Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-07-29SafeDepSafeDep Team
Joyfill npm Packages Compromised with Blockchain C2 Loader
JADESNOW
2026-07-28SocketSocket Research Team
Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan
JADESNOW
2026-07-15SymantecThreat Hunter Team
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor
Daxin
2026-07-07ProofpointGreg Lesnewich, Mark Kelly, Proofpoint Threat Research Team
One Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation
IceCube
2026-07-02FBIFBI
Cyber Criminal Group TeamPCP
Shai-Hulud TeamPCP
2026-06-25Microsoft SecurityMicrosoft Defender Experts, Microsoft Defender Security Research Team, Parth Jomadkar
Photo ZIP campaign targeting hospitality industry delivers Node.js implant for persistent access
TonRAT
2026-06-17MicrosoftMicrosoft Defender Research Team
From package to postinstall payload: Inside the Mastra npm supply chain compromise by Sapphire Sleet
2026-06-10TEAMT5TeamT5
CVE-2026-34197:Apache ActiveMQ
SoxAgent SLIME88
2026-06-09ZscalerThreatLabZ research team
Technical Analysis of MLTBackdoor
MLTBackdoor
2026-06-08SYGNIASygnia Team
Velvet Ant’s Operation Highland: How a China-Nexus Actor Infiltrated an Internal Network Undetected
2026-06-04RESIDENT.NGORESIDENT.NGO Team
Case Study — UNC1151 Gmail Phishing (“Suspicious account activity”) Targeting Belarusian Pro-Democracy Politician, May 2026
2026-06-03ProofpointProofpoint Threat Research Team
TA4922: The Suspected Chinese Crime Group is Going Global
Atlas RAT RomulusLoader SilentRunLoader TA4922
2026-06-03sonatypeSonatype Security Research Team
Lazarus Group's Latest: Brandjacking Campaign on npm
2026-05-31GridinsoftGridinsoft Malware Research Team
DriveSurge Turns Trusted Websites Into ClickFix Malware Traps
DriveSurge
2026-05-28eSentireeSentire
Nimbus RAT: How Threat Actors Are Abusing Microsoft Teams and Google Drive to Deploy a Java RAT
2026-05-20K7 SecuritySrinivasan E
Fake Microsoft Teams download sites are being used to deliver ValleyRAT via DLL sideloading
ValleyRAT
2026-05-18MicrosoftMicrosoft Defender Security Research Team
How Storm-2949 turned a compromised identity into a cloud-wide breach
Storm-2949
2026-05-16SymantecThreat Hunter Team
Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations
fast16
2026-05-13Rapid7Anna Širokova
When IT Support Calls: Dissecting a ModeloRAT Campaign from Teams to Domain Compromise
ModeloRAT
2026-05-11QianxinQiAnXin XLab Team
Threat Actor Mr_Rot13 Actively Exploits CVE-2026-41940 for Backdoor Deployment
Mr_Rot13