Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-06-09 ⋅ Zscaler ⋅ ThreatLabZ research team
Technical Analysis of MLTBackdoor
MLTBackdoor
2026-06-09 ⋅ CrowdStrike ⋅ Counter Adversary Operations
CrowdStrike 2026 Technology Threat Landscape Report: China’s Ambitions Fuel Attacks
2026-06-09 ⋅ Infoblox ⋅ David Brunsdon, Nick Sundvall
Residential Proxies in the Wild
2026-06-09 ⋅ Synthient ⋅ Synthient
Who Are The Victims of Residential Proxies?
2026-06-09 ⋅ ExaTrack ⋅ ExaTrack
LotusLite: Believe me I am MustangPanda
LOTUSLITE
2026-06-08 ⋅ SYGNIA ⋅ Sygnia Team
Velvet Ant’s Operation Highland: How a China-Nexus Actor Infiltrated an Internal Network Undetected
2026-06-08 ⋅ Proofpoint ⋅ Carlos Rubio, Saher Naumaan
Don't Fear the Repo: UNK_DeadDrop Phishing Campaign Targets Developers to Steal Cryptocurrency
Overlord RAT
2026-06-08 ⋅ StepSecurity ⋅ Rohan Prabhu
The Hades Campaign: Graph ML PyPI Packages Deploy Cross-Platform Memory Scrapers, AI Analyst Misdirection, and a Wiper Deterrent
Shai-Hulud
2026-06-07 ⋅ Socket ⋅ Socket
Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave
Shai-Hulud
2026-06-06 ⋅ Antonio Parata Blogspot ⋅ Antonio Parata
shrun, apiwatcher, and argus: three malware analysis tools built with Claude
Lorem Ipsum
2026-06-04 ⋅ Nokia ⋅ Nokia Deepfield ERT
Datasurge: a rogue EDR agent with a DDoS module
Jackskid Mirai Mirai
2026-06-04 ⋅ RESIDENT.NGO ⋅ RESIDENT.NGO Team
Case Study — UNC1151 Gmail Phishing (“Suspicious account activity”) Targeting Belarusian Pro-Democracy Politician, May 2026
2026-06-03 ⋅ Check Point Research ⋅ Alexey Bukhteyev
Impersonation, Click Hijacking, and TDS: Inside a Malware Distribution Ecosystem
AnimateClipper Remus
2026-06-03 ⋅ Microsoft ⋅ Microsoft
How Microsoft names threat actors
Wisteria Tsunami
2026-06-03 ⋅ Proofpoint ⋅ Proofpoint Threat Research Team
TA4922: The Suspected Chinese Crime Group is Going Global
Atlas RAT RomulusLoader SilentRunLoader TA4922
2026-06-03 ⋅ sonatype ⋅ Sonatype Security Research Team
Lazarus Group's Latest: Brandjacking Campaign on npm
2026-06-03 ⋅ Fortinet ⋅ Vincent Li
Inside the Cross-Platform Propagation of a New Gafgyt Variant C0XMO
Bashlite C0XMO
2026-06-02 ⋅ Threat Review Journal ⋅ Threat Review Journal
Investigation into APT 5 and their inner workings of PLA Troop 61786
2026-06-02 ⋅ Qualys ⋅ Aniket Harne
The HazyBeacon Protocol – How Malware Weaponizes Amazon Web Services (AWS) Lambda Function URLs
CL-STA-1020
2026-06-02 ⋅ The Register ⋅ Carly Page
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices