Extending AutoFocus Threat Intelligence With New Tag TypesPalo Alto Unit 42·Jan 28, 21:52 UTC · Jan 28, 2022Ransomware60
New Shameless Commodity Cryptocurrency Stealer (WeSteal) and Commodity RAT (WeControl)Palo Alto Unit 42·Jun 6, 12:43 UTC · Jun 6, 2024Malware55
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG GroupPalo Alto Unit 42·Jun 6, 12:19 UTC · Jun 6, 2024VulnerabilityCVE-2021-26855CVE-2021-2706560
2016 Verizon Data Breach Investigations Report (DBIR): Insights from Unit 42Palo Alto Unit 42·Jan 28, 21:59 UTC · Jan 28, 2022Data breach60
Threat Assessment: Clop RansomwarePalo Alto Unit 42·Jun 6, 13:24 UTC · Jun 6, 2024RansomwareCVE-2021-27101CVE-2021-27102CVE-2021-27103+1 CVEs160
Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud EnvironmentsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Malware155
Threat Brief: Petya RansomwarePalo Alto Unit 42·Mar 23, 21:11 UTC · Mar 23, 2022RansomwareCVE-2017-014460
Traps Prevents Adobe Flash Player ZeroPalo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-487860
Over A Billion Malicious Ad Impressions Exploit WebKit Flaw to Target Apple UsersThe Hacker News·Oct 1, 09:02 UTC · Oct 1, 2019Exploit / PoCCVE-2019-584060
OilRig targets a Middle Eastern Government and Adds Evasion Techniques to OopsIEPalo Alto Unit 42·Nov 2, 11:28 UTC · Nov 2, 2018Malware55
IoT Malware Evolves to Harvest Bots by Exploiting a ZeroPalo Alto Unit 42·Nov 1, 10:59 UTC · Nov 1, 2018MalwareCVE-2014-8361CVE-2017-1721560
Let It Ride: The Sofacy Group’s DealersChoice Attacks ContinuePalo Alto Unit 42·Nov 1, 10:41 UTC · Nov 1, 2018Exploit / PoC in the wildCVE-2016-7855CVE-2016-7255CVE-2015-7645160
PSA: Conference Invite used as a Lure by Operation Lotus Blossom ActorsPalo Alto Unit 42·Nov 1, 10:25 UTC · Nov 1, 2018VulnerabilityCVE-2012-015860
New Wekby Attacks Use DNS Requests As Command and Control MechanismPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Exploit / PoC60
UPS: Observations on CVE-2015-3113, Prior ZeroPalo Alto Unit 42·Nov 1, 09:48 UTC · Nov 1, 2018VulnerabilityCVE-2015-3113CVE-2014-1776CVE-2014-633260
APT Group UPS Targets US Government with Hacking Team Flash ExploitPalo Alto Unit 42·Nov 1, 09:47 UTC · Nov 1, 2018Threat actorCVE-2015-5119CVE-2015-311360
Shadows Brokers released another archive that suggests NSA compromised a SWIFT systemSecurity Affairs·Oct 26, 21:01 UTC · Oct 26, 2017Exploit / PoC60
DragonOK APT adopts new tactics, techniques and proceduresSecurity Affairs·Sep 2, 15:59 UTC · Sep 2, 2017Malware55
2016 Updates to Shifu Banking TrojanPalo Alto Unit 42·Jan 6, 20:00 UTC · Jan 6, 2017MalwareCVE-2016-0167CVE-2015-0003160