From Ransomware to Residency: Inside the Rise of the Digital ParasiteThe Hacker News·Feb 10, 13:59 UTC · Feb 10, 2026Ransomware57
APT28 Uses Microsoft Office CVE-2026-21509 in EspionageThe Hacker News·Feb 4, 16:49 UTC · Feb 4, 2026VulnerabilityCVE-2026-21509147
Microsoft: Info-Stealing malware expands from Windows to macOSSecurity Affairs·Feb 4, 11:30 UTC · Feb 4, 2026Malware42
Multi-Stage Phishing Campaign Targets Russia with Amnesia RAT and RansomwareThe Hacker News·Jan 24, 11:09 UTC · Jan 24, 2026Ransomware57
ThreatsDay Bulletin: Pixel Zero-Click, Redis RCE, China C2s, RAT Ads, Crypto Scams & 15+ StoriesThe Hacker News·Jan 24, 08:04 UTC · Jan 24, 2026Vulnerability55
LOTUSLITE Backdoor Targets U.S. Policy Entities Using VenezuelaThe Hacker News·Jan 19, 06:16 UTC · Jan 19, 2026Malware42
China-linked UAT-7290 spies on telco in South Asia and Europe using modular malwareSecurity Affairs·Jan 9, 10:48 UTC · Jan 9, 2026Malware42
The HoneyMyte APT now protects malware with a kernelKaspersky Securelist·Dec 29, 11:28 UTC · Dec 29, 2025Malware42
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
CISA Reports PRC Hackers Using BRICKSTORM for LongThe Hacker News·Dec 5, 09:15 UTC · Dec 5, 2025Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-38812+3 CVEs160
The Hidden Cascade: Why Law Firm Breaches Destroy More than DataRecorded Future·Dec 5, 00:00 UTC · Dec 5, 2025Ransomware60
Talking to RATs: Assessing Corporate Risk by Analyzing Remote Access Trojan InfectionsRecorded Future·Nov 28, 00:00 UTC · Nov 28, 2025Malware42
⚡ Weekly Recap: Fortinet Exploit, Chrome 0-Day, BadIIS Malware, Record DDoS, SaaS Breach & MoreThe Hacker News·Nov 24, 12:32 UTC · Nov 24, 2025Malware in the wildCVE-2025-58034CVE-2025-64446CVE-2025-13223+12 CVEs60
The Tsundere botnet uses the Ethereum blockchain to infect its targetsKaspersky Securelist·Nov 21, 08:21 UTC · Nov 21, 2025Malware42
Python-Based WhatsApp Worm Spreads Eternidade Stealer Across Brazilian DevicesThe Hacker News·Nov 21, 06:45 UTC · Nov 21, 2025Malware30
⚡ Weekly Recap: NFC Fraud, Curly COMrades, NThe Hacker News·Nov 20, 10:46 UTC · Nov 20, 2025Phishing & fraud in the wildCVE-2025-8875CVE-2025-8876CVE-2025-26633+36 CVEs60
Iranian Hackers Use DEEPROOT and TWOSTROKE Malware in Aerospace and Defense AttacksThe Hacker News·Nov 19, 08:38 UTC · Nov 19, 2025Malware42
Researchers Detail Tuoni C2's Role in an Attempted 2025 RealThe Hacker News·Nov 18, 14:00 UTC · Nov 18, 2025Vulnerability30
Iranian Hackers Launch ‘SpearSpecter’ Spy Operation on Defense & Government TargetsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Malware42
WhatsApp Malware 'Maverick' Hijacks Browser Sessions to Target Brazil's Biggest BanksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Malware42
2025 Cloud Threat Hunting and Defense LandscapeRecorded Future·Nov 6, 00:00 UTC · Nov 6, 2025Ransomware57
Ransomware Defense Using the Wazuh Open Source PlatformThe Hacker News·Nov 4, 11:06 UTC · Nov 4, 2025Ransomware60
Android Apps misusing NFC and HCE to steal payment data on the riseSecurity Affairs·Nov 3, 14:14 UTC · Nov 3, 2025Malware30
Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain AttackThe Hacker News·Oct 31, 17:12 UTC · Oct 31, 2025Malware42
PhantomCaptcha targets Ukraine relief groups with WebSocket RAT in October 2025Security Affairs·Oct 22, 20:01 UTC · Oct 22, 2025Malware42
Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF FilesThe Hacker News·Oct 22, 16:55 UTC · Oct 22, 2025Malware42
PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet CampaignThe Hacker News·Oct 21, 14:54 UTC · Oct 21, 2025MalwareCVE-2023-2011847
⚡ Weekly Recap: F5 Breached, Linux Rootkits, Pixnapping Attack, EtherHiding & MoreThe Hacker News·Oct 20, 19:00 UTC · Oct 20, 2025Data breachCVE-2025-20352CVE-2025-48561CVE-2025-24990+18 CVEs160
⚡ Weekly Recap: WhatsApp Worm, Critical CVEs, Oracle 0The Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Ransomware in the wildCVE-2025-61882CVE-2025-61884CVE-2025-10035+12 CVEs160
How a machine-learning model in Kaspersky SIEM detected DLLKaspersky Securelist·Oct 6, 08:00 UTC · Oct 6, 2025VulnerabilityCVE-2021-2707635
Seniors targeted in global Facebook scam spreading new Android malwareThe Record·Oct 1, 13:58 UTC · Oct 1, 2025Malware30
Phishing Campaign Evolves into PureRAT DeploymentInfosecurity Magazine·Sep 25, 16:00 UTC · Sep 25, 2025Malware30
New YiBackdoor Malware Shares Major Code Overlaps with IcedID and LatrodectusThe Hacker News·Sep 24, 11:28 UTC · Sep 24, 2025Malware42
Secret Blizzard Deploys Kazuar Backdoor in Ukraine Using Amadey Malware-as-aThe Hacker News·Sep 19, 07:50 UTC · Sep 19, 2025Malware42
RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global ScaleRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actorCVE-2022-24682CVE-2022-27924CVE-2022-27925+2 CVEs60
BlueBravo Adapts to Target Diplomatic Entities with GraphicalProton MalwareRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Malware42
Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan TargetsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2022-1040CVE-2022-3019060
China-Nexus TAG-112 Compromises Tibetan Websites to Distribute Cobalt StrikeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability42
2024 Malicious Infrastructure Insights: Key Trends and ThreatsRecorded Future·Aug 20, 00:00 UTC · Aug 20, 2025Ransomware57