Talos uncovers espionage campaigns targeting CIS countries, embassies and EU health care agencyCisco Talos·Mar 14, 11:00 UTC · Mar 14, 2023Threat actor60
Fileless attacks against enterprise networksKaspersky Securelist·Feb 8, 08:58 UTC · Feb 8, 2017Exploit / PoC60
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
Hackers Exploiting Ivanti VPN Flaws to Deploy KrustyLoader MalwareThe Hacker News·Jan 31, 09:32 UTC · Jan 31, 2024MalwareCVE-2023-46805CVE-2024-2188760
Chinese hackers hit Citrix, Cisco vulnerabilities in sweeping campaignCyberScoop·Mar 25, 15:16 UTC · Mar 25, 2020Vulnerability in the wildCVE-2019-1978160
Duqu Malware Techniques Used by CybercriminalsSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Malware55
Recent Watering Hole Attacks Attributed to APT Group “th3bug” Using Poison IvyPalo Alto Unit 42·Nov 1, 09:36 UTC · Nov 1, 2018Threat actor60
Cyber extortionists target North American companiesHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2017Ransomware60
ATMitch - Crooks stole $800,000 from 8 ATMs in Russia using Fileless MalwareSecurity Affairs·Apr 9, 13:45 UTC · Apr 9, 2017Malware55
New malware works only in memory, leaves no traceCyberScoop·Feb 9, 23:29 UTC · Feb 9, 2017Malware in the wild60
High sophisticated Fileless malware infected 140 companies in 40 countriesSecurity Affairs·Feb 9, 08:17 UTC · Feb 9, 2017Malware55
One Missed Threat Per Week: What 25M Alerts Reveal About LowThe Hacker News·May 8, 10:30 UTC · May 8, 2026Exploit / PoC60
ThreatsDay Bulletin: Kali Linux + Claude, Chrome Crash Traps, WinRAR Flaws, LockBit & 15+ StoriesThe Hacker News·Feb 27, 07:41 UTC · Feb 27, 2026RansomwareCVE-2023-4660460
Russian Cyber Threat Actor Uses GenAI to Compromise Fortinet FirewallsInfosecurity Magazine·Feb 23, 12:30 UTC · Feb 23, 2026Threat actor in the wildCVE-2019-7192CVE-2023-27532CVE-2024-40711160
CVE-2026-1731 fuels ongoing attacks on BeyondTrust remote access productsSecurity Affairs·Feb 23, 12:09 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-173160
⚡ Weekly Recap: Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & MoreThe Hacker News·Nov 3, 17:59 UTC · Nov 3, 2025Threat actorCVE-2025-61932CVE-2025-55315CVE-2025-10680+18 CVEs160
Using an agent for the Mythic framework: pros and cons in pentestingKaspersky Securelist·May 13, 10:00 UTC · May 13, 2025Exploit / PoC60
UAT-5918 targets critical infrastructure entities in TaiwanCisco Talos·Mar 20, 10:00 UTC · Mar 20, 2025Exploit / PoC60
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
XE Group shifts from credit card skimming to exploiting zeroSecurity Affairs·Feb 10, 12:53 UTC · Feb 10, 2025Exploit / PoCCVE-2024-57968CVE-2025-25181CVE-2017-9248+1 CVEs60
From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal effortsCyberScoop·Feb 3, 14:03 UTC · Feb 3, 2025Exploit / PoC60
EU announced sanctions on three members of Russia's GRU Unit 29155Security Affairs·Jan 28, 10:43 UTC · Jan 28, 2025Policy & legal55
Hackers Exploit OpenMetadata Flaws to Mine Crypto on KubernetesThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2024Exploit / PoCCVE-2024-28847CVE-2024-28848CVE-2024-28253+3 CVEs60
Threat actors exploit Apache ActiveMQ flaw to deliver the Godzilla Web ShellSecurity Affairs·Jan 22, 11:19 UTC · Jan 22, 2024Threat actor in the wildCVE-2023-4660460
New Report Uncovers 3 Distinct Clusters of China-Nexus Attacks on Southeast Asian GovernmentThe Hacker News·Sep 25, 10:12 UTC · Sep 25, 2023Vulnerability55
Nation-state actors exploit Fortinet FortiOS SSL-VPN and Zoho ManageEngine ServiceDesk Plus, CISA warnsSecurity Affairs·Sep 8, 12:06 UTC · Sep 8, 2023Threat actor in the wildCVE-2022-47966CVE-2022-42475CVE-2021-4422860
YoroTrooper APT group targets CIS countries and embassiesSecurity Affairs·Mar 15, 20:44 UTC · Mar 15, 2023Threat actor60
YoroTrooper Espionage Campaigns Target CIS, EU CountriesInfosecurity Magazine·Mar 14, 17:30 UTC · Mar 14, 2023Threat actor60
Atlassian warns that Confluence zeroThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-2613460
OPERA1ER APT Hackers Targeted Dozens of Financial Organizations in AfricaThe Hacker News·Jan 5, 12:22 UTC · Jan 5, 2023Exploit / PoC60
Cuba Ransomware Actors Pocket $60mInfosecurity Magazine·Dec 2, 10:15 UTC · Dec 2, 2022RansomwareCVE-2022-24521CVE-2020-147260
Alchimist: A new attack framework in Chinese for Mac, Linux and WindowsCisco Talos·Oct 13, 12:00 UTC · Oct 13, 2022Exploit / PoC in the wildCVE-2021-4034160
Chinese hackers zero in on Australian manufacturers, wind turbine operatorsCyberScoop·Aug 30, 11:32 UTC · Aug 30, 2022Exploit / PoC in the wild60
LockBit Ransomware Abuses Windows Defender to Deploy Cobalt Strike PayloadThe Hacker News·Aug 2, 08:07 UTC · Aug 2, 2022Ransomware60
Metasploit 6.2.0 comes with 138 new modules, 148 enhancements and featuresHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2022Exploit / PoC in the wildCVE-2021-44228CVE-2022-1388CVE-2022-22954+3 CVEs60
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Atlassian rolled out fixes for Confluence zeroSecurity Affairs·Jun 5, 09:51 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Unpatched critical Atlassian Confluence ZeroSecurity Affairs·Jun 3, 10:13 UTC · Jun 3, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-2608460
Hackers Exploiting Unpatched Critical Atlassian Confluence ZeroThe Hacker News·Jun 3, 09:27 UTC · Jun 3, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-2608460