Cyber Criminals Exploit GitHub and FileZilla to Deliver Malware CocktailThe Hacker News·May 21, 11:11 UTC · May 21, 2024Malware42
CPUID watering hole attack spreads STX RAT malwareSecurity Affairs·Apr 13, 07:23 UTC · Apr 13, 2026Malware42
We’re not talking about cryptocurrency as much as we used to, but there are still plenty of scammers out thereCisco Talos·Jun 27, 18:00 UTC · Jun 27, 2024Phishing & fraud42
Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial AccessThe Hacker News·Jul 21, 14:04 UTC · Jul 21, 2026RansomwareCVE-2026-025760
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their PasswordThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Malware42
Laravel-Lang PHP Packages Compromised to Deliver CrossThe Hacker News·May 24, 08:14 UTC · May 24, 2026Malware42
Malicious Hugging Face Repository Typosquats OpenAIInfosecurity Magazine·May 12, 09:30 UTC · May 12, 2026Malware42
Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsThe Hacker News·May 11, 18:22 UTC · May 11, 2026Data breach57
U.S. court sentences Karakurt ransomware negotiator to 8.5 yearsSecurity Affairs·May 5, 20:06 UTC · May 5, 2026Ransomware57
Product showcase: Cross-platform and third-party endpoint patching with Action1Help Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Ransomware in the wild60
HoneyMyte updates CoolClient backdoor, uses new data stealing toolsKaspersky Securelist·Jan 26, 19:27 UTC · Jan 26, 2026Malware42
Uncovering Qilin attack methods exposed through multiple casesCisco Talos·Oct 27, 02:00 UTC · Oct 27, 2025Ransomware57
Akira Ransomware bypasses MFA on SonicWall VPNsSecurity Affairs·Sep 29, 10:52 UTC · Sep 29, 2025RansomwareCVE-2024-4076660
Researchers Expose Phishing Threats Distributing CountLoader and PureRATThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Malware42
PureRAT Malware Spikes 4x in 2025, Deploying PureLogs to Target Russian FirmsThe Hacker News·May 21, 13:15 UTC · May 21, 2025Malware42
Paper Werewolf Deploys PowerModul Implant in Targeted Cyberattacks on Russian SectorsThe Hacker News·Apr 12, 05:17 UTC · Apr 12, 2025Vulnerability42
North Korea-linked hackers target construction and machinery sectors with watering hole and supply chain attacksSecurity Affairs·Aug 6, 07:02 UTC · Aug 6, 2024Vulnerability42
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt StrikeCisco Talos·Aug 1, 12:00 UTC · Aug 1, 2024Threat actorCVE-2018-0824160
How we can separate botnets from the malware operations that rely on themCisco Talos·Jun 13, 18:01 UTC · Jun 13, 2024Malware42
The sliding doors of misinformation that come with AICisco Talos·Jun 6, 18:03 UTC · Jun 6, 2024Ransomware57
Novel News on Cuba Ransomware: Greetings From Tropical ScorpiusPalo Alto Unit 42·Jun 5, 20:16 UTC · Jun 5, 2024Ransomware57
Attackers are impersonating a road toll payment processor across the U.S. in phishing attacksCisco Talos·May 30, 18:01 UTC · May 30, 2024Phishing & fraudCVE-2024-21785CVE-2024-23601CVE-2024-24963+1 CVEs47
Kimsuky's New Golang Stealer 'Troll' and 'GoBear' Backdoor Target South KoreaThe Hacker News·May 17, 06:51 UTC · May 17, 2024Malware42
New 'Cuckoo' Persistent macOS Spyware Targeting Intel and Arm MacsThe Hacker News·May 10, 06:52 UTC · May 10, 2024Malware42
Akira ransomware received $42M in ransom payments from over 250 victimsSecurity Affairs·Apr 21, 20:07 UTC · Apr 21, 2024RansomwareCVE-2020-3259CVE-2023-2026960
TA547 Phishing Attack Hits German Firms with Rhadamanthys StealerThe Hacker News·Apr 11, 11:32 UTC · Apr 11, 2024Malware42
Phemedrone Stealer Targets Windows Defender Flaw Despite PatchInfosecurity Magazine·Jan 16, 17:15 UTC · Jan 16, 2024Vulnerability in the wildCVE-2023-3602560
FBI and CISA published a new advisory on AvosLocker ransomwareSecurity Affairs·Oct 13, 10:55 UTC · Oct 13, 2023Ransomware57
Lighting the Exfiltration Infrastructure of a LockBit AffiliateSecurity Affairs·Oct 3, 09:01 UTC · Oct 3, 2023Ransomware57
DarkGate Malware Activity Spikes as Developer Rents Out Malware to AffiliatesThe Hacker News·Sep 5, 02:55 UTC · Sep 5, 2023Malware42
TeamTNT's Silentbob Botnet Infecting 196 Hosts in Cloud Attack CampaignThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Malware42
Updates from the MaaS: new threats delivered through NullMixerSecurity Affairs·Mar 27, 13:41 UTC · Mar 27, 2023Malware42
US Agencies: Karakurt extortion group demanding up to $13 million in attacksThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Ransomware57
SmokeLoader Infecting Targeted Systems with Amadey InfoThe Hacker News·Nov 8, 13:22 UTC · Nov 8, 2022Malware42
TeamTNT Targeted Cloud Instances and Containerized Environments For Two YearsInfosecurity Magazine·Aug 26, 16:00 UTC · Aug 26, 2022Malware42
Amadey malware spreads via keygens laced with SmokeLoaderSecurity Affairs·Jul 25, 06:27 UTC · Jul 25, 2022Malware42
New 'Karakurt' cybercrime gang focuses on data theft and extortionSecurity Affairs·Dec 11, 16:10 UTC · Dec 11, 2021Ransomware57
Trickbot banking Trojan modules overviewKaspersky Securelist·Oct 19, 10:11 UTC · Oct 19, 2021Malware42