Click here to download all references as Bib-File.•
| 2026-01-02
⋅
The Record
⋅
Sedgwick confirms cyber incident affecting its major federal contractor subsidiary TridentLocker |
| 2025-12-30
⋅
Botcrawl
⋅
Saudi Icon Data Breach Exposes 4.15TB in Alleged Kazu Ransomware Attack Kazu |
| 2025-12-30
⋅
Koi Security
⋅
DarkSpectre: Unmasking the Threat Actor Behind 8.8 Million Infected Browsers DarkSpectre ShadyPanda |
| 2025-12-30
⋅
US Department of Justice
⋅
Two Americans Plead Guilty to Targeting Multiple U.S. Victims Using ALPHV BlackCat Ransomware BlackCat BlackCat |
| 2025-12-29
⋅
LinkedIn (Idan Tarab)
⋅
Active Spear-Phishing Campaign Targeting Israeli Security-Related Individuals — Infrastructure Linked to APT42 (Hashtag#CharmingKitten) |
| 2025-12-25
⋅
Github (cocomelonc)
⋅
Malware development trick 55: enum process via NtQuerySystemInformation. Simple C example. |
| 2025-12-23
⋅
secpod
⋅
Zero-Day Crisis: CVE-2025-20393 Unpatched on Cisco Email Gateways, Exploited by China-Linked Hackers UAT-9686 |
| 2025-12-22
⋅
Medium Ireneusz Tarnowski
⋅
Operational Analysis of Communication Channels in Mobile RCS SpyFRPTunnel |
| 2025-12-21
⋅
Genians
⋅
Operation Artemis: Analysis of HWP-Based DLL Side Loading Attacks RokRAT |
| 2025-12-19
⋅
PolySwarm Tech Team
⋅
Multiple Threat Actors Leveraging CVE-2025-55182 (React2Shell) ANGRYREBEL COMPOOD MINOCAT Mirai SNOWLIGHT XMRIG EtherRAT Cobalt Strike Mirai VShell xmrig JACKPOT PANDA |
| 2025-12-19
⋅
Intezer
⋅
Tracing a Paper Werewolf campaign through AI-generated decoys and Excel XLLs EchoGather |
| 2025-12-18
⋅
Proofpoint
⋅
Access granted: phishing with device code authorization for account takeover TA2723 UNK_AcademicFlare |
| 2025-12-18
⋅
Huntress Labs
⋅
A Series of Unfortunate (RMM) Events |
| 2025-12-18
⋅
Acronis
⋅
Acronis TRU Alliance {Hunt.io}: Hunting DPRK threats - New Global Lazarus & Kimsuky campaigns BADCALL POOLRAT Quasar RAT |
| 2025-12-18
⋅
Gen Digital Inc
⋅
Gen Blogs | Defeating AuraStealer: Practical Deobfuscation Workflows for Modern Infostealers Aura Stealer |
| 2025-12-18
⋅
safebreach
⋅
Prince of Persia: A decade of Iranian Nation State APT Campaign Activity Infy Tonnerre |
| 2025-12-18
⋅
BlackPoint
⋅
New MintsLoader Variant Using Hashtable Obfuscation MintsLoader |
| 2025-12-17
⋅
Reporters Without Borders
⋅
ResidentBat: A new spyware family used by Belarusian KGB ResidentBat |
| 2025-12-17
⋅
Cisco Talos
⋅
UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager UAT-9686 |
| 2025-12-16
⋅
Zscaler
⋅
BlindEagle Targets Colombian Government Agency with Caminho and DCRAT DCRat PhantomVAI |