Weaponization of Excel Add-Ins Part 1: Malicious XLL Files and Agent Tesla Case StudiesPalo Alto Unit 42·Jun 6, 00:46 UTC · Jun 6, 2024Data breach45
OriginLogger: A Look at Agent Tesla’s SuccessorPalo Alto Unit 42·Jun 5, 17:53 UTC · Jun 5, 2024Malware30
Agent Tesla Malware Spotted Using New Delivery & Evasion TechniquesThe Hacker News·Feb 3, 09:37 UTC · Feb 3, 2021Malware30
Harmful Help: Analyzing a Malicious Compiled HTML Help File Delivering Agent TeslaPalo Alto Unit 42·Jun 5, 22:35 UTC · Jun 5, 2024Malware30
Commodity Malware Reborn: Agent Tesla “Total Oil” themed CampaignSecurity Affairs·Sep 20, 11:28 UTC · Sep 20, 2019Malware30
Sophisticated Phishing Campaign Deploying Agent Tesla, OriginBotnet, and RedLine ClipperThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Malware30
Phishing attacks use an old MS Office flaw to spread Agent TeslaSecurity Affairs·Dec 21, 14:22 UTC · Dec 21, 2023Phishing & fraudCVE-2017-1188235
Researchers Detail OriginLogger RAT — Successor to Agent Tesla MalwareThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Malware30
Cyber Criminals Using Quantum Builder Sold on Dark Web to Deliver Agent Tesla MalwareThe Hacker News·Sep 29, 07:13 UTC · Sep 29, 2022Malware30
Experts spotted a campaign spreading a new Agent Tesla Spyware variantSecurity Affairs·Apr 8, 08:22 UTC · Apr 8, 2018Malware30
Hackers Exploiting MS Excel Vulnerability to Spread Agent Tesla MalwareThe Hacker News·Dec 29, 10:17 UTC · Dec 29, 2023VulnerabilityCVE-2017-11882CVE-2020-1488335
Cybercriminals Target Polish Businesses with Agent Tesla and Formbook MalwareThe Hacker News·Jul 30, 11:06 UTC · Jul 30, 2024Malware30
Hackers Using New QuirkyLoader Malware to Spread Agent Tesla, AsyncRAT and Snake KeyloggerThe Hacker News·Aug 21, 10:41 UTC · Aug 21, 2025Malware30
TA558 Hackers Weaponize Images for WideThe Hacker News·Jul 31, 06:36 UTC · Jul 31, 2024Data breachCVE-2017-1188250
Alert: New Phishing Attack Delivers Keylogger Disguised as Bank Payment NoticeThe Hacker News·Mar 28, 14:27 UTC · Mar 28, 2024Phishing & fraudCVE-2023-3602535
Three Nigerian men arrested in INTERPOL Operation Killer BeeSecurity Affairs·May 30, 20:07 UTC · May 30, 2022Policy & legal30
Phishing campaigns target SMBs in PolandSecurity Affairs·Jul 31, 08:59 UTC · Jul 31, 2024Threat actor45
Weaponization of Excel Add-Ins Part 2: Dridex Infection Chain Case StudiesPalo Alto Unit 42·Jun 5, 20:44 UTC · Jun 5, 2024Vulnerability30
Interpol Nabs 3 Nigerian Scammers Behind MalwareThe Hacker News·May 31, 06:59 UTC · May 31, 2022Malware30
China-Linked ValleyRAT Malware Resurfaces with Advanced Data Theft TacticsThe Hacker News·Jun 11, 08:47 UTC · Jun 11, 2024MalwareCVE-2017-0199CVE-2017-1188235
Styx Stealer Creator's OPSEC Fail Leaks Client List and Profit DetailsThe Hacker News·Aug 21, 11:10 UTC · Aug 21, 2024Malware30
Several Cyber Attacks Observed Leveraging IPFS Decentralized NetworkThe Hacker News·Nov 10, 06:44 UTC · Nov 10, 2022Malware30
Phishing campaign uses Word documents to distribute three malware strainsThe Record·Sep 12, 20:06 UTC · Sep 12, 2023Malware30
Threat Spotlight: Cyber Criminal Adoption of IPFS for Phishing, Malware CampaignsCisco Talos·Nov 9, 13:00 UTC · Nov 9, 2022Malware30
Researchers Uncover Packer Used by Several Malware to Evade Detection for 6 YearsThe Hacker News·Jan 31, 16:12 UTC · Jan 31, 2023Malware30
Operation Falcon II: Unit 42 Helps INTERPOL Identify Nigerian Business Email Compromise Ring MembersPalo Alto Unit 42·Jun 6, 00:47 UTC · Jun 6, 2024Phishing & fraud30
Hackers Exploit Legitimate Packer Software to Spread Malware UndetectedThe Hacker News·Jun 6, 09:54 UTC · Jun 6, 2024Malware30
New DotRunpeX Malware Delivers Multiple Malware Families via Malicious AdsThe Hacker News·Mar 20, 13:39 UTC · Mar 20, 2023Malware30
Phishing Campaign Hides Lua Loader as TrueType Font FileInfosecurity Magazine·Jul 16, 15:00 UTC · Jul 16, 2026Malware30
New HawkEye Reborn Variant Emerges Following Ownership ChangeCisco Talos·Apr 15, 16:37 UTC · Apr 15, 2019VulnerabilityCVE-2017-1188235
Poulight Stealer, a new Comprehensive Stealer from RussiaSecurity Affairs·May 7, 17:36 UTC · May 7, 2020Malware30
New Crypter-as-a-Service Cruciferra Fuels Stealthy Malware Attacks WorldwideSecurity Affairs·Jul 28, 09:35 UTC · Jul 28, 2026Malware30
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows MalwareThe Hacker News·Jul 27, 11:38 UTC · Jul 27, 2026Malware30
BatShadow Group Uses New Go-Based 'Vampire Bot' Malware to Hunt Job SeekersThe Hacker News·Oct 8, 04:31 UTC · Oct 8, 2025Malware30
Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShellThe Hacker News·May 15, 00:00 UTC · May 15, 2025Malware130
Top 3 MS Office Exploits Hackers Use in 2025The Hacker News·Mar 27, 10:00 UTC · Mar 27, 2025VulnerabilityCVE-2017-11882CVE-2022-3019035
Ukrainian government, Belarusian opposition targeted in new espionage campaignThe Record·Feb 26, 15:05 UTC · Feb 26, 2025Threat actor45