Click here to download all references as Bib-File.•
| 2026-01-07
⋅
MalBeacon
⋅
[Op Report] CastleRAT Campaign leads to Hands-on-Keyboard ATO Operations NightshadeC2 |
| 2026-01-07
⋅
Huntress Labs
⋅
The Great VM Escape: ESXi Exploitation in the Wild |
| 2026-01-06
⋅
Trellix
⋅
The Ghost in the Machine: Unmasking CrazyHunter's Stealth Tactics CrazyHunter |
| 2026-01-06
⋅
TechCrunch
⋅
Founder of spyware maker pcTattletale pleads guilty to hacking and advertising surveillance software pcTattletale |
| 2026-01-05
⋅
HudsonRock
⋅
Dozens of Global Companies Hacked via Cloud Credentials from Infostealer Infections & More at Risk |
| 2026-01-03
⋅
Linkedin (Tammy H.)
⋅
Emerging Threat: The DeadFrog AV/EDR Killer |
| 2026-01-02
⋅
The Record
⋅
Sedgwick confirms cyber incident affecting its major federal contractor subsidiary TridentLocker |
| 2025-12-30
⋅
Botcrawl
⋅
Saudi Icon Data Breach Exposes 4.15TB in Alleged Kazu Ransomware Attack Kazu |
| 2025-12-30
⋅
Koi Security
⋅
DarkSpectre: Unmasking the Threat Actor Behind 8.8 Million Infected Browsers DarkSpectre ShadyPanda |
| 2025-12-30
⋅
US Department of Justice
⋅
Two Americans Plead Guilty to Targeting Multiple U.S. Victims Using ALPHV BlackCat Ransomware BlackCat BlackCat |
| 2025-12-29
⋅
LinkedIn (Idan Tarab)
⋅
Active Spear-Phishing Campaign Targeting Israeli Security-Related Individuals — Infrastructure Linked to APT42 (Hashtag#CharmingKitten) |
| 2025-12-25
⋅
Github (cocomelonc)
⋅
Malware development trick 55: enum process via NtQuerySystemInformation. Simple C example. |
| 2025-12-23
⋅
secpod
⋅
Zero-Day Crisis: CVE-2025-20393 Unpatched on Cisco Email Gateways, Exploited by China-Linked Hackers UAT-9686 |
| 2025-12-22
⋅
Medium Ireneusz Tarnowski
⋅
Operational Analysis of Communication Channels in Mobile RCS SpyFRPTunnel |
| 2025-12-21
⋅
Genians
⋅
Operation Artemis: Analysis of HWP-Based DLL Side Loading Attacks RokRAT |
| 2025-12-19
⋅
Intezer
⋅
Tracing a Paper Werewolf campaign through AI-generated decoys and Excel XLLs EchoGather |
| 2025-12-18
⋅
Proofpoint
⋅
Access granted: phishing with device code authorization for account takeover TA2723 UNK_AcademicFlare |
| 2025-12-18
⋅
Huntress Labs
⋅
A Series of Unfortunate (RMM) Events |
| 2025-12-18
⋅
Acronis
⋅
Acronis TRU Alliance {Hunt.io}: Hunting DPRK threats - New Global Lazarus & Kimsuky campaigns BADCALL POOLRAT Quasar RAT |
| 2025-12-18
⋅
Gen Digital Inc
⋅
Gen Blogs | Defeating AuraStealer: Practical Deobfuscation Workflows for Modern Infostealers Aura Stealer |