New Lua-based malware “LucidRook” observed in targeted attacks against Taiwanese organizationsCisco Talos·Apr 8, 10:00 UTC · Apr 8, 2026Malware30
Redis patches 13-Year-Old Lua flaw enabling Remote Code ExecutionSecurity Affairs·Oct 8, 09:10 UTC · Oct 8, 2025VulnerabilityCVE-2025-4984460
Gamers Tricked Into Downloading Lua-Based Malware via Fake Cheating Script EnginesThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Malware30
Hackers defaced Dublin Luas website and demand ransomSecurity Affairs·Jan 4, 09:45 UTC · Jan 4, 2019Ransomware57
Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering SoftwareThe Hacker News·May 18, 06:14 UTC · May 18, 2026Malware42
UAT-10362 linked to LucidRook attacks targeting TaiwanSecurity Affairs·Apr 10, 11:27 UTC · Apr 10, 2026Malware30
How we hacked our colleague’s smart homeKaspersky Securelist·Jul 1, 09:00 UTC · Jul 1, 2019Vulnerability30
13-Year-Old Redis Flaw Exposed: CVSS 10.0 Vulnerability Lets Attackers Run Code RemotelyThe Hacker News·Oct 7, 09:30 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-4984460
Redis patches critical "RediShell" RCE vulnerability, update ASAP! (CVE-2025-49844)Help Net Security·Oct 7, 00:00 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-4984460
New RedLine Stealer Variant Disguised as Game Cheats Using Lua Bytecode for StealthThe Hacker News·Apr 25, 03:49 UTC · Apr 25, 2024MalwareCVE-2024-2141347
Chalubo, a new IoT botnet emerges in the threat landscapeSecurity Affairs·Oct 24, 06:22 UTC · Oct 24, 2018Malware30
ProjectSauron: top level cyber-espionage platform covertly extracts encrypted government commsKaspersky Securelist·Aug 8, 14:03 UTC · Aug 8, 2016Threat actor57
Phishing Campaign Hides Lua Loader as TrueType Font FileInfosecurity Magazine·Jul 16, 15:00 UTC · Jul 16, 2026Malware30
Fast16: Pre-Stuxnet malware that targeted precision engineering softwareSecurity Affairs·Apr 27, 08:48 UTC · Apr 27, 2026Malware55
Muhstik Botnet Targeting Redis Servers Using Recently Disclosed VulnerabilitySecurity Affairs·Mar 28, 20:43 UTC · Mar 28, 2022VulnerabilityCVE-2022-0543CVE-2019-2725CVE-2017-10271+1 CVEs47
Cisco Zero-Day Exploited to Implant Malicious Lua Backdoor on Thousands of DevicesThe Hacker News·Oct 23, 04:33 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2023-20273CVE-2023-20198CVE-2021-143560
PoetRAT: Malware targeting public and private sector in Azerbaijan evolvesCisco Talos·Oct 6, 14:52 UTC · Oct 6, 2020Malware30
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in SpearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026Malware30
Critical Wing FTP Server Vulnerability (CVE-2025-47812) Actively Being Exploited in the WildThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Exploit / PoC in the wildCVE-2025-4781260
Mysterious 'Sandman' Threat Actor Targets Telecom Providers Across Three ContinentsThe Hacker News·Dec 11, 13:28 UTC · Dec 11, 2023Threat actor57
New P2PInfect Worm Targeting Redis Servers on Linux and Windows SystemsThe Hacker News·Jul 31, 13:28 UTC · Jul 31, 2023VulnerabilityCVE-2022-054360
Vulnerability Spotlight: Multiple Vulnerabilities in CUJO Smart Firewall, Das UCisco Talos·Mar 19, 15:00 UTC · Mar 19, 2019VulnerabilityCVE-2018-3963CVE-2018-396847
Reaper authors Chinese, possibly linked to cyberspy group 'Black Vine'CyberScoop·Oct 31, 18:14 UTC · Oct 31, 2017Exploit / PoC in the wild60
Linux Shishiga malware, a threat in dangerous evolutionSecurity Affairs·Apr 25, 17:51 UTC · Apr 25, 2017Malware30
Magento and the Log4j vulnerabilitySansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Vulnerability55
Someone Created the First AI-Powered Ransomware Using OpenAI's gptThe Hacker News·Sep 5, 12:39 UTC · Sep 5, 2025Ransomware in the wild60
Godlua backdoor, the first bot that abuses the DNS over HTTPS (DoH)Security Affairs·Jul 5, 06:21 UTC · Jul 5, 2019MalwareCVE-2019-339647
Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026The Hacker News·Jun 4, 11:51 UTC · Jun 4, 2026Vulnerability in the wildCVE-2026-23479160
Researchers Identify Fast16 Sabotage Malware That PreInfosecurity Magazine·Apr 27, 09:10 UTC · Apr 27, 2026Malware55
Magento Developers Impersonated in Targeted GitHub Malware OperationSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Malware55
ClickFix Campaign Abuses Compromised Sites to Deploy MIMICRAT MalwareThe Hacker News·Feb 20, 14:07 UTC · Feb 20, 2026Malware42
Operation ChattyGoblin: Hackers Targeting Gambling Firms via Chat AppsThe Hacker News·Oct 23, 15:19 UTC · Oct 23, 2025Data breach57
Critical Flaw Exposes 60,000 Redis Servers to Remote ExploitationInfosecurity Magazine·Oct 7, 16:00 UTC · Oct 7, 2025Ransomware in the wildCVE-2025-4984460
Researchers Discover First Reported AIInfosecurity Magazine·Aug 27, 17:00 UTC · Aug 27, 2025Ransomware57
U.S. CISA adds Wing FTP Server flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 16, 00:01 UTC · Jul 16, 2025Exploit / PoC in the wildCVE-2025-4781260
Wing FTP Server flaw actively exploited shortly after technical details were made publicSecurity Affairs·Jul 13, 15:50 UTC · Jul 13, 2025Ransomware in the wildCVE-2025-4781260
Mysterious Cyber Attack Took Down 600,000+ Routers in the U.S.The Hacker News·May 31, 17:19 UTC · May 31, 2024Vulnerability30