Click here to download all references as Bib-File.•
| 2026-08-03
⋅
AhnLab
⋅
Analysis of the Connection Between Xctdoor and Past CRAT Attack Cases (Larva-26005) CRAT DRATzarus Larva-26005 |
| 2026-08-02
⋅
AhnLab
⋅
Analysis of a Phishing Email Attack Case by the Larva-24009 Threat Actor Quasar RAT Larva-24009 |
| 2026-07-31
⋅
StealthMole
⋅
The Many Faces of ModernStealer: Tracing an Underground Military Data Network ModernStealer |
| 2026-07-30
⋅
AhnLab
⋅
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group) Gunra |
| 2026-07-29
⋅
SafeDep
⋅
Joyfill npm Packages Compromised with Blockchain C2 Loader JADESNOW |
| 2026-07-28
⋅
StepSecurity
⋅
Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan JADESNOW |
| 2026-07-28
⋅
Socket
⋅
Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan JADESNOW |
| 2026-07-28
⋅
Hunt.io
⋅
Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon |
| 2026-07-24
⋅
AhnLab
⋅
Case Study: Targeted Attack Case on an MS-SQL Server Involving the Installation of GotoHTTP and SoftEther VPN XMRIG Coinminer GoToHTTP HackBrowserData MimiKatz Monero Miner VShell xmrig Larva-26009 |
| 2026-07-24
⋅
Google
⋅
Updated Cyber Threat Actor Naming System APT15 APT20 APT27 APT28 APT29 APT30 APT31 APT33 APT35 APT37 APT39 APT40 APT41 APT42 APT45 APT5 BlackTech Callisto Conference Crew FIN11 FIN6 FIN7 FIN8 MuddyWater MUSTANG PANDA Naikon OilRig Sandworm TEMP.Hermit Tick Tonto Team Turla UAC-0020 UNC1069 UNC1088 UNC2814 |
| 2026-07-24
⋅
Daily NK
⋅
North Korea busts elite hacking ring inside its own banks |
| 2026-07-24
⋅
Nokia
⋅
Jackskid's residential proxy, brought to you by UPnP Jackskid |
| 2026-07-23
⋅
Group-IB
⋅
JadeProx: Tracing a China-nexus Operation Through an OPSEC Mistake AdaptixC2 reGeorg |
| 2026-07-22
⋅
Prophet Security
⋅
EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain |
| 2026-07-21
⋅
kienmanowar Blog
⋅
[QuickNote] Mustang Panda ToneShell (APT S1239) Beacon Shellcode – RE Analysis TONESHELL |
| 2026-07-17
⋅
Volexity
⋅
Proxying to Compromise: SonicWall Secure Mobile Access 0-day Exploitation Behinder UTA0533 |
| 2026-07-16
⋅
Hacking But Legal
⋅
North Korea Is Hiring StoatWaffle |
| 2026-07-16
⋅
Microsoft Security
⋅
ACR Stealer: Two observed intrusion chains amid increased threat activity ACR Stealer |
| 2026-07-15
⋅
Symantec
⋅
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor Daxin |
| 2026-07-14
⋅
PICUS Security
⋅
FSB Center 16: How Russian hackers exploit routers via SNMP and Cisco Smart Install |