Click here to download all references as Bib-File.•
| 2025-10-15
            
            ⋅
            
            Symantec
            ⋅ Jewelbug: Chinese APT Group Widens Reach to Russia | 
| 2025-10-14
            
            ⋅
            
            Reliaquest
            ⋅ SOE-phisticated Persistence: Inside Flax Typhoon's ArcGIS Compromise | 
| 2025-10-14
            
            ⋅
            
            Gatewatcher
            ⋅ Data Breach: the operations of "Charming Kitten" revealed | 
| 2025-10-13
            
            ⋅
            
            SpyCloud
            ⋅ More Than Meets the YY: Analyzing the YYlaiyu PhaaS Panel | 
| 2025-10-13
            
            ⋅
            
            Proofpoint
            ⋅ When the monster bytes: tracking TA585 and its arsenal MonsterV2 | 
| 2025-10-10
            
            ⋅
            
            
            ⋅
            
            Gatewatcher
            ⋅ Fuite de données: les opérations de "Charming Kitten" révélées | 
| 2025-10-07
            
            ⋅
            
            Cybernews
            ⋅ Steam, Riot Games hit by disruptions: massive DDoS attack suspected Aisuru | 
| 2025-10-01
            
            ⋅
            
            Chainanalysis
            ⋅ DPRK IT Workers: Inside North Korea’s Crypto Laundering Network | 
| 2025-09-28
            
            ⋅
            
            Malasada Tech
            ⋅ Oyster Malware Delivery via Teams Fake App Broomstick | 
| 2025-09-26
            
            ⋅
            
            BlackPoint
            ⋅ Malicious Teams Installers Drop Oyster Malware Broomstick | 
| 2025-09-24
            
            ⋅
            
            Natto Thoughts
            ⋅ Who is Salt Typhoon Really? Unraveling the Attribution Challenge | 
| 2025-09-16
            
            ⋅
            
            Proofpoint
            ⋅ Going Underground: China-aligned TA415 Conducts U.S.-China Economic Relations Targeting Using VS Code Remote Tunnels | 
| 2025-09-15
            
            ⋅
            
            Zscalar
            ⋅ SmokeLoader Rises From the Ashes SmokeLoader | 
| 2025-08-26
            
            ⋅
            
            Sophos
            ⋅ Velociraptor incident response tool abused for remote access | 
| 2025-08-08
            
            ⋅
            
            AhnLab
            ⋅ Distribution of SmartLoader Malware via Github Repository Disguised as a Legitimate Project Rhadamanthys SmartLoader | 
| 2025-08-01
            
            ⋅ Belarus-Linked DSLRoot Proxy Network Deploys Hardware in U.S. Residences, Including Military Homes | 
| 2025-07-24
            
            ⋅
            
            SYGNIA
            ⋅ Fire Ant: A Deep-Dive into Hypervisor-Level Espionage | 
| 2025-07-24
            
            ⋅
            
            Red Canary
            ⋅ Intelligence Insights: July 2025 Broomstick | 
| 2025-07-23
            
            ⋅
            
            Natto Thoughts
            ⋅ HAFNIUM-Linked Hacker Xu Zewei: Riding the Tides of China’s Cyber Ecosystem | 
| 2025-07-18
            
            ⋅
            
            Arctic Wolf
            ⋅ Greedy Sponge Targets Mexico with AllaKore RAT and SystemBC AllaKore SystemBC |