Click here to download all references as Bib-File.•
| 2026-03-30
⋅
Trend Micro
⋅
TeamPCP’s Telnyx Attack Marks a Shift in Tactics Beyond LiteLLM TeamPCP |
| 2026-03-26
⋅
Trend Micro
⋅
Your AI Gateway Was a Backdoor: Inside the LiteLLM Supply Chain Compromise TeamPCP |
| 2026-03-12
⋅
Gdata
⋅
Endgame Harvesting: Inside ACRStealer’s Modern Infrastructure ACR Stealer |
| 2026-02-26
⋅
Gdata
⋅
HijackLoader: Free Games, Costly Consequences HijackLoader |
| 2026-02-25
⋅
Google
⋅
Cloud Threat Horizons Report: H1 2026 UNC6426 |
| 2026-02-17
⋅
Google
⋅
From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day BRICKSTORM GRIMBOLT SLAYSTYLE UNC6201 |
| 2026-02-15
⋅
Github (jrm360seclab)
⋅
AODIN X1BQ Projector — Pre-Installed Vo1d Botnet Malware Void |
| 2026-01-29
⋅
Fortninet
⋅
Interlock Ransomware: New Techniques, Same Old Tricks Interlock |
| 2025-12-18
⋅
HelpNetSecurity
⋅
Clipping Scripted Sparrow’s wings: Tracking a global phishing ring Scripted Sparrow |
| 2025-12-01
⋅
FORTRA
⋅
Scripted Sparrow: A Prolific BEC Threat Group Scripted Sparrow |
| 2025-11-19
⋅
SpiderLabs IDs New Banking Trojan Distributed Through WhatsApp Eternidade Stealer |
| 2025-09-24
⋅
Google
⋅
Another BRICKSTORM: Stealthy Backdoor Enabling Espionage into Tech and Legal Sectors BRICKSTORM |
| 2025-08-19
⋅
Red Canary
⋅
Patching for persistence: How DripDropper Linux malware moves through the cloud |
| 2025-07-31
⋅
ThreatLocker
⋅
SafePay ransomware explained: IOCs, TTPs, and defense strategies SafePay |
| 2025-06-12
⋅
CitizenLab
⋅
Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted |
| 2025-05-29
⋅
Fortinet
⋅
Deep Dive into a Dumped Malware without a PE Header |
| 2025-05-01
⋅
Fortinet
⋅
FortiGuard Incident Response Team Detects Intrusion into Middle East Critical National Infrastructure Havoc |
| 2025-04-16
⋅
SpyCloud
⋅
Exposed Credentials & Ransomware Operations: Using LLMs to Digest 200K Messages from the Black Basta Chats Black Basta Black Basta |
| 2025-04-03
⋅
Mandiant
⋅
Suspected China-Nexus Threat Actor Actively Exploiting Critical Ivanti Connect Secure Vulnerability (CVE-2025-22457) SPAWNSNARE |
| 2025-03-18
⋅
Trellix
⋅
Analysis of Black Basta Ransomware Chat Leaks Black Basta Black Basta |