Click here to download all references as Bib-File.•
| 2025-11-17
⋅
AhnLab
⋅
NKNShell Malware Distributed via VPN Website Larva-24010 |
| 2025-11-17
⋅
0x0d4y
⋅
Nation-State Actor’s Arsenal: An In-Depth Look at Lazarus’ ScoringMathTea ScoringMathTea |
| 2025-11-15
⋅
Elastic
⋅
RONINGLOADER: DragonBreath’s New Path to PPL Abuse DragonBreath RONINGLOADER |
| 2025-11-14
⋅
The Record
⋅
Multiple US citizens plead guilty to helping North Korean IT workers earn $2 million |
| 2025-11-13
⋅
Ransom-ISAC
⋅
Cross-Chain TxDataHiding Crypto Heist: A Very Chainful Process (Part 3) JADESNOW |
| 2025-11-13
⋅
Politie NL
⋅
Again criminal infrastructure dismantled in international ransomware operation Rhadamanthys Venom RAT |
| 2025-11-13
⋅
NVISO Labs
⋅
Contagious Interview Actors Now Utilize JSON Storage Services for Malware Delivery BeaverTail OtterCookie InvisibleFerret Beavertail TsunamiKit |
| 2025-11-13
⋅
Anthropic
⋅
Disrupting the first reported AI-orchestrated cyber espionage campaign GTG-1002 |
| 2025-11-13
⋅
Israel National Digital Agency
⋅
SpearSpecter: Unmasking Iran’s IRGC Cyber Operations Targeting High-Profile Individuals TAMECAT |
| 2025-11-12
⋅
ISC
⋅
SmartApeSG campaign uses ClickFix page to push NetSupport RAT SmartApeSG NetSupportManager RAT |
| 2025-11-12
⋅
Amazon
⋅
Amazon discovers APT exploiting Cisco and Citrix zero-days |
| 2025-11-11
⋅
Botcrawl
⋅
National Civil Service Commission of Colombia Data Breach Exposes 2.9 TB of Government Files Kazu |
| 2025-11-10
⋅
Mandiant
⋅
No Place Like Localhost: Unauthenticated Remote Access via Triofox Vulnerability CVE-2025-12480 UNC6485 |
| 2025-11-10
⋅
Genians
⋅
State-Sponsored Remote Wipe Tactics Targeting Android Devices Quasar RAT Remcos |
| 2025-11-07
⋅
ENKI
⋅
Lazarus Group targets Aerospace and Defense with new Comebacker variant ComeBacker |
| 2025-11-07
⋅
LANDFALL: New Commercial-Grade Android Spyware in Exploit Chain Targeting Samsung Devices LANDFALL |
| 2025-11-05
⋅
Google
⋅
GTIG AI Threat Tracker: Advances in Threat Actor Usage of AI Tools PromptLock UNC1069 |
| 2025-11-05
⋅
Huntress Labs
⋅
Gootloader Returns: What Goodies Did They Bring? GootLoader Supper |
| 2025-11-05
⋅
ESET Research
⋅
APT Activity: Russia-Aligned APTs Ramp Up Attacks Against Ukraine and Its Strategic Partners (April 2025 – September 2025 Report) |
| 2025-11-05
⋅
KrebsOnSecurity
⋅
Cloudflare Scrubs Aisuru Botnet from Top Domains List Aisuru |