Click here to download all references as Bib-File.•
| 2026-03-30
⋅
Trend Micro
⋅
TeamPCP’s Telnyx Attack Marks a Shift in Tactics Beyond LiteLLM TeamPCP |
| 2026-03-23
⋅
Sophos
⋅
NICKEL ALLEY strategy: Fake it ‘til you make it PylangGhost GolangGhost Nickel Alley |
| 2026-03-11
⋅
Microsoft
⋅
Contagious Interview: Malware delivered through fake developer job interviews BeaverTail OtterCookie StoatWaffle InvisibleFerret PylangGhost GolangGhost Contagious Interview |
| 2026-03-05
⋅
Symantec
⋅
Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company Tsundere |
| 2026-03-04
⋅
EG-FinCirt
⋅
Remcos RAT Operations: How Attackers Gain and Maintain Control Remcos |
| 2026-03-03
⋅
Sophos
⋅
Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies APTIran |
| 2026-03-02
⋅
Moonlock
⋅
Fake VCs target crypto talent in a new ClickFix campaign AmodalTea |
| 2026-03-02
⋅
Microsoft
⋅
OAuth redirection abuse enables phishing and malware delivery |
| 2026-02-24
⋅
Symantec
⋅
North Korean Lazarus Group Now Working With Medusa Ransomware ComeBacker Medusa |
| 2026-02-19
⋅
GitLab
⋅
GitLab Threat Intelligence Team reveals North Korean tradecraft BeaverTail OtterCookie Contagious Interview |
| 2026-02-05
⋅
Symantec
⋅
Reynolds: Defense Evasion Capability Embedded in Ransomware Payload Reynolds |
| 2026-01-29
⋅
CrowdStrike
⋅
LABYRINTH CHOLLIMA Evolves into Three Adversaries |
| 2026-01-28
⋅
Proofpoint
⋅
Can’t stop, won’t stop: TA584 innovates initial access XWorm TA584 |
| 2026-01-22
⋅
Red Asgard
⋅
Hunting Lazarus Part II: When the Dead Drop Moved to the Blockchain StoatWaffle |
| 2026-01-16
⋅
sysdig
⋅
VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits VoidLink |
| 2026-01-15
⋅
Sansec
⋅
Keylogger targets 200,000+ employees at major US bank |
| 2026-01-12
⋅
PolySwarm Tech Team
⋅
Transparent Tribe Evolves Tradecraft With Multi-Stage LNK Malware |
| 2025-12-18
⋅
Proofpoint
⋅
Access granted: phishing with device code authorization for account takeover TA2723 UNK_AcademicFlare |
| 2025-12-17
⋅
Reporters Without Borders
⋅
ResidentBat: A new spyware family used by Belarusian KGB ResidentBat |
| 2025-12-16
⋅
sysdig
⋅
EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2 EtherRAT |