Click here to download all references as Bib-File.•
| 2026-05-22
⋅
Trend Micro
⋅
Analyzing Void Dokkaebi’s Cython-Compiled InvisibleFerret Malware BeaverTail InvisibleFerret |
| 2026-05-04
⋅
Trend Micro
⋅
Quasar Linux (QLNX) – A Silent Foothold in the Supply Chain: Inside a Full-Featured Linux RAT With Rootkit, PAM Backdoor, Credential Harvesting Capabilities QLNX |
| 2026-04-30
⋅
Trend Micro
⋅
Inside Shadow-Earth-053: A China-Aligned Cyberespionage Campaign Against Government and Defense Sectors in Asia FINALDRAFT ShadowPad VShell Shadow-Earth-053 |
| 2026-04-21
⋅
Trend Micro
⋅
Void Dokkaebi Uses Fake Job Interview Lure to Spread Malware via Code Repositories BeaverTail JADESNOW OtterCookie InvisibleFerret |
| 2026-04-03
⋅
Trend Micro
⋅
Weaponizing Trust Signals: Claude Code Lures and GitHub Release Payloads GhostSocks Vidar |
| 2026-03-30
⋅
Trend Micro
⋅
TeamPCP’s Telnyx Attack Marks a Shift in Tactics Beyond LiteLLM TeamPCP |
| 2026-03-26
⋅
Trend Micro
⋅
Your AI Gateway Was a Backdoor: Inside the LiteLLM Supply Chain Compromise TeamPCP |
| 2026-03-05
⋅
Trend Micro
⋅
New BoryptGrab Stealer Targets Windows Users via Deceptive GitHub Pages BoryptGrab |
| 2026-01-26
⋅
Trend Micro
⋅
PeckBirdy: A Versatile Script Framework for LOLBins Exploitation Used by China-aligned Threat Groups PeckBirdy GRAYRABBIT |
| 2026-01-13
⋅
Trend Micro
⋅
Key Insights on SHADOW-AETHER-015 and Earth Preta from the 2025 MITRE ATT&CK Evaluation with TrendAI Vision One™ SHADOW-AETHER-015 |
| 2025-12-11
⋅
Trend Micro
⋅
SHADOW-VOID-042 Targets Multiple Industries with Void Rabisu-like Tactics ROMCOM RAT SHADOW-VOID-042 |
| 2025-12-10
⋅
Trend Micro
⋅
CVE-2025-55182: React2Shell Analysis, Proof-of-Concept Chaos, and In-the-Wild Exploitation |
| 2025-12-08
⋅
Trend Micro
⋅
AI-Automated Threat Hunting Brings GhostPenguin Out of the Shadows GhostPenguin |
| 2025-12-02
⋅
Trend Micro
⋅
Unraveling Water Saci's New Multi-Format, AI-Enhanced Attacks Propagated via WhatsApp Water Saci |
| 2025-11-13
⋅
Trend Micro
⋅
Increase in Lumma Stealer Activity Coincides with Use of Adaptive Browser Fingerprinting Tactics Lumma Stealer Water Kurita |
| 2025-10-27
⋅
Trend Micro
⋅
Active Water Saci Campaign Spreading Via WhatsApp Features Multi-Vector Persistence and Sophisticated C&C Water Saci |
| 2025-10-22
⋅
Trend Micro
⋅
The Rise of Collaborative Tactics Among China-aligned Cyber Espionage Campaigns Cobalt Strike DracuLoader ShadowPad Earth Naga |
| 2025-10-21
⋅
Trend Micro
⋅
Fast, Broad, and Elusive: How Vidar Stealer 2.0 Upgrades Infostealer Capabilities Vidar |
| 2025-10-15
⋅
Trend Micro
⋅
Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits |
| 2025-09-25
⋅
Trend Micro
⋅
New LockBit 5.0 Targets Windows, Linux, ESXi LockBit LockBit |