Click here to download all references as Bib-File.•
| 2026-02-05
⋅
Palo Alto Networks Unit 42
⋅
The Shadow Campaigns: Uncovering Global Espionage Cobalt Strike UNC6619 |
| 2025-12-11
⋅
Palo Alto Networks Unit 42
⋅
Hamas-Affiliated Ashen Lepus Targets Middle Eastern Diplomatic Entities With New AshTag Malware Suite Ashen WIRTE |
| 2025-11-07
⋅
LANDFALL: New Commercial-Grade Android Spyware in Exploit Chain Targeting Samsung Devices LANDFALL |
| 2025-10-29
⋅
Palo Alto Networks Unit 42
⋅
Suspected Nation-State Threat Actor Uses New Airstalk Malware in a Supply Chain Attack Airstalk CL-STA-1009 |
| 2025-10-15
⋅
Palo Alto Networks Unit 42
⋅
PhantomVAI Loader Delivers a Range of Infostealers Katz Stealer PhantomVAI |
| 2025-09-30
⋅
Palo Alto Networks Unit 42
⋅
Phantom Taurus: A New Chinese Nexus APT and the Discovery of the NET-STAR Malware Suite NET-STAR |
| 2025-09-10
⋅
Palo Alto Networks Unit 42
⋅
AdaptixC2: A New Open-Source Framework Leveraged in Real-World Attacks AdaptixC2 |
| 2025-06-17
⋅
Palo Alto Networks Unit 42
⋅
Exploring a New KimJongRAT Stealer Variant and Its PowerShell Implementation KimJongRat |
| 2025-06-13
⋅
Twitter (@Unit42_Intel)
⋅
Tweet about APT27 SysUpdate activity HyperSSL HyperSSL |
| 2025-05-07
⋅
Palo Alto Networks Unit 42
⋅
Iranian Cyber Actors Impersonate Model Agency in Suspected Espionage Operation APT35 |
| 2025-04-14
⋅
Palo Alto Networks Unit 42
⋅
Slow Pisces Targets Developers With Coding Challenges and Introduces New Customized Python Malware RN Stealer |
| 2025-03-06
⋅
Palo Alto Networks Unit 42
⋅
The Next Level: Typo DGAs Used in Malicious Redirection Chains |
| 2025-02-28
⋅
Palo Alto Networks Unit 42
⋅
JavaGhost’s Persistent Phishing Attacks From the Cloud JavaGhost |
| 2025-02-27
⋅
Palo Alto Networks Unit 42
⋅
Squidoor: Suspected Chinese Threat Actor’s Backdoor Targets Global Organizations FINALDRAFT FINALDRAFT REF7707 |
| 2025-02-24
⋅
Palo Alto Networks Unit 42
⋅
Auto-Color: An Emerging and Evasive Linux Backdoor |
| 2025-01-29
⋅
Palo Alto Networks Unit 42
⋅
CL-STA-0048: An Espionage Operation Against High-Value Targets in South Asia Cobalt Strike MimiKatz PlugX ValleyRAT Winos CL-STA-0048 |
| 2025-01-17
⋅
Twitter (@Unit42_Intel)
⋅
Tweet about affiliates of DarkScorpius using Social Engineering via MS Teams UNC4393 |
| 2024-11-19
⋅
Palo Alto Networks Unit 42
⋅
FrostyGoop’s Zoom-In: A Closer Look into the Malware Artifacts, Behaviors and Network Communications FrostyGoop |
| 2024-11-14
⋅
Palo Alto
⋅
Fake North Korean IT Worker Linked to BeaverTail Video Conference App Phishing Attack BeaverTail InvisibleFerret WageMole |
| 2024-10-30
⋅
Palo Alto Networks Unit 42
⋅
Jumpy Pisces Engages in Play Ransomware Dtrack MimiKatz PLAY Sliver |