Click here to download all references as Bib-File.•
| 2026-01-16
⋅
sysdig
⋅
VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits VoidLink |
| 2026-01-15
⋅
Cisco Talos
⋅
UAT-8837 targets critical infrastructure sectors in North America Earthworm Rubeus SharpHound SharpWMI UAT-8837 |
| 2026-01-08
⋅
Cisco Talos
⋅
UAT-7290 targets high value telecommunications infrastructure in South Asia DriveSwitch RushDrop SilentRaid DAGGER PANDA |
| 2025-12-23
⋅
secpod
⋅
Zero-Day Crisis: CVE-2025-20393 Unpatched on Cisco Email Gateways, Exploited by China-Linked Hackers UAT-9686 |
| 2025-12-17
⋅
Cisco Talos
⋅
UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager UAT-9686 |
| 2025-11-12
⋅
ISC
⋅
SmartApeSG campaign uses ClickFix page to push NetSupport RAT SmartApeSG NetSupportManager RAT |
| 2025-11-12
⋅
Amazon
⋅
Amazon discovers APT exploiting Cisco and Citrix zero-days |
| 2025-10-23
⋅
Twitter (@salmanvsf)
⋅
Tweet about Discovery of Smile PaaS admin panel |
| 2025-10-16
⋅
Cisco Talos
⋅
BeaverTail and OtterCookie evolve with a new Javascript module BeaverTail OtterCookie InvisibleFerret |
| 2025-10-15
⋅
Trend Micro
⋅
Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits |
| 2025-09-30
⋅
Palo Alto Networks Unit 42
⋅
Phantom Taurus: A New Chinese Nexus APT and the Discovery of the NET-STAR Malware Suite NET-STAR |
| 2025-09-29
⋅
Shindan
⋅
DHCSpy - Discovering the Iranian APT MuddyWater DCHSpy |
| 2025-09-18
⋅
Silent Push
⋅
CountLoader: Silent Push Discovers New Malware Loader Being Served in 3 Different Versions CountLoader |
| 2025-09-08
⋅
Silent Push
⋅
Salt Typhoon and UNC4841: Silent Push Discovers New Domains; Urges Defenders to Check Telemetry and Log Data |
| 2025-08-26
⋅
Twitter (@ESETresearch)
⋅
Tweet about PromptLock discovery PromptLock |
| 2025-08-15
⋅
Cisco Talos
⋅
UAT-7237 targets Taiwanese web hosting infrastructure SoundBill UAT-7237 |
| 2025-08-12
⋅
Cisco Talos
⋅
Malvertising campaign leads to PS1Bot, a multi-stage malware framework PS1Bot |
| 2025-08-04
⋅
Beazley Security Labs
⋅
Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem PXA Stealer |
| 2025-08-04
⋅
Sentinel LABS
⋅
Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem PXA Stealer |
| 2025-08-01
⋅
Nextron Systems
⋅
Plague: A Newly Discovered PAM-Based Backdoor for Linux Plague |