Harmful Help: Analyzing a Malicious Compiled HTML Help File Delivering Agent TeslaPalo Alto Unit 42·Jun 5, 22:35 UTC · Jun 5, 2024Malware30
BlueSky Ransomware: Fast Encryption via MultithreadingPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024RansomwareCVE-2020-0796CVE-2021-173260
More Than Meets the Eye: Exposing a Polyglot File That Delivers IcedIDPalo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Malware30
Banking Trojan Techniques: How Financially Motivated Malware Became InfrastructurePalo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024Malware55
Navigating the Vast Ocean of Sandbox EvasionsPalo Alto Unit 42·Jun 5, 17:00 UTC · Jun 5, 2024Vulnerability42
APT41: The threat of KeyPlug against Italian industriesSecurity Affairs·May 23, 13:18 UTC · May 23, 2024Threat actor57
New R Programming Vulnerability Exposes Projects to Supply Chain AttacksThe Hacker News·Apr 30, 03:39 UTC · Apr 30, 2024VulnerabilityCVE-2024-27322147
Hackers hijacked the eScan Antivirus update mechanism in malware campaignSecurity Affairs·Apr 24, 13:53 UTC · Apr 24, 2024Malware42
eScan Antivirus Update Mechanism Exploited to Spread Backdoors and MinersThe Hacker News·Apr 24, 07:02 UTC · Apr 24, 2024Malware42
Famous YouTube Channels Hacked to Distribute InfostealersInfosecurity Magazine·Apr 8, 13:00 UTC · Apr 8, 2024Malware30
What we know about the xz Utils backdoor that almost infected the worldArs Technica · Security·Apr 1, 06:55 UTC · Apr 1, 2024Malware55
Iranian Phishing Campaign Targets IsraelInfosecurity Magazine·Jan 18, 15:33 UTC · Jan 18, 2024Threat actor57
500 million WinRAR users open to compromise via a 19-year-old flawHelp Net Security·Dec 14, 14:20 UTC · Dec 14, 2023Exploit / PoC60
Experts warn of a surge in NetSupport RAT attacksSecurity Affairs·Nov 21, 11:00 UTC · Nov 21, 2023Malware30
North Korean Hackers Target macOS Crypto Engineers With KandykornInfosecurity Magazine·Nov 1, 17:00 UTC · Nov 1, 2023Malware30
Biggest DDoSes of all time generated by protocol 0Ars Technica · Security·Oct 15, 00:00 UTC · Oct 15, 2023Vulnerability55
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
Attackers target govt networks exploiting Fortinet SSL-VPN CVE-2022Security Affairs·Sep 8, 10:53 UTC · Sep 8, 2023Exploit / PoC in the wildCVE-2022-4247560
WinRAR 0-day that uses poisoned JPG and TXT files under exploit since AprilArs Technica · Security·Aug 23, 19:34 UTC · Aug 23, 2023Exploit / PoC in the wildCVE-2023-38831CVE-2018-2025060
Carderbee APT targets Hong Kong orgs via supply chain attacksSecurity Affairs·Aug 23, 08:21 UTC · Aug 23, 2023Malware42
Thousands of Android Malware Apps Using Stealthy APK Compression to Evade DetectionThe Hacker News·Aug 19, 06:28 UTC · Aug 19, 2023Malware30
Python-Based PyLoose Fileless Attack Targets Cloud Workloads for Cryptocurrency MiningThe Hacker News·Jul 12, 07:39 UTC · Jul 12, 2023Threat actor45
How Joe Marshall helps defend everything from electrical grids to grain coCisco Talos·Jun 5, 11:00 UTC · Jun 5, 2023Vulnerability55
Meet the GoldenJackal APT group. Don’t expect any howlsKaspersky Securelist·May 22, 14:30 UTC · May 22, 2023Threat actor57
Emotet Rises Again: Evades Macro Security via OneNote AttachmentsThe Hacker News·Mar 21, 05:20 UTC · Mar 21, 2023Ransomware57
Malvertising in Google search results delivering stealersKaspersky Securelist·Mar 9, 10:00 UTC · Mar 9, 2023Malware30
ChromeLoader Malware Targeting Gamers via Fake Nintendo and Steam Game HacksThe Hacker News·Feb 27, 10:53 UTC · Feb 27, 2023Malware42
ChromeLoader campaign uses VHD files disguised as cracked games and pirated softwareSecurity Affairs·Feb 27, 08:33 UTC · Feb 27, 2023Malware42
FortiOS Flaw Exploited as Zero-Day in Attacks on Government and OrganizationsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023Exploit / PoCCVE-2022-4247560
FortiOS flaw was exploited to compromise governmental targets (CVE-2022-42475)Help Net Security·Jan 13, 00:00 UTC · Jan 13, 2023Vulnerability in the wildCVE-2022-4247560
Password stealer now spreading from a GitHub link that uses NFT content as baitThe Record·Jan 12, 00:00 UTC · Jan 12, 2023MalwareCVE-2021-26411135
Malicious Tor Browser spreads through YouTubeKaspersky Securelist·Oct 4, 10:00 UTC · Oct 4, 2022Vulnerability30
Threat actors use Quantum Builder to deliver Agent Tesla malwareSecurity Affairs·Sep 28, 15:43 UTC · Sep 28, 2022Malware42
NullMixer drops Redline Stealer, SmokeLoader and other malwareKaspersky Securelist·Sep 26, 08:00 UTC · Sep 26, 2022Malware42
CISA Issues Warning on Active Exploitation of UnRAR Software for Linux SystemsThe Hacker News·Aug 11, 03:56 UTC · Aug 11, 2022Ransomware in the wildCVE-2022-30333CVE-2022-3471360
ToddyCat: Unveiling an unknown APT actor attacking highKaspersky Securelist·Jun 21, 10:00 UTC · Jun 21, 2022Vulnerability42