:00 UTC · Mar 5, 2026Malware55
Experts Confirm JS#SMUGGLER Uses Compromised Sites to Deploy NetSupport RATThe Hacker News·Dec 10, 07:34 UTC · Dec 10, 2025Malware30
MuddyWater strikes Israel with advanced MuddyViper malwareSecurity Affairs·Dec 2, 15:19 UTC · Dec 2, 2025Malware42
CastleLoader Malware Infects 469 Devices Using Fake GitHub Repos and ClickFix PhishingThe Hacker News·Oct 14, 05:07 UTC · Oct 14, 2025Malware42
Google Exposes Vishing Group UNC6040 Targeting Salesforce with Fake Data Loader AppThe Hacker News·Aug 10, 08:00 UTC · Aug 10, 2025Malware30
Credential Theft and Remote Access Surge as AllaKore, PureRAT, and Hijack Loader ProliferateThe Hacker News·Jul 23, 10:46 UTC · Jul 23, 2025Malware30
MaaS operation using Emmenhtal and Amadey linked to threats against Ukrainian entitiesCisco Talos·Jul 17, 10:00 UTC · Jul 17, 2025Malware30
FIN7, FIN8, and Others Use Ragnar Loader for Persistent Access and Ransomware OperationsThe Hacker News·Mar 8, 11:50 UTC · Mar 8, 2025Ransomware60
Kaspersky report on APT trends in Q3 2024Kaspersky Securelist·Nov 28, 10:00 UTC · Nov 28, 2024Vulnerability42
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
Suspected CoralRaider continues to expand victimology using three information stealersCisco Talos·Apr 23, 12:42 UTC · Apr 23, 2024Malware30
Alert: New Phishing Attack Delivers Keylogger Disguised as Bank Payment NoticeThe Hacker News·Mar 28, 14:27 UTC · Mar 28, 2024Phishing & fraudCVE-2023-3602535
Ande Loader Malware Targets Manufacturing Sector in North AmericaThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2024Malware42
New Rugmi Malware Loader Surges with Hundreds of Daily DetectionsThe Hacker News·Dec 28, 11:08 UTC · Dec 28, 2023Malware30
MalVirt Loaders Exploit .NET Virtualization to Deliver Malvertising AttacksInfosecurity Magazine·Feb 3, 18:00 UTC · Feb 3, 2023Malware55
Hong Kong gov’t orgs targeted for over a year with Spyder Loader malware: reportThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Malware42
Hackers Deploy Bumblebee Loader to Breach Target NetworksInfosecurity Magazine·Aug 18, 17:00 UTC · Aug 18, 2022Malware55
China-linked APT Bronze Starlight deploys ransomware as a smokescreenSecurity Affairs·Jun 26, 13:40 UTC · Jun 26, 2022Ransomware57
MoonBounce: the dark side of UEFI firmwareKaspersky Securelist·Jan 20, 10:00 UTC · Jan 20, 2022Malware42
Experts warn of a new stealthy loader tracked as BLISTERSecurity Affairs·Dec 24, 10:26 UTC · Dec 24, 2021Malware30
Magnat campaigns use malvertising to deliver information stealer, backdoor and malicious Chrome extensionCisco Talos·Dec 2, 12:48 UTC · Dec 2, 2021Malware42
FIN7 Hackers group is back with a new loader and a new RATSecurity Affairs·Oct 12, 14:53 UTC · Oct 12, 2019Malware42
PlugX Uses Legitimate Samsung Application for DLL SidePalo Alto Unit 42·Nov 1, 09:43 UTC · Nov 1, 2018VulnerabilityCVE-2012-015835
The Mystery of Duqu: Part FiveKaspersky Securelist·Nov 15, 18:15 UTC · Nov 15, 2011VulnerabilityCVE-2011-340235
Threat Actors Continue to Abuse Google Tag Manager for Payment Card e-SkimmingRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actor45
PipeMagic in 2025: How the backdoor operators’ tactics have changedKaspersky Securelist·Aug 18, 09:00 UTC · Aug 18, 2025MalwareCVE-2025-29824CVE-2017-014447
SEO Poisoning Campaign Targets 8,500+ SMB Users with Malware Disguised as AI ToolsThe Hacker News·Jul 11, 04:03 UTC · Jul 11, 2025Malware42
Lazarus APT updates its toolset in watering hole attacksKaspersky Securelist·Apr 24, 05:00 UTC · Apr 24, 2025Threat actor60
Europol Arrests Five SmokeLoader Clients Linked by Seized Database EvidenceThe Hacker News·Apr 10, 09:55 UTC · Apr 10, 2025Malware42
SilentCryptoMiner distributed as a bypass toolKaspersky Securelist·Mar 5, 10:22 UTC · Mar 5, 2025Malware30
SteelFox Trojan imitates popular products to drop stealer and miner malwareKaspersky Securelist·Nov 6, 10:00 UTC · Nov 6, 2024MalwareCVE-2020-1497935
New banking trojan “CarnavalHeist” targets Brazil with overlay attacksCisco Talos·May 31, 12:00 UTC · May 31, 2024Malware30