Macro Intruders: Sneaking Past Office DefensesCisco Talos·Aug 2, 13:42 UTC · Aug 2, 2016Exploit / PoC in the wild60
MS Office Built-In Feature Could be Exploited to Create SelfThe Hacker News·Nov 23, 15:38 UTC · Nov 23, 2017Ransomware in the wild160
BlackEnergy APT Attacks in Ukraine employ spearphishing with Word documentsKaspersky Securelist·Jan 28, 11:01 UTC · Jan 28, 2016Malware55
Cybercriminals have adapted since Microsoft's decision to block macrosCyberScoop·May 12, 14:00 UTC · May 12, 2023Ransomware in the wild60
Threat Brief: Office Documents Can Be Dangerous (But We’ll Continue to Use Them Anyway)Palo Alto Unit 42·Sep 21, 18:41 UTC · Sep 21, 2020Ransomware in the wildCVE-2018-4878CVE-2017-11882CVE-2018-0802+4 CVEs160
Threat Spotlight: "A String of Paerls", Part 2, Deep DiveCisco Talos·Jul 8, 14:00 UTC · Jul 8, 2014Malware155
Microsoft Patch Tuesday, July 2022 EditionKrebs on Security·Jul 15, 00:00 UTC · Jul 15, 2022Vulnerability in the wildCVE-2022-22047CVE-2022-22022CVE-2022-22041+6 CVEs60
Belarus-Linked Ghostwriter Uses Macropack-Obfuscated Excel Macros to Deploy MalwareThe Hacker News·Feb 25, 15:54 UTC · Feb 25, 2025Malware55
Zero-day bug exploited by attackers via macro-less Office documents (CVE-2022-30190)Help Net Security·May 31, 00:00 UTC · May 31, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Tecore Network 5G iCore Network in a Box provides macro coverage for deployable networksHelp Net Security·Aug 26, 00:00 UTC · Aug 26, 2021Industry55
US Utilities Targeted with LookBack RAT in a new phishing campaignSecurity Affairs·Sep 25, 06:53 UTC · Sep 25, 2019Malware55
The return of the AdvisorsBot malwareSecurity Affairs·Feb 1, 16:46 UTC · Feb 1, 2019MalwareCVE-2017-1188260
Week in review: Attackers abandoning malicious macros, average data breach cost soarsHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2022Data breach60
Week in review: Macro-less Office documents zero-day bug, FluBot takedown, growing DDoS threatsHelp Net Security·Jun 5, 00:00 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2022-26134160
Patch Tuesday, November 2019 EditionKrebs on Security·Nov 12, 22:16 UTC · Nov 12, 2019Vulnerability in the wildCVE-2019-1429CVE-2019-1457CVE-2019-1372060
MS Office Built-in Feature Allows Malware Execution Without Macros EnabledThe Hacker News·Oct 12, 11:06 UTC · Oct 12, 2017Malware in the wild60
Russian ‘Dukes’ of Hackers Pounce on Trump WinKrebs on Security·Nov 15, 00:00 UTC · Nov 15, 2016Exploit / PoC60
The battle against ransomware: Lessons from the front linesHelp Net Security·Apr 28, 00:00 UTC · Apr 28, 2020Ransomware60
MS Office zero-day exploited in attacks - no enabling of macros required!Help Net Security·Apr 10, 00:00 UTC · Apr 10, 2017Exploit / PoC60
A macro look at the most pressing cybersecurity risksHelp Net Security·Aug 30, 00:00 UTC · Aug 30, 2024Ransomware in the wild60
European firm DSIRF behind the attacks with Subzero surveillance malwareSecurity Affairs·Jul 28, 11:04 UTC · Jul 28, 2022MalwareCVE-2022-22047CVE-2021-31199CVE-2021-31201+2 CVEs60
Microsoft Patch Tuesday, February 2022 EditionKrebs on Security·Feb 8, 23:35 UTC · Feb 8, 2022Vulnerability in the wildCVE-2022-22005CVE-2022-21996CVE-2022-21882+1 CVEs160
Case Study: Incident Response is a relationshipCisco Talos·May 17, 12:00 UTC · May 17, 2021Ransomware60
Server hosting Cerber ransomware shut downCyberScoop·Jul 19, 16:02 UTC · Jul 19, 2016Ransomware in the wild60
Threat Brief: CVE-2022-30190Palo Alto Unit 42·Jun 5, 20:40 UTC · Jun 5, 2024VulnerabilityCVE-2022-3019060
High-risk Atlassian Confluence RCE fixed, PoC available (CVE-2024-21683)Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2024Exploit / PoCCVE-2024-21683160
Microsoft releases guidance for Office zero-day used to target orgs in Russia, India, TibetThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-30190160
Emotet is the most common malwareHelp Net Security·May 17, 00:00 UTC · May 17, 2022MalwareCVE-2017-1188260
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
Microsoft Details Building Blocks of Widely Active Qakbot Banking TrojanThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Malware155
The 5G market is about to take off: What to expect in 2022 and beyond?Help Net Security·Dec 2, 00:00 UTC · Dec 2, 2021Policy & legal55
Is Emotet gang targeting companies with external SOC?Security Affairs·Oct 14, 17:49 UTC · Oct 14, 2019Exploit / PoC60
Crooks leverages a new technique to deliver Malware via PowerPoint presentationsSecurity Affairs·Jun 7, 22:37 UTC · Jun 7, 2017Malware in the wild60