Tonto Team Uses Anti-Malware File to Launch Attacks on South Korean InstitutionsThe Hacker News·Apr 28, 06:44 UTC · Apr 28, 2023Malware42
Core Members of DoppelPaymer Ransomware Gang Targeted in Germany and UkraineThe Hacker News·Mar 7, 13:24 UTC · Mar 7, 2023Ransomware57
ChromeLoader campaign uses VHD files disguised as cracked games and pirated softwareSecurity Affairs·Feb 27, 08:33 UTC · Feb 27, 2023Malware42
Microsoft and FireEye Detail New Malware Used by SolarWinds HackersThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Malware42
Blind Eagle Hackers Return with Refined Tools and Sophisticated Infection ChainThe Hacker News·Jan 7, 17:46 UTC · Jan 7, 2023Malware42
BlueNoroff APT Hackers Using New Ways to Bypass Windows MotW ProtectionThe Hacker News·Dec 28, 09:06 UTC · Dec 28, 2022Malware42
Hack-for-Hire Group Targets Travel and Financial Entities with New Janicab Malware VariantThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2022Malware42
Russian Gamaredon Hackers Target Ukrainian Government Using InfoThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Malware42
Researchers Uncover Kimusky Infra Targeting South Korean Politicians and DiplomatsThe Hacker News·Aug 29, 02:51 UTC · Aug 29, 2022Malware42
Russia-linked Armageddon APT targets Ukrainian state organizationsSecurity Affairs·Apr 5, 20:28 UTC · Apr 5, 2022Malware42
Russia-linked InvisiMole APT targets state organizations of UkraineSecurity Affairs·Mar 22, 00:11 UTC · Mar 22, 2022Malware42
What’s with the shared VBA code between Transparent Tribe and other threat actors?Cisco Talos·Feb 9, 13:05 UTC · Feb 9, 2022Threat actor57
Updated PClock Ransomware Still Comes Up ShortPalo Alto Unit 42·Jan 28, 22:09 UTC · Jan 28, 2022Ransomware57
Over a Dozen Malicious NPM Packages Caught Hijacking Discord ServersThe Hacker News·Dec 9, 07:02 UTC · Dec 9, 2021Malware42
Operation “Armor Piercer:” Targeted attacks in the Indian subcontinent using commercial RATsCisco Talos·Sep 23, 12:01 UTC · Sep 23, 2021Vulnerability42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
GoldMax, GoldFinder, and Sibot, 3 new malware used by SolarWinds attackersSecurity Affairs·Mar 5, 20:00 UTC · Mar 5, 2021Malware42
Researchers Find 3 New Malware Strains Used by SolarWinds HackersThe Hacker News·Mar 5, 09:20 UTC · Mar 5, 2021Malware42
Adaptive protection against invisible threatsKaspersky Securelist·Dec 14, 12:00 UTC · Dec 14, 2020Ransomware57
Ransomware operators use fake Microsoft Teams updates to deploy Cobalt StrikeSecurity Affairs·Nov 10, 13:24 UTC · Nov 10, 2020Ransomware57
Threat Roundup for September 4 to September 11Cisco Talos·Sep 11, 19:13 UTC · Sep 11, 2020Ransomware57
Microsoft warns about ongoing PonyFinal ransomware attacksSecurity Affairs·May 27, 21:58 UTC · May 27, 2020Ransomware57
Vollgar botnet has managed to infect around 3k MSSQL DB servers dailySecurity Affairs·Apr 1, 15:50 UTC · Apr 1, 2020Malware42
WARNING: Hackers Install Secret Backdoor on Thousands of Microsoft SQL ServersThe Hacker News·Apr 1, 13:02 UTC · Apr 1, 2020Malware42
TrickBot Now Exploits Infected PCs to Launch RDP Brute Force AttacksThe Hacker News·Mar 18, 08:39 UTC · Mar 18, 2020Ransomware57
Fox Kitten Campaign - Iranian hackers exploit 1Security Affairs·Feb 17, 06:07 UTC · Feb 17, 2020Threat actorCVE-2019-11510CVE-2018-13379CVE-2019-1579+1 CVEs60
U.S. taxpayers hit by a phishing campaign delivering the Amadey botSecurity Affairs·Sep 20, 14:52 UTC · Sep 20, 2019Threat actor57
Malware peddlers hit Office users with old but reliable exploitHelp Net Security·Jun 10, 00:00 UTC · Jun 10, 2019MalwareCVE-2017-11882CVE-2018-080247
APT10 is back with two new loaders and new versions of known payloadsSecurity Affairs·May 28, 05:48 UTC · May 28, 2019Malware42
Inception Attackers Target Europe with YearPalo Alto Unit 42·Mar 19, 16:47 UTC · Mar 19, 2019VulnerabilityCVE-2017-11882CVE-2012-185647
SLUB Backdoor leverages GitHub and Slack in targeted attacksSecurity Affairs·Mar 9, 05:53 UTC · Mar 9, 2019MalwareCVE-2018-8174CVE-2015-170147
Threat actors using FrameworkPOS malware in POS attacksSecurity Affairs·Mar 4, 07:40 UTC · Mar 4, 2019Malware42
Connecting the dots between recently active cryptominersCisco Talos·Dec 18, 16:33 UTC · Dec 18, 2018Malware42
OilRig Malware Campaign Updates Toolset and Expands TargetsPalo Alto Unit 42·Nov 1, 10:23 UTC · Nov 1, 2018Malware42
New Malware Combines Ransomware, Coin Mining and Botnet Features in OneThe Hacker News·Sep 19, 15:32 UTC · Sep 19, 2018RansomwareCVE-2016-308860
OilRig APT group targets high-ranking office in a Middle Eastern nationSecurity Affairs·Sep 14, 13:15 UTC · Sep 14, 2018Threat actor57