GoSerpent backdoor attacks in Southeast AsiaKaspersky Securelist·Jul 17, 09:23 UTC · Jul 17, 2026Malware42
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run CommandsThe Hacker News·Jul 17, 06:04 UTC · Jul 17, 2026Malware30
Claude Code and DeepSeek Powered Chinese Cyber Espionage CampaignSecurity Affairs·Jul 16, 09:16 UTC · Jul 16, 2026Threat actor157
SonicWall warns of active exploitation of two SMA 1000 zeroSecurity Affairs·Jul 15, 08:03 UTC · Jul 15, 2026Exploit / PoC in the wildCVE-2026-15409CVE-2026-15410CVE-2025-2300660
Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session TheftThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Data breach45
New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOSThe Hacker News·Jul 6, 18:41 UTC · Jul 6, 2026Malware30
Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government AttacksThe Hacker News·Jun 29, 15:08 UTC · Jun 29, 2026Threat actor57
UAC-0247 Targets Ukrainian Clinics and Government in DataThe Hacker News·Jun 27, 16:30 UTC · Jun 27, 2026Vulnerability30
Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js ImplantThe Hacker News·Jun 26, 09:27 UTC · Jun 26, 2026Threat actor57
Chaos malware expands from routers to Linux cloud serversHelp Net Security·Jun 19, 12:06 UTC · Jun 19, 2026Malware42
China-Linked FishMonger Ports SprySOCKS to Windows With Kernel-Level Stealth and UEFI Bootkit HintsSecurity Affairs·Jun 17, 08:10 UTC · Jun 17, 2026VulnerabilityCVE-2023-2493247
SprySOCKS Backdoor Expands From Linux to WindowsInfosecurity Magazine·Jun 16, 14:30 UTC · Jun 16, 2026Malware42
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160
ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New StoriesThe Hacker News·Jun 12, 05:36 UTC · Jun 12, 2026Vulnerability142
⚡ Weekly Recap: Instagram Account Hacks, Android ZeroThe Hacker News·Jun 9, 05:53 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2025-48595CVE-2026-28318CVE-2026-39210+43 CVEs60
Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersThe Hacker News·May 29, 05:44 UTC · May 29, 2026Malware30
GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack InfrastructureThe Hacker News·May 27, 15:23 UTC · May 27, 2026Malware42
Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessThe Hacker News·May 17, 07:19 UTC · May 17, 2026Malware42
Gremlin Stealer Evolves into Modular ThreatInfosecurity Magazine·May 15, 14:19 UTC · May 15, 2026Malware30
The vulnerability landscape in Q1 2026Kaspersky Securelist·May 7, 08:42 UTC · May 7, 2026VulnerabilityCVE-2018-0802CVE-2017-11882CVE-2017-0199+10 CVEs60
BeyondTrust Flaw Used for Web Shells, Backdoors, and Data ExfiltrationThe Hacker News·May 5, 14:09 UTC · May 5, 2026Malware in the wildCVE-2026-1731CVE-2024-1235660
Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT SystemsThe Hacker News·Apr 24, 09:29 UTC · Apr 24, 2026Malware55
IR Trends Q1 2026: Phishing reemerges as top initial access vector, as attacks targeting public administration persistCisco Talos·Apr 22, 10:00 UTC · Apr 22, 2026Phishing & fraud55
Red Access firewall-native SSE adds GenAI security and browser protection to existing firewallsHelp Net Security·Apr 15, 10:08 UTC · Apr 15, 2026Phishing & fraud55
Magento and the Log4j vulnerabilitySansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Vulnerability55
Novel WebRTC skimmer bypasses security controls at $100+ billion car makerSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Data breach in the wild60
Mirax Android Trojan Turns Devices Into Residential Proxy NodesInfosecurity Magazine·Apr 13, 14:30 UTC · Apr 13, 2026Malware42
CrystalX RAT: new MaaS malware combines spyware, stealer, and remote accessSecurity Affairs·Apr 3, 13:27 UTC · Apr 3, 2026Malware30
ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More StoriesThe Hacker News·Apr 2, 15:07 UTC · Apr 2, 2026MalwareCVE-2026-2699CVE-2026-270160
Threat actor UAC-0255 impersonate CERT-UA to spread AGEWHEEZE malware via phishingSecurity Affairs·Apr 2, 14:02 UTC · Apr 2, 2026Malware30
CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million EmailsThe Hacker News·Apr 1, 16:10 UTC · Apr 1, 2026Malware30
GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto DataThe Hacker News·Mar 25, 16:42 UTC · Mar 25, 2026Malware30
Rust-Based VENON Malware Targets 33 Brazilian Banks with CredentialThe Hacker News·Mar 17, 14:40 UTC · Mar 17, 2026Malware30
DRILLAPP Backdoor Targets Ukraine, Abuses Microsoft Edge Debugging for Stealth EspionageThe Hacker News·Mar 17, 04:50 UTC · Mar 17, 2026Malware42
Russia-linked APT uses DRILLAPP backdoor to spy on Ukrainian targetsSecurity Affairs·Mar 16, 20:32 UTC · Mar 16, 2026Malware42
GoPix banking Trojan targeting Brazilian financial institutionsKaspersky Securelist·Mar 16, 09:36 UTC · Mar 16, 2026Malware42
Six Android Malware Families Target Pix Payments, Banking Apps, and Crypto WalletsThe Hacker News·Mar 12, 07:59 UTC · Mar 12, 2026Malware30
North Korean Hackers Publish 26 npm Packages Hiding Pastebin C2 for CrossThe Hacker News·Mar 3, 06:20 UTC · Mar 3, 2026Malware42