Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-08-10sonatypeSonatype Research Team
Six npm Packages Use Ethereum Transactions to Retrieve Malicious Payloads
JADESNOW
2026-08-07KasperskyKaspersky
The APT group Head Mare exploits vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph malware to video conferencing participants
PhantomCore PhantomGraph
2026-08-05SOC PrimeSOC Prime
SmartApeSG Pushes an Unknown RAT Through ClickFix Lures
SmartApeSG
2026-08-03AhnLabASEC
Analysis of the Connection Between Xctdoor and Past CRAT Attack Cases (Larva-26005)
CRAT DRATzarus Larva-26005
2026-08-02AhnLabASEC
Analysis of a Phishing Email Attack Case by the Larva-24009 Threat Actor
Quasar RAT Larva-24009
2026-07-31StealthMoleStealthMole
The Many Faces of ModernStealer: Tracing an Underground Military Data Network
ModernStealer
2026-07-31Microsoft Threat Intelligence
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
ChocoShell CornFlake Storm-2945
2026-07-30AhnLabAhnLab
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Gunra
2026-07-29ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan, Stuart Del Caliz
Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit
ZimReaper Void Blizzard
2026-07-28t0ast's blogt0ast
Download Meccha Chameleon Cheats, Get Malware
Remus
2026-07-28StepSecurityVarun Sharma
Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan
JADESNOW
2026-07-28Hunt.ioHunt.io
Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon
2026-07-27NetresecErik Hjelmvik
PureLogs, PureRAT and misleading zgRAT
PureLogs Stealer PureRAT zgRAT
2026-07-24AhnLabASEC
Case Study: Targeted Attack Case on an MS-SQL Server Involving the Installation of GotoHTTP and SoftEther VPN
XMRIG Coinminer GoToHTTP HackBrowserData MimiKatz Monero Miner VShell xmrig Larva-26009
2026-07-24GoogleGoogle Threat Intelligence Group
Updated Cyber Threat Actor Naming System
APT15 APT20 APT27 APT28 APT29 APT30 APT31 APT33 APT35 APT37 APT39 APT40 APT41 APT42 APT45 APT5 BlackTech Callisto Conference Crew FIN11 FIN6 FIN7 FIN8 MuddyWater MUSTANG PANDA Naikon OilRig Sandworm TEMP.Hermit Tick Tonto Team Turla UAC-0020 UNC1069 UNC1088 UNC2814
2026-07-23NSANSA
NSA and Partners Alert Zimbra Collaboration Suite Users of a Russian State-Supported Phishing Campaign
ZimReaper
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
Operation RoundPress Rolls on with More Half-Click Webmail Zero-Days from TA458
SpyPress
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
TA488 Targets Zimbra Mailservers with Half-Click Exploits
ZimReaper
2026-07-23Group-IBGroup-IB
JadeProx: Tracing a China-nexus Operation Through an OPSEC Mistake
AdaptixC2 reGeorg
2026-07-22Prophet SecurityJoshua Hubner
EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain