Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-10-07 ⋅ CrowdStrike ⋅ Ashley Campion
Unknown Threat Actor Uses AI-Driven ARTEX to Target South Korean Finance
2026-10-01 ⋅ Symantec ⋅ Threat Hunter Team
Warlock Ransomware Attackers Hit Water and Telecom Operators
WarLock Storm-2603
2026-10-01 ⋅ Proofpoint ⋅ Mark Kelly, Proofpoint Threat Research Team
Hallucinating Credibility: China-Aligned TA419 Impersonates its Way into US AI Policy Circles
Evilginx TA419
2026-09-30 ⋅ Sophos ⋅ Sophos Counter Threat Unit Research Team
TerminalFix and Lorem Ipsum Loader enable covert tunneling
Lorem Ipsum
2026-09-29 ⋅ Google ⋅ Google Threat Intelligence Group, Mandiant
Defending Against Active Exploitation of Citrix NetScaler ADC and Gateway Appliances
2026-09-22 ⋅ Microsoft ⋅ Microsoft Defender Experts, Microsoft Security Research, Microsoft Threat Intelligence
Unmasking EvilTokens: Getting to the root of device code phishing
Storm-2992
2026-09-22 ⋅ ENISA ⋅ ENISA
Exploring the evolution of the cyber threat landscape: How dependencies weaken our digital resilience
2026-09-14 ⋅ Barracuda ⋅ Barracuda Networks
The fake worker threat and the rise of human infiltration
2026-09-03 ⋅ Abstract Security ⋅ Abstract Security Threat Research Organization (ASTRO)
Chaotic Eclipse Releases CrowdStrike Falcon Zero-Day FalconFlank: Detection Guidance
2026-09-03 ⋅ Jamf Blog ⋅ Jamf Threat Labs
Contagious Interview steps outside the developer workflow
OtterCookie
2026-08-27 ⋅ Proofpoint ⋅ Kyle Cucci, Proofpoint Threat Research Team, Rob Kinner, Tony Robinson
Carry-On Compromise: TA4922 Packs PackClient
donut_injector
2026-08-26 ⋅ Abstract Security ⋅ Abstract Security Threat Research Organization (ASTRO)
RMM Hunting: Leveraging LOLRMM for Detection
2026-08-02 ⋅ AhnLab ⋅ ASEC
Analysis of a Phishing Email Attack Case by the Larva-24009 Threat Actor
Quasar RAT Larva-24009
2026-07-31 ⋅ Microsoft Threat Intelligence
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
ChocoShell CornFlake Storm-2945
2026-07-30 ⋅ AhnLab ⋅ ASEC
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Bankshot Gunra PostNapTea
2026-07-30 ⋅ AhnLab ⋅ AhnLab
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Gunra
2026-07-24 ⋅ Google ⋅ Google Threat Intelligence Group
Updated Cyber Threat Actor Naming System
APT15 APT20 APT27 APT28 APT29 APT30 APT31 APT33 APT35 APT37 APT39 APT40 APT41 APT42 APT45 APT5 BlackTech Callisto Conference Crew FIN11 FIN6 FIN7 FIN8 MuddyWater MUSTANG PANDA Naikon OilRig Sandworm TEMP.Hermit Tick Tonto Team Turla UAC-0020 UNC1069 UNC1088 UNC2814
2026-07-20 ⋅ sysdig ⋅ Michael Clark
JADEPUFFER evolves: The agentic threat actor deploys ransomware built to destroy AI models
JadePuffer
2026-07-16 ⋅ Microsoft Security ⋅ Balaji Venkatesh S, Microsoft Security Research
ACR Stealer: Two observed intrusion chains amid increased threat activity
ACR Stealer
2026-07-15 ⋅ Symantec ⋅ Threat Hunter Team
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor
Daxin