GrayCharlie Hijacks Law Firm Sites in Suspected SupplyRecorded Future·Aug 29, 00:00 UTC · Aug 29, 2025Malware42
ClickFix Campaigns Targeting Windows and macOSRecorded Future·Feb 6, 00:00 UTC · Feb 6, 2026Threat actor57
FIN7 Hacker Group Leverages Malicious Google Ads to Deliver NetSupport RATThe Hacker News·May 15, 00:00 UTC · May 15, 2024Malware42
Bloody Wolf Targets Uzbekistan, Russia Using NetSupport RAT in SpearThe Hacker News·Feb 9, 10:58 UTC · Feb 9, 2026Malware42
Crooks distribute malware masquerade as fake software updates and use NetSupport RATSecurity Affairs·Apr 9, 07:29 UTC · Apr 9, 2018Malware in the wild57
Horns&Hooves Campaign Delivers RATs via Fake Emails and JavaScript PayloadsThe Hacker News·Dec 3, 05:23 UTC · Dec 3, 2024Threat actor57
Hackers Using Fake DDoS Protection Pages to Distribute MalwareThe Hacker News·Aug 24, 17:35 UTC · Aug 24, 2022Malware42
Experts spotted a malware campaign using HoeflerText Popups to push RAT MalwareSecurity Affairs·Sep 2, 13:14 UTC · Sep 2, 2017Malware42
Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service InfrastructureThe Hacker News·Dec 11, 04:16 UTC · Dec 11, 2025Malware42
Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA PagesThe Hacker News·Jan 27, 14:14 UTC · Jan 27, 2026Malware42
New Atomic macOS Stealer Campaign Exploits ClickFix to Target Apple UsersThe Hacker News·Jun 7, 05:50 UTC · Jun 7, 2025Malware42
Bloody Wolf Threat Actor Expands Activity Across Central AsiaInfosecurity Magazine·Nov 27, 16:00 UTC · Nov 27, 2025Threat actor157
Cybercriminals Exploit Remote Monitoring Tools to Infiltrate Logistics and Freight NetworksThe Hacker News·Nov 4, 04:24 UTC · Nov 4, 2025Data breach57
DDoS Protection Weaponized to Deliver RATsInfosecurity Magazine·Aug 22, 10:50 UTC · Aug 22, 2022Ransomware57
Oyster Backdoor Spreading via Trojanized Popular Software DownloadsThe Hacker News·Jun 21, 09:51 UTC · Jun 21, 2024Malware42
ThreatsDay Bulletin: AI Malware, Voice Bot Flaws, Crypto Laundering, IoT Attacks — and 20 More StoriesThe Hacker News·Nov 27, 10:03 UTC · Nov 27, 2025MalwareCVE-2009-2765CVE-2020-25506CVE-2022-37055+6 CVEs47
CastleLoader Malware Infects 469 Devices Using Fake GitHub Repos and ClickFix PhishingThe Hacker News·Oct 14, 05:07 UTC · Oct 14, 2025Malware42
Black Basta-Linked Attackers Target Users with SystemBC MalwareThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2024Malware42
Gh0st RAT Trojan Targets Chinese Windows Users via Fake Chrome SiteThe Hacker News·Jul 29, 04:56 UTC · Jul 29, 2024Malware42
Hackers Use GitHub Repositories to Host Amadey Malware and Data Stealers, Bypassing FiltersThe Hacker News·Jul 21, 06:30 UTC · Jul 21, 2025Malware42
Anubis Ransomware Encrypts and Wipes Files, Making Recovery Impossible Even After PaymentThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2025Ransomware57
Kaspersky Links Head Mare to Twelve, Targeting Russian Entities via Shared C2 ServersThe Hacker News·Apr 3, 07:21 UTC · Apr 3, 2025RansomwareCVE-2023-38831CVE-2021-2685560
Microsoft Warns of ClickFix Phishing Campaign Targeting Hospitality Sector via Fake Booking[.]com EmailsThe Hacker News·Mar 22, 07:17 UTC · Mar 22, 2025Threat actor57
Fake Job Applications Deliver Dangerous More_eggs Malware to HR ProfessionalsThe Hacker News·Dec 6, 07:59 UTC · Dec 6, 2024Malware42
FIN7 Gang Hides Malware in AI “Deepnude” SitesInfosecurity Magazine·Oct 3, 09:30 UTC · Oct 3, 2024Malware42
Ongoing Campaign Bombards Enterprises with Spam Emails and Phone CallsThe Hacker News·May 15, 00:00 UTC · May 15, 2024Threat actor157
Microsoft Disables MSIX App Installer Protocol Widely Used in Malware AttacksThe Hacker News·Feb 14, 03:14 UTC · Feb 14, 2024Malware142
New ZLoader Malware Variant Surfaces with 64The Hacker News·Jan 31, 05:48 UTC · Jan 31, 2024Malware42
Kaspersky crimeware report: FakeSG, Akira and AMOSKaspersky Securelist·Dec 13, 10:00 UTC · Dec 13, 2023Ransomware57
Crypto-Stealing OpcJacker Malware Targets Users with Fake VPN ServiceThe Hacker News·Apr 3, 09:20 UTC · Apr 3, 2023Malware42
Fake DDoS protection pages are delivering malware!Help Net Security·Sep 21, 07:53 UTC · Sep 21, 2022Malware42
Connecting the Bots - Hancitor fuels Cuba Ransomware OperationsSecurity Affairs·May 7, 09:59 UTC · May 7, 2021Ransomware57
Avaddon Ransomware Still Using Excel 4.0 MacrosInfosecurity Magazine·Jul 3, 19:05 UTC · Jul 3, 2020Ransomware57
Transportation Companies Hit by Cyberattacks Using Lumma Stealer and NetSupport MalwareThe Hacker News·Oct 1, 16:24 UTC · Oct 1, 2024Malware42
Signed MSI files, Raccoon and Amadey are used for installing ServHelper RATCisco Talos·Aug 12, 12:00 UTC · Aug 12, 2021Malware42
Malware targeting Steam accounts, a growing businessSecurity Affairs·Feb 8, 10:09 UTC · Feb 8, 2017Malware42