|
Expands Toolset With New Backdoor, SSH Tunnel
|
2026-08-26 |
2 |
|
ClickFix Phishing Hidden in Malicious npm Packages
|
2026-08-26 |
0 |
|
Ten Minutes to Containment: How Agentic MXDR Scoped a Fake Claude Desktop Intrusion
|
2026-08-26 |
2 |
|
The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution
|
2026-08-25 |
12 |
|
What the Source Leak Says About HookBot
|
2026-08-25 |
19 |
|
Tracking PavinLoader across ClickFix and fake download campaigns
|
2026-08-25 |
43 |
|
Fake GTA 6 Extended Look and demo sites deliver an infostealer
|
2026-08-25 |
26 |
|
Fake security scans trick victims into uninstalling their antivirus
|
2026-08-25 |
10 |
|
Extended Rapid Response: RecruitTrap Recruit Scams are Targeting Enterprise Credentials on Mobile
|
2026-08-25 |
11 |
|
A ClickFix cluster: Observed activity from recent ClickFix campaigns
|
2026-08-25 |
20 |
|
Anatomy of a macOS ClickFix Crimekit that Weaponises EtherHiding
|
2026-08-24 |
24 |
|
Ongoing PLC Exploitation Against Critical U.S. Infrastructure
|
2026-08-23 |
25 |
|
Global Webmail Espionage
|
2026-08-22 |
0 |
|
JadeProx: Tracing a China-nexus Operation Through an OPSEC Mistake
|
2026-08-22 |
0 |
|
Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns
|
2026-08-21 |
8 |
|
Popular Rust Crates Compromised in Build-Time Supply Chain Attack
|
2026-08-21 |
18 |
|
Head Mare APT Group exploits vulnerabilities in unpatched TrueConf server to deliver PhantomCore malware to conference participants
|
2026-08-21 |
45 |
|
SynkLoader: when you throw in everything but the kitchen sink
|
2026-08-21 |
18 |
|
N4D Mesh Controller: New infrastructure, a UPX-packed agent labeled "go-titan," and how to hunt for it
|
2026-08-21 |
0 |
|
Distinct Clusters Target Individuals of Interest to Russia
|
2026-08-21 |
44 |
|
How Peer2Profit and Astroproxy Turn Your Bandwidth Into Someone Else's Product
|
2026-08-21 |
4 |
|
BRIDGEHEAD: An npm typosquatting campaign that crosses from WSL into Windows to plant a crypto-wallet stealer
|
2026-08-21 |
3 |
|
Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia
|
2026-08-21 |
20 |
|
Chinese-speaking adversary integrates agentic AI into post-compromise operations
|
2026-08-20 |
0 |
|
Blend between Banking Malware & Spyware
|
2026-08-20 |
8 |
|
41 deceptive download sites show a real link, then send you somewhere else
|
2026-08-20 |
47 |
|
SilkParasite: Tracking a China-Nexus APT Across Central Asia
|
2026-08-20 |
106 |
|
77 Firefox Extensions Linked to Crypto Wallet and Credential Theft
|
2026-08-20 |
164 |
|
Balonx Sistema: The Face Behind the PhaaS Affecting Mexican Banking
|
2026-08-20 |
9 |
|
Scammers are using fake crypto AML checkers to drain your wallet
|
2026-08-20 |
4 |
|
From ClickFix to MaaS: Exposing a Modular Windows RAT and Its Admin Panel
|
2026-08-19 |
6 |
|
https://malbearlabs.com/shadow-hvnc-and-shadow-loader-the-kit-that-protects-its-license-better-than-its-customers-dd99520b6af3
|
2026-08-19 |
13 |
|
MacSync Stealer: C2 Infrastructure Rotation
|
2026-08-19 |
22 |
|
Clop Returns with Custom Implant in Mass-Extortion Campaign
|
2026-08-19 |
0 |
|
Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US
|
2026-08-19 |
75 |
|
CopyCop Targets AI Investment in Armenia
|
2026-08-19 |
4 |
|
Octagon: A New Android Bot Targeting Crypto Wallets and Banking Apps
|
2026-08-18 |
17 |
|
Signed Overwolf Binary Sideloads ValleyRAT Malware in India
|
2026-08-18 |
36 |
|
Fraudulent Employment Operations
|
2026-08-18 |
18 |
|
Beware of Phishing Emails Disguised as Transaction Receipts
|
2026-08-18 |
7 |
|
Operation ASTERIX: Anatomy of a Crypto Fraud Pipeline
|
2026-08-18 |
17 |
|
Projextor: Abusing Electron in Trojanized Productivity Applications
|
2026-08-18 |
29 |
|
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2
|
2026-08-18 |
5 |
|
Operation QUICSILVER: China-Nexus Actor Targets Myanmar Diplomats via VHD-Delivered Go Backdoor
|
2026-08-18 |
17 |
|
New Mirai-Based Linux Botnet 'Evooo1Bot' Turns Victims Into Proxies
|
2026-08-17 |
0 |
|
TA416 resumes European government espionage campaigns
|
2026-08-14 |
255 |
|
CoolClient backdoor goes deeper: Windows kernel rootkit added
|
2026-08-14 |
16 |
|
New Armored Likho tools target Telegram and eavesdropping
|
2026-08-13 |
26 |
|
China-based hackers-for-hire group staging espionage attacks alongside a cryptocurrency fraud business
|
2026-08-13 |
63 |
|
Recent Attack Activity Analysis Using North Korea-Related Lures
|
2026-08-13 |
5 |