Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-08-15neso.reneso
Borrowed Machinery: SnappyClient, HijackLoader, and a Shared Codebase?
HijackLoader SnappyClient
2026-08-14QUIRSO GmbHÇağatay Yürekli, Denis Szadkowski, Maike Orlikowski
Global Exploitation of CVE-2026–59310 by Suspected Chinese-Nexus APT & Related CVE-2026–59309 Activity
2026-08-14Ministere de l'Economie et des FinancesElvire MACE
Illegitimate access to the information system of the Directorate General of Public Finances
ZeroBytes
2026-08-11Aryaka NetworkAditya K Sood, bikash dash
Beyond the Batch File Analysis of a Multi-Stage DonutLoader Infection Chain
donut_injector
2026-08-11abuse.chabuse.ch
MalwareBazaar | SHA256 29e97b2ae2e4c12dddaa69995462ffce950409f222242725f3aab323949ed8ee (HypeAgent)
HypeAgent
2026-08-10AhnLabASEC
Attack Cases for Domestic Web Servers Running SoftEther VPN in Korea
Larva-26010
2026-08-10LevelBlueRodel Mendrez
CNCMachineRMS: The Undocumented RAT At the End of a BabaDeda Chain
Babadeda
2026-08-10sonatypeSonatype Research Team
Six npm Packages Use Ethereum Transactions to Retrieve Malicious Payloads
JADESNOW
2026-08-07KasperskyKaspersky
The APT group Head Mare exploits vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph malware to video conferencing participants
PhantomCore PhantomGraph
2026-08-05SOC PrimeSOC Prime
SmartApeSG Pushes an Unknown RAT Through ClickFix Lures
SmartApeSG
2026-08-03AhnLabASEC
Analysis of the Connection Between Xctdoor and Past CRAT Attack Cases (Larva-26005)
CRAT DRATzarus Larva-26005
2026-08-02AhnLabASEC
Analysis of a Phishing Email Attack Case by the Larva-24009 Threat Actor
Quasar RAT Larva-24009
2026-07-31StealthMoleStealthMole
The Many Faces of ModernStealer: Tracing an Underground Military Data Network
ModernStealer
2026-07-31Medium @prtheusPrtheus
1337_GTWK Linux Malware Analysis
1337_GTWK
2026-07-31Microsoft Threat Intelligence
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
ChocoShell CornFlake Storm-2945
2026-07-30AhnLabAhnLab
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Gunra
2026-07-30Prtheus
Linux Malware 1337_GWTK Server Analysis
1337_GTWK
2026-07-29ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan, Stuart Del Caliz
Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit
ZimReaper Void Blizzard
2026-07-29SafeDepSafeDep Team
Joyfill npm Packages Compromised with Blockchain C2 Loader
JADESNOW
2026-07-28SOCRadarSOCRadar
Dark Web Profile: ExfilSquad
ExfilSquad