Click here to download all references as Bib-File.•
2025-06-21
⋅
⋅
Cert-UA
⋅
Cyberattacks UAC-0001 (APT28) in relation to public authorities using BEARDSHELL and COVENANT BEARDSHELL SLIMAGENT |
2025-06-20
⋅
Validin
⋅
Zooming through BlueNoroff Indicators with Validin |
2025-06-20
⋅
Twitter (@threatintel)
⋅
Tweet about wiper deployed against Albania by Druidfly |
2025-06-20
⋅
Github (VenzoV)
⋅
Analysis of Amatera Stealer v1 (Test build) Amatera |
2025-06-19
⋅
Hunt.io
⋅
Cobalt Strike Operators Leverage PowerShell Loaders Across Chinese, Russian, and Global Infrastructure Cobalt Strike |
2025-06-19
⋅
Government of Canada
⋅
Cyber threat bulletin: People's Republic of China cyber threat activity: PRC cyber actors target telecommunications companies as part of a global cyberespionage campaign |
2025-06-19
⋅
cocomelonc
⋅
MacOS hacking part 2: classic injection trick into macOS applications. Simple C example |
2025-06-18
⋅
Cisco Talos
⋅
Famous Chollima deploying Python version of GolangGhost RAT GolangGhost PylangGhost GolangGhost |
2025-06-18
⋅
Check Point Research
⋅
Fake Minecraft mods distributed by the Stargazers Ghost Network to steal gamers’ data |
2025-06-18
⋅
Elastic
⋅
A Wretch Client: From ClickFix deception to information stealer deployment HijackLoader Lumma Stealer SectopRAT |
2025-06-18
⋅
Huntress Labs
⋅
Feeling Blue(Noroff): Inside a Sophisticated DPRK Web3 Intrusion |
2025-06-17
⋅
Palo Alto Networks Unit 42
⋅
Exploring a New KimJongRAT Stealer Variant and Its PowerShell Implementation KimJongRat |
2025-06-17
⋅
DARKReading
⋅
Operation Endgame: Do Takedowns and Arrests Matter? BumbleBee Emotet Pikabot SmokeLoader TrickBot |
2025-06-16
⋅
Proofpoint
⋅
Amatera Stealer: Rebranded ACR Stealer With Improved Evasion, Sophistication ACR Stealer Amatera |
2025-06-16
⋅
HarfangLab
⋅
SadFuture: Mapping XDSpy latest evolution XDSpy |
2025-06-16
⋅
Trend Micro
⋅
Clone, Compile, Compromise: Water Curse’s Open-Source Malware Trap on GitHub |
2025-06-14
⋅
abuse.ch
⋅
MalwareBazaar | SalatStealer SalatStealer |
2025-06-13
⋅
Recorded Future
⋅
GrayAlpha Uses Diverse Infection Vectors to Deploy PowerNet Loader and NetSupport RAT PowerNet |
2025-06-13
⋅
Twitter (@Unit42_Intel)
⋅
Tweet about APT27 SysUpdate activity HyperSSL HyperSSL |
2025-06-13
⋅
Recorded Future
⋅
GrayAlpha Uses Diverse Infection Vectors to Deploy PowerNet Loader and NetSupport RAT EugenLoader POWERTRASH NetSupportManager RAT |