Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-05-28 ⋅ ESET Research ⋅ ESET Research
ESET APT Activity Report Q4 2025–Q1 2026
WAVESHAPER BirdCall BLINDINGCAN RokRAT Rook Tiger RAT
2026-05-28 ⋅ Mohammad Kazem Hassan Nejad
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations
LegionRelay PhantomRelay
2026-05-28 ⋅ WithSecure ⋅ Mohammad Kazem Hassan Nejad
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations
GreyVibe
2026-05-28 ⋅ LevelBlue ⋅ Maor Gabay
Sapphire Sleet Targets macOS in Multi-Stage Intrusion Campaign
2026-05-27 ⋅ Straiker ⋅ Amanda Rousseau, Carl Vincent
Fake Claude Code, Real Malware: Inside the Campaign Targeting AI Developers
ACR Stealer Amatera
2026-05-27 ⋅ Group-IB ⋅ Kuvonchbek Yorkulov, Yuan Huang
The GHOST STADIUM Score: Billions At Stake At The World’s Largest Football Tournament
GHOST STADIUM
2026-05-27 ⋅ Wiz.io ⋅ Andre Maccarone, Benjamin Read, Eden Abergil, Shira Ayal, Yuval Dan
Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure
JINX-0164
2026-05-27 ⋅ bluecyber ⋅ Nigmaz
MUSTANG PANDA x PLUGX - Analysis of the January 2026 sample: a multi-layer execution chain
PlugX
2026-05-26 ⋅ Intrinsec ⋅ CTI Intrinsec, David Sardinha
Pivoting on a malspam infrastructure delivering JS malware backed by bulletproof networks
2026-05-24 ⋅ cocomelonc ⋅ cocomelonc
Malware shellcode delivery via signal - part 1. FSK Basics. Simple python script
2026-05-22 ⋅ Fox-IT ⋅ Mick Koomen, Yun Zheng Hu
RemotePE: The Lazarus RAT that lives in memory
DPAPILoader RemotePE
2026-05-22 ⋅ Check Point ⋅ Checkpoint Research
Fast and Furious – Nimbus Manticore Operations During the Iranian Conflict
MiniFast
2026-05-22 ⋅ Trend Micro ⋅ Kazuki Fujisawa
Analyzing Void Dokkaebi’s Cython-Compiled InvisibleFerret Malware
BeaverTail InvisibleFerret
2026-05-21 ⋅ Symantec ⋅ Threat Hunter Team
GodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable Defenses
win.beast MimiKatz Hyadina
2026-05-21 ⋅ Lumen ⋅ Danny Adamitis, Ryan English, Steve Rudd
Introducing Showboat: A new malware family taunts defenses and targets international telecom firms
Showboat
2026-05-21 ⋅ PWC ⋅ PwC Threat Intelligence
Inside Red Lamassu’s JFMBackdoor
JFMBackdoor Calypso
2026-05-20 ⋅ Nokia ⋅ Nokia Deepfield ERT
Potassium: it was never about the taste
Potassium
2026-05-20 ⋅ Seqrite Labs ⋅ Dixit Panchal, Kartik Jivani, Vaibhav Krushna Billade
Operation Dragon Whistle: UNG0002 Targets Chinese Academia via Weaponized Institutional Lure
Cobalt Strike
2026-05-20 ⋅ Hackernoon ⋅ Mrwriteup
ZeffSec Resurfaces on Telegram, Claims Breach of Gozine2.ir
ZeffSec
2026-05-20 ⋅ K7 Security ⋅ Srinivasan E
Fake Microsoft Teams download sites are being used to deliver ValleyRAT via DLL sideloading
ValleyRAT