Exploring the Cybercrime Underground: Part 2Palo Alto Unit 42·Jan 28, 20:39 UTC · Jan 28, 2022Malware30
Salfram: Robbing the place without removing your name tagCisco Talos·Sep 3, 15:05 UTC · Sep 3, 2020Malware30
Threat Spotlight: AsyncRAT campaigns feature new version of 3LOSH crypterCisco Talos·Apr 5, 12:00 UTC · Apr 5, 2022Malware30
Operation Layover: How we tracked an attack on the aviation industry to five years of compromiseCisco Talos·Sep 16, 12:00 UTC · Sep 16, 2021Malware30
New Crypter-as-a-Service Cruciferra Fuels Stealthy Malware Attacks WorldwideSecurity Affairs·Jul 28, 09:35 UTC · Jul 28, 2026Malware30
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows MalwareThe Hacker News·Jul 27, 11:38 UTC · Jul 27, 2026Malware30
8220 Gang used new ScrubCrypt crypter in cryptojacking attacksSecurity Affairs·Mar 9, 10:55 UTC · Mar 9, 2023Vulnerability30
New ScrubCrypt Crypter Used in Cryptojacking Attacks Targeting Oracle WebLogicThe Hacker News·Mar 10, 06:47 UTC · Mar 10, 2023Vulnerability130
Accounting Firm Targeted by Malware Campaign Using New CrypterInfosecurity Magazine·Jul 21, 16:00 UTC · Jul 21, 2025Malware30
International operation targets customers of counter anti-virus and crypter servicesHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2017Malware30
New Attack Alert: Freeze[.]rs Injector Weaponized for XWorm Malware AttacksThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2023Malware30
Threat Spotlight: "Haskers Gang" Introduces New ZingoStealerCisco Talos·Apr 14, 11:59 UTC · Apr 14, 2022Malware30
10,000 Victims a Day: Infostealer Garden of LowThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2024Malware30
Arkanix Stealer targets a variety of data, offers a MaaS referral programKaspersky Securelist·Feb 19, 11:01 UTC · Feb 19, 2026Malware30
OriginLogger: A Look at Agent Tesla’s SuccessorPalo Alto Unit 42·Jun 5, 17:53 UTC · Jun 5, 2024Malware30
Researchers Detail PureCrypter Loader Cyber Criminals Using to Distribute MalwareThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2022Malware30
Threat actor has been targeting the aviation industry since at least 2018Security Affairs·Sep 18, 16:48 UTC · Sep 18, 2021Threat actor45
Coronavirus news used by Emotet and Trickbot to evade detectionSecurity Affairs·Mar 19, 07:58 UTC · Mar 19, 2020Malware30
European police target anti-malware detection services and their customersSecurity Affairs·Jun 15, 06:57 UTC · Jun 15, 2017Malware30
Mirax Android RAT Turns Devices into SOCKS5 Proxies, Reaching 220,000 via Meta AdsThe Hacker News·Apr 17, 06:40 UTC · Apr 17, 2026Malware30
Hunting Unpacked: Unleashing External Threat Intelligence in Network HuntingRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware30
8220 Gang Behind ScrubCrypt Attack Targeting Oracle Weblogic ServerInfosecurity Magazine·Mar 9, 17:00 UTC · Mar 9, 2023Vulnerability30
TrickGate, a packer used by malware to evade detection since 2016Security Affairs·Feb 1, 07:24 UTC · Feb 1, 2023Malware30
Researchers Uncover Packer Used by Several Malware to Evade Detection for 6 YearsThe Hacker News·Jan 31, 16:12 UTC · Jan 31, 2023Malware30
Haskers Gang Gives Away ZingoStealer Malware to Other Cybercriminals for FreeThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022Malware30
Malware Attack on Aviation Sector Uncovered After Going Unnoticed for 2 YearsThe Hacker News·Sep 17, 08:00 UTC · Sep 17, 2021Malware30
Researchers Unmask Hackers Behind APOMacroSploit Malware BuilderThe Hacker News·Feb 18, 06:18 UTC · Feb 18, 2021Malware30
A deep look into the Brazilian underground cyberSecurity Affairs·Mar 12, 13:27 UTC · Mar 12, 2018Malware30
RAT Trapped? LuminosityLink Falls Foul of Vermin Eradication EffortsPalo Alto Unit 42·Feb 7, 04:15 UTC · Feb 7, 2018Malware30
iSpy, a sophisticated commercial keylogger in the criminal undergroundSecurity Affairs·Sep 22, 06:02 UTC · Sep 22, 2016Data breach45
Beaches, carnivals and cybercrime: a look inside the Brazilian undergroundKaspersky Securelist·Nov 11, 14:58 UTC · Nov 11, 2015Malware30
New EVALUSION ClickFix Campaign Delivers Amatera Stealer and NetSupport RATThe Hacker News·Jan 12, 08:28 UTC · Jan 12, 2026Malware30
Experts Confirm JS#SMUGGLER Uses Compromised Sites to Deploy NetSupport RATThe Hacker News·Dec 10, 07:34 UTC · Dec 10, 2025Malware30
Researchers Expose TA585’s MonsterV2 Malware Capabilities and Attack ChainThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Malware30
Phishing Campaign Evolves into PureRAT DeploymentInfosecurity Magazine·Sep 25, 16:00 UTC · Sep 25, 2025Malware30
Pirates of Brazil: Integrating the Strengths of Russian and Chinese Hacking Communities ReportRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability30