Threat actors using MacroPack to deploy Brute Ratel, Havoc and PhantomCore payloadsCisco Talos·Sep 3, 13:14 UTC · Sep 3, 2024Threat actor45
Fake Tech Support Spam Deploys Customized Havoc C2 Across OrganizationsThe Hacker News·Mar 3, 17:15 UTC · Mar 3, 2026Ransomware57
Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and MalwareThe Hacker News·Jul 29, 09:05 UTC · Jul 29, 2025MalwareCVE-2023-38950CVE-2023-38951CVE-2023-3895260
Threat Actors Adopt Havoc Framework for PostThe Hacker News·May 1, 08:03 UTC · May 1, 2023Threat actor45
Phishing Campaign Uses Havoc Framework to Control Infected SystemsInfosecurity Magazine·Mar 3, 14:00 UTC · Mar 3, 2025Threat actor145
New Tomiris tools and techniques: multiple reverse shells, Havoc, AdaptixC2Kaspersky Securelist·Nov 28, 07:00 UTC · Nov 28, 2025Malware142
Windows feature that resets system clocks based on random data is wreaking havocArs Technica · Security·Aug 15, 00:00 UTC · Aug 15, 2023Industry255
Malware Attackers Using MacroPack to Deliver Havoc, Brute Ratel, and PhantomCoreThe Hacker News·Sep 5, 07:45 UTC · Sep 5, 2024Malware30
ALTDOS hacking group wreaks havoc across Southeast AsiaThe Record·Dec 15, 00:00 UTC · Dec 15, 2022Ransomware57
UK’s Poor Cyber Risk Planning Could “Wreak Havoc”Infosecurity Magazine·Dec 7, 09:45 UTC · Dec 7, 2021Industry55
Vulnerabilities in Siemens' most secure industrial PLCs can lead to industrial havocHelp Net Security·Aug 9, 00:00 UTC · Aug 9, 2019Vulnerability55
Once an NSA favorite, this leaked hacking tool will wreak havoc for years to comeCyberScoop·May 25, 14:04 UTC · May 25, 2017Ransomware in the wild60
Microsoft will finally kill obsolete cipher that has wreaked decades of havocArs Technica · Security·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability55
Preparing for the Digital Battlefield of 2026: Ghost Identities, Poisoned Accounts, & AI Agent HavocThe Hacker News·Oct 29, 11:55 UTC · Oct 29, 2025Vulnerability55
Clop is back to wreak havoc via vulnerable fileCyberScoop·Dec 17, 19:46 UTC · Dec 17, 2024Ransomware in the wildCVE-2024-50623CVE-2024-5595660
Gateways to havoc: Overprivileged dormant service accountsHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2024Data breach60
A new version of the Loki backdoor for the Mythic framework attacks Russian companiesKaspersky Securelist·Sep 9, 07:01 UTC · Sep 9, 2024Malware42
Cybersecurity budgets surge, as skills gap wreaks havoc on 2022 plansHelp Net Security·Dec 12, 13:03 UTC · Dec 12, 2023Ransomware60
New 'DragonForce' hacktivist group causes havoc in IsraelThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Threat actor45
Ransomware wreaked havoc last year, manufacturing was most targetedHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2022Ransomware60
Researchers Warn of 4 Emerging Ransomware Groups That Can Cause HavocThe Hacker News·Aug 24, 11:10 UTC · Aug 24, 2021Ransomware60
445 million attacks detected since the beginning of 2020, COVID-19 wreaks havocHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2020Phishing & fraud30
Why ransomware continues to knock on healthcare's door, enter, and create havocHelp Net Security·Mar 17, 00:00 UTC · Mar 17, 2020Ransomware60
Magecart's 'shotgun approach' to payment card theft is wreaking havoc on eCyberScoop·Jun 7, 16:21 UTC · Jun 7, 2019Exploit / PoC in the wild60
Nastiest malware of 2018: Top attack payloads wreaking havocHelp Net Security·Oct 30, 00:00 UTC · Oct 30, 2018MalwareCVE-2018-262847
This hacking group with suspected ties to the Vietnamese government is wreaking havocCyberScoop·May 16, 02:02 UTC · May 16, 2017Exploit / PoC in the wild60
This elite cybercrime group is wreaking havoc on the U.S. restaurant industryCyberScoop·May 3, 14:37 UTC · May 3, 2017Data breach in the wild60
Why the DNC hackers will continue to wreak havocCyberScoop·Jan 17, 23:06 UTC · Jan 17, 2017Exploit / PoC in the wild60
Hackers Use ClickFix Trick to Deploy PowerShellThe Hacker News·Mar 9, 07:56 UTC · Mar 9, 2025Malware130
Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went OfflineThe Hacker News·Jun 17, 16:00 UTC · Jun 17, 2026Ransomware57
TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government NetworksThe Hacker News·Apr 2, 19:20 UTC · Apr 2, 2026Exploit / PoC in the wildCVE-2026-350260
Malware report for Q3 2024: threat overviewKaspersky Securelist·Nov 29, 10:45 UTC · Nov 29, 2024Malware42
Three years after WannaCry, what have we learned?Help Net Security·Jun 15, 00:00 UTC · Jun 15, 2020Ransomware60
Nearly 1 Million Computers Still Vulnerable to "Wormable" BlueKeep RDP FlawThe Hacker News·May 28, 12:08 UTC · May 28, 2019RansomwareCVE-2019-070860
Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting IndiaThe Hacker News·Mar 6, 15:11 UTC · Mar 6, 2026Malware42
SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware ChainsThe Hacker News·Mar 3, 06:53 UTC · Mar 3, 2026Malware55
China-linked Amaranth-Dragon hackers target Southeast Asian governments in 2025Security Affairs·Feb 5, 10:09 UTC · Feb 5, 2026VulnerabilityCVE-2025-808847
Tomiris Shifts to Public-Service Implants for Stealthier C2 in Attacks on Government TargetsThe Hacker News·Dec 2, 05:34 UTC · Dec 2, 2025Malware42
House hearing will use Stuxnet to search for novel ways to confront OT cyberthreatsCyberScoop·Jul 16, 20:52 UTC · Jul 16, 2025Ransomware in the wild60
Using an agent for the Mythic framework: pros and cons in pentestingKaspersky Securelist·May 13, 10:00 UTC · May 13, 2025Exploit / PoC60