Click here to download all references as Bib-File.•
| 2026-06-01
⋅
Nextron Systems
⋅
Detecting Nimbus Manticore and their sideloading infection chains MiniFast |
| 2026-05-31
⋅
Gridinsoft
⋅
DriveSurge Turns Trusted Websites Into ClickFix Malware Traps DriveSurge |
| 2026-05-31
⋅
Socket
⋅
Famous Chollima Targets PHP Developers Through Compromised Packagist Package JADESNOW |
| 2026-05-28
⋅
eSentire
⋅
Nimbus RAT: How Threat Actors Are Abusing Microsoft Teams and Google Drive to Deploy a Java RAT |
| 2026-05-28
⋅
ESET Research
⋅
ESET APT Activity Report Q4 2025–Q1 2026 WAVESHAPER BirdCall BLINDINGCAN RokRAT Rook Tiger RAT |
| 2026-05-28
⋅
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations LegionRelay PhantomRelay |
| 2026-05-28
⋅
WithSecure
⋅
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations GreyVibe |
| 2026-05-28
⋅
LevelBlue
⋅
Sapphire Sleet Targets macOS in Multi-Stage Intrusion Campaign |
| 2026-05-27
⋅
Straiker
⋅
Fake Claude Code, Real Malware: Inside the Campaign Targeting AI Developers ACR Stealer Amatera |
| 2026-05-27
⋅
Group-IB
⋅
The GHOST STADIUM Score: Billions At Stake At The World’s Largest Football Tournament GHOST STADIUM |
| 2026-05-27
⋅
Wiz.io
⋅
Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure JINX-0164 |
| 2026-05-27
⋅
bluecyber
⋅
MUSTANG PANDA x PLUGX - Analysis of the January 2026 sample: a multi-layer execution chain PlugX |
| 2026-05-26
⋅
Intrinsec
⋅
Pivoting on a malspam infrastructure delivering JS malware backed by bulletproof networks |
| 2026-05-24
⋅
cocomelonc
⋅
Malware shellcode delivery via signal - part 1. FSK Basics. Simple python script |
| 2026-05-22
⋅
Fox-IT
⋅
RemotePE: The Lazarus RAT that lives in memory DPAPILoader RemotePE |
| 2026-05-22
⋅
Check Point
⋅
Fast and Furious – Nimbus Manticore Operations During the Iranian Conflict MiniFast |
| 2026-05-22
⋅
Trend Micro
⋅
Analyzing Void Dokkaebi’s Cython-Compiled InvisibleFerret Malware BeaverTail InvisibleFerret |
| 2026-05-21
⋅
PWC
⋅
Inside Red Lamassu’s JFMBackdoor JFMBackdoor Calypso |
| 2026-05-20
⋅
Seqrite Labs
⋅
Operation Dragon Whistle: UNG0002 Targets Chinese Academia via Weaponized Institutional Lure Cobalt Strike |
| 2026-05-20
⋅
Hackernoon
⋅
ZeffSec Resurfaces on Telegram, Claims Breach of Gozine2.ir ZeffSec |