Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2025-12-19cybleCyble
Stealth in Layers: Unmasking the Loader used in Targeted Email Campaigns
DCRat Katz Stealer PhantomVAI PureLogs Stealer Remcos XWorm
2025-12-18ProofpointProofpoint Threat Research Team
Access granted: phishing with device code authorization for account takeover
TA2723 UNK_AcademicFlare
2025-12-18HelpNetSecurityJohn Wilson
Clipping Scripted Sparrow’s wings: Tracking a global phishing ring
Scripted Sparrow
2025-12-18Huntress LabsAustin Worline, Lindsey O'Donnell-Welch
A Series of Unfortunate (RMM) Events
2025-12-18AcronisAcronis Security
Acronis TRU Alliance {Hunt.io}: Hunting DPRK threats - New Global Lazarus & Kimsuky campaigns
BADCALL POOLRAT Quasar RAT
2025-12-18Gen Digital IncVojtěch Krejsa
Gen Blogs | Defeating AuraStealer: Practical Deobfuscation Workflows for Modern Infostealers
Aura Stealer
2025-12-18safebreachTomer Bar
Prince of Persia: A decade of Iranian Nation State APT Campaign Activity
Infy Tonnerre
2025-12-18ESET ResearchAnton Cherepanov, Peter Strýček
LongNosedGoblin tries to sniff out governmental affairs in Southeast Asia and Japan
NosyDownloader
2025-12-18CyderesRahul Ramesh
From Loader to Looter: ACR Stealer Rides on Upgraded CountLoader
ACR Stealer CountLoader
2025-12-18BlackPointNevan Beal, Sam Decker
New MintsLoader Variant Using Hashtable Obfuscation
MintsLoader
2025-12-17BI.ZONEBI.ZONE
Arcane Werewolf revamps its arsenal with Loki 2.1 implant
Havoc Loki (Mythic) Mythic Likho
2025-12-17Reporters Without BordersJanik Besendor, Maximilian Paß, RESIDENT.NGO Team, Viktor Schlüter
ResidentBat: A new spyware family used by Belarusian KGB
ResidentBat
2025-12-17Recorded FutureInsikt Group
PurpleBravo’s Targeting of the IT Software Supply Chain
BeaverTail InvisibleFerret PylangGhost GolangGhost
2025-12-17Cisco TalosCisco Talos
UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager
UAT-9686
2025-12-17Crystal IntelligenceCrystal Intelligence
How we proved North Korea’s blockchain malware campaign
JADESNOW
2025-12-17XLabAcey9, Alex.Turing, RootKiter, Wang Hao
Kimwolf Exposed: The Massive Android Botnet with 1.8 Million Infected Devices
Kimwolf Aisuru
2025-12-17Recorded FutureInsikt Group
BlueDelta’s Persistent Campaign Against UKR.NET
2025-12-16ZscalerGaetano Pellegrino
BlindEagle Targets Colombian Government Agency with Caminho and DCRAT
DCRat PhantomVAI
2025-12-16R3dy's BlogPaul Viard
Gozi Gozi Gozi - String Decryption
Gozi ISFB
2025-12-16sysdigSysdig Threat Research Team
EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2
EtherRAT