Equation: The Death Star of Malware GalaxyKaspersky Securelist·Feb 16, 18:55 UTC · Feb 16, 2015Malware55
Using DCOM objects for remote command executionKaspersky Securelist·Dec 19, 08:00 UTC · Dec 19, 2025Research155
What the continued escalation of tensions in the Middle East means for securityCisco Talos·Jan 8, 22:32 UTC · Jan 8, 2020Vulnerability in the wildCVE-2018-2025060
Transparent COM instrumentation for malware analysisCisco Talos·Mar 18, 10:00 UTC · Mar 18, 2026Malware55
FBI alerts tie together threats of cybercrime, physical violence from The ComCyberScoop·Jul 28, 19:55 UTC · Jul 28, 2025Ransomware in the wild60
Let It Ride: The Sofacy Group’s DealersChoice Attacks ContinuePalo Alto Unit 42·Nov 1, 10:41 UTC · Nov 1, 2018Exploit / PoC in the wildCVE-2016-7855CVE-2016-7255CVE-2015-7645160
Roaming Mantis implements new DNS changer in its malicious mobile app in 2022Kaspersky Securelist·Jan 18, 14:57 UTC · Jan 18, 2023Malware55
Internet infamy drives The Com's crime spreesCyberScoop·Jun 9, 15:14 UTC · Jun 9, 2025Ransomware in the wild60
Six Charged in Mass Takedown of DDoS-for-Hire SitesKrebs on Security·Dec 15, 00:00 UTC · Dec 15, 2022Policy & legal55
How machine learning helps us hunt threatsKaspersky Securelist·Oct 3, 13:39 UTC · Oct 3, 2024Vulnerability55
Bitter APT adds Bangladesh to their targetsCisco Talos·May 11, 12:00 UTC · May 11, 2022Exploit / PoCCVE-2017-11882CVE-2018-0798CVE-2018-0802+1 CVEs60
InPage zero-day exploit used to attack financial institutions in AsiaKaspersky Securelist·Nov 23, 08:59 UTC · Nov 23, 2016Exploit / PoCCVE-2012-0158CVE-2017-1282460
On the StrongPity Waterhole Attacks Targeting Italian and Belgian Encryption UsersKaspersky Securelist·Oct 3, 23:40 UTC · Oct 3, 2016Exploit / PoC60
Behind the Curtain: How Lumma Affiliates OperateRecorded Future·Nov 28, 00:00 UTC · Nov 28, 2025Malware55
Project Compass is Europol's new playbook for taking on The ComCyberScoop·Feb 26, 21:21 UTC · Feb 26, 2026Ransomware in the wild60
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG GroupPalo Alto Unit 42·Jun 6, 12:19 UTC · Jun 6, 2024VulnerabilityCVE-2021-26855CVE-2021-2706560
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160
Scottish man pleads guilty to attack spree that created Scattered Spider’s notorietyCyberScoop·Apr 22, 01:18 UTC · Apr 22, 2026Ransomware in the wild60
North Korea’s Fraudulent IT Employment Scheme: A Cybersecurity ThreatRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Phishing & fraud55
Youth hacking ring at the center of cybercrime spreeCyberScoop·Sep 22, 18:06 UTC · Sep 22, 2023Ransomware in the wild60
Google Project Zero hacker discloses a ZeroSecurity Affairs·Apr 23, 12:50 UTC · Apr 23, 2018Exploit / PoC60
Rocke: The Champion of Monero MinersCisco Talos·Aug 30, 15:26 UTC · Aug 30, 2018VulnerabilityCVE-2017-10271CVE-2017-306660
UK man tied to The Com sentenced for abusing 117 victimsCyberScoop·Aug 10, 15:09 UTC · Aug 10, 2026Policy & legal in the wild60
NCA Singles Out “The Com” as it Chairs Five Eyes GroupInfosecurity Magazine·Sep 18, 09:45 UTC · Sep 18, 2025Ransomware60
Threat Source (April 18): New attacks distribute Formbook, LokiBotCisco Talos·Apr 18, 18:00 UTC · Apr 18, 2019Exploit / PoC60
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksThe Hacker News·Jul 23, 12:20 UTC · Jul 23, 2026Malware in the wildCVE-2018-11511CVE-2021-24139CVE-2021-31755+1 CVEs60
New Wekby Attacks Use DNS Requests As Command and Control MechanismPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Exploit / PoC60
APT Group UPS Targets US Government with Hacking Team Flash ExploitPalo Alto Unit 42·Nov 1, 09:47 UTC · Nov 1, 2018Threat actorCVE-2015-5119CVE-2015-311360
Microsoft Edge Bug Could Have Allowed Attackers to Silently Install Malicious ExtensionsThe Hacker News·Mar 29, 05:21 UTC · Mar 29, 2024Exploit / PoC in the wildCVE-2024-2138860
Update, March 13: Talos on the developing situation in the Middle EastCisco Talos·Mar 3, 00:55 UTC · Mar 3, 2026Data breach160
Chinese Threat Actor TEMP.Periscope Targets UK-Based Engineering Company Using Russian APT TechniquesRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Threat actor60
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
Predator Spyware Infrastructure Resurfaces Post-SanctionsRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Malware in the wild60
Ransomware or Wiper? LockerGoga Straddles the LineCisco Talos·Mar 20, 18:08 UTC · Mar 20, 2019Ransomware in the wild60
Suspected Chinese Group Calypso APT Exploiting Vulnerable Microsoft Exchange ServersRecorded Future·Dec 13, 00:00 UTC · Dec 13, 2018Vulnerability in the wildCVE-2021-26855CVE-2021-27065CVE-2021-26857+1 CVEs60