The OilRig Campaign: Attacks on Saudi Arabian Organizations Deliver Helminth BackdoorPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Malware42
From HealthKick to GOVERSHELL: The Evolution of UTA0388's Espionage MalwareThe Hacker News·Oct 9, 17:19 UTC · Oct 9, 2025Malware42
New COLDRIVER Malware Campaign Joins BO Team and Bearlyfy in RussiaThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Malware42
New Bert Ransomware Group Strikes Globally with Multiple VariantsInfosecurity Magazine·Jul 8, 09:00 UTC · Jul 8, 2025Ransomware57
Russia takes unusual route to hack StarlinkArs Technica · Security·Dec 11, 23:18 UTC · Dec 11, 2024Vulnerability42
A new fileless variant of Remcos RAT observed in the wildSecurity Affairs·Nov 11, 14:46 UTC · Nov 11, 2024MalwareCVE-2017-019947
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
Analysis of the BlackJack group: techniques, tools, and similarities with TwelveKaspersky Securelist·Sep 25, 10:00 UTC · Sep 25, 2024Ransomware57
Iranian MuddyWater Hackers Adopt New C2 Tool 'DarkBeatC2' in Latest CampaignThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2024Threat actor57
Quarterly Report: Incident Response Trends in Q1 2023Cisco Talos·Apr 26, 12:00 UTC · Apr 26, 2023Ransomware57
Updates from the MaaS: new threats delivered through NullMixerSecurity Affairs·Mar 27, 13:41 UTC · Mar 27, 2023Malware42
Farming Malicious Documents to Unravel RansomwarePalo Alto Unit 42·Mar 15, 17:04 UTC · Mar 15, 2023Ransomware57
Quarterly Report: Incident Response Trends in Q3 2022Cisco Talos·Oct 25, 12:00 UTC · Oct 25, 2022RansomwareCVE-2020-147260
Microsoft Issues Improved Mitigations for Unpatched Exchange Server VulnerabilitiesThe Hacker News·Oct 10, 03:51 UTC · Oct 10, 2022Vulnerability in the wildCVE-2022-41040CVE-2022-41082160
Andariel deploys DTrack and Maui ransomwareKaspersky Securelist·Aug 9, 14:25 UTC · Aug 9, 2022RansomwareCVE-2017-1027160
Experts warn of a spike in APT35 activity and a link to Memento opSecurity Affairs·Feb 2, 11:56 UTC · Feb 2, 2022Threat actorCVE-2021-2197260
Iran-linked MuddyWater APT group campaign targets Turkish entitiesSecurity Affairs·Feb 1, 11:09 UTC · Feb 1, 2022Threat actor57
Researchers Uncover New Iranian Hacking Campaign Targeting Turkish UsersThe Hacker News·Feb 1, 08:47 UTC · Feb 1, 2022Threat actor57
The BlueNoroff cryptocurrency hunt is still onKaspersky Securelist·Jan 13, 09:00 UTC · Jan 13, 2022VulnerabilityCVE-2017-019947
Quarterly Report: Incident Response trends from Fall 2020Cisco Talos·Dec 9, 14:32 UTC · Dec 9, 2020RansomwareCVE-2020-0688CVE-2020-116511CVE-2020-11652+1 CVEs60
Cisco Talos Advisory on Adversaries Targeting the Healthcare and Public Health SectorCisco Talos·Oct 30, 21:30 UTC · Oct 30, 2020Advisory42
TrickBot gangs developed the PowerTrick backdoor for highSecurity Affairs·Jan 9, 19:36 UTC · Jan 9, 2020Malware42
Cryptocurrency miners aren’t dead yet: Documenting the voracious but simple “Panda”Cisco Talos·Sep 17, 15:09 UTC · Sep 17, 2019Exploit / PoCCVE-2017-10271CVE-2017-563860
OilRig APT group targets high-ranking office in a Middle Eastern nationSecurity Affairs·Sep 14, 13:15 UTC · Sep 14, 2018Threat actor57
New APT Campaign based on Poison Ivy RAT with C&C in China has been reversed by MalwareMustDieSecurity Affairs·Mar 21, 12:06 UTC · Mar 21, 2017Malware42
Hackers Leverage Blockchain to Hit Japan's Hotels Through Booking.comInfosecurity Magazine·Jun 30, 10:30 UTC · Jun 30, 2026Malware42
Hospitality Sector Hit by Phishing Campaign Using Fake Guest Complaint EmailsSecurity Affairs·Jun 28, 15:07 UTC · Jun 28, 2026Threat actor157
Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsThe Hacker News·May 11, 18:22 UTC · May 11, 2026Data breach57
ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool InstallersThe Hacker News·Mar 31, 11:33 UTC · Mar 31, 2026Malware42
Multi-Stage Phishing Campaign Targets Russia with Amnesia RAT and RansomwareThe Hacker News·Jan 24, 11:09 UTC · Jan 24, 2026Ransomware57
New Malware Campaign Delivers Remcos RAT Through MultiThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Malware42
New Cloud Atlas APT campaignKaspersky Securelist·Dec 19, 10:00 UTC · Dec 19, 2025Threat actorCVE-2018-080260
Researchers Warn of Self-Spreading WhatsApp Malware Named SORVEPOTELThe Hacker News·Nov 11, 18:16 UTC · Nov 11, 2025Malware42
Russian Hackers Target Ukrainian Organizations Using Stealthy Living-Off-theThe Hacker News·Oct 30, 09:41 UTC · Oct 30, 2025RansomwareCVE-2025-808860
Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF FilesThe Hacker News·Oct 22, 16:55 UTC · Oct 22, 2025Malware42
Russian Coldriver Hackers Deploy New ‘NoRobot’ MalwareInfosecurity Magazine·Oct 21, 11:02 UTC · Oct 21, 2025Malware42
Secret Blizzard Deploys Kazuar Backdoor in Ukraine Using Amadey Malware-as-aThe Hacker News·Sep 19, 07:50 UTC · Sep 19, 2025Malware42