Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-02-16 ⋅ Huntress Labs ⋅ Anna Pham, Michael Tigges
ClickFix Won't Die. Neither Will Matanbuchus. A New RAT and a Hands-on-Keyboard Intrusion
AstarionRAT Matanbuchus
2026-02-13 ⋅ kmsec ⋅ Kieran Miyamoto
VMWare artifacts left by a FAMOUS CHOLLIMA operator
2026-02-12 ⋅ Botcrawl ⋅ Sean Doyle
Nippon Medical School Musashi Kosugi Hospital Data Breach Claimed by NetRunnerPR
NetRunnerPR
2026-02-12 ⋅ LevelBlue ⋅ Rodel Mendrez
How ClickFix Opens the Door to Stealthy StealC Information Stealer
IClickFix Stealc
2026-02-11 ⋅ Isovalent ⋅ Jeremy Colvin
Deconstructing Voidlink: Why New AI and Cloud-Native Threats Require a New Class of Defense
VoidLink UAT-9921
2026-02-10 ⋅ Google ⋅ Google Threat Intelligence Group
Beyond the Battlefield: Threats to the Defense Industrial Base
Infrastructure Destruction Squad
2026-02-10 ⋅ Cisco Talos ⋅ Aaron Boyd, Asheer Malhotra, Nick Biasini, Vitor Ventura
New threat actor, UAT-9921, leverages VoidLink framework in campaigns
VoidLink UAT-9921
2026-02-09 ⋅ TRUESEC ⋅ Andreas Törnqvist, Mattias Wåhlén, Nicklas Keijser
Detecting Russian Threats to Critical Energy Infrastructure
DynoWiper
2026-02-08 ⋅ GitHub (nikaiw) ⋅ nikaiw
Github Repository: VMkatz
2026-02-05 ⋅ flare ⋅ Assaf Morag
Threat Alert: TeamPCP, An Emerging Force in the Cloud Native and Ransomware Landscape
TeamPCP
2026-02-05 ⋅ Symantec ⋅ Threat Hunter Team
Reynolds: Defense Evasion Capability Embedded in Ransomware Payload
Reynolds
2026-02-05 ⋅ Bleeping Computer ⋅ Bill Toulas
Italian university La Sapienza goes offline after cyberattack
Rorschach Ransomware Femwar02
2026-02-04 ⋅ Github (ShadowOpCode) ⋅ ShadowOpCode
DesckVB-RAT: Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain
2026-02-04 ⋅ Cyderes ⋅ Howler Cell Research Team
RenEngine Loader and HijackLoader: Dual-Stage Attack Chain Fueling Stealer Campaigns
ACR Stealer HijackLoader
2026-02-04 ⋅ Silent Push ⋅ João Batista, Silent Push
Silent Push Identifies More Than 10,000 Infected IPs as Part of SystemBC Botnet Malware Family
SystemBC SystemBC
2026-02-03 ⋅ LevelBlue ⋅ Evgeny Ananin, Mark Tsipershtein
The Godfather of Ransomware? Inside DragonForce’s Cartel Ambitions
DragonForce
2026-02-03 ⋅ Kaspersky Labs ⋅ Anton Kargin, Georgy Kucherin
The Notepad++ supply chain attack — unnoticed execution chains and new IoCs
Chrysalis Cobalt Strike
2026-02-02 ⋅ abuse.ch
Yet another RAT in town: RemoteX
RemoteX
2026-02-02 ⋅ Zscaler ⋅ Roy Tay, Sudeep Singh
APT28 Leverages CVE-2026-21509 in Operation Neusploit
PixyNetLoader
2026-02-02 ⋅ Netresec ⋅ Erik Hjelmvik
njRAT runs MassLogger
MASS Logger NjRAT