Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-07-30AhnLabAhnLab
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Gunra
2026-07-29ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan, Stuart Del Caliz
Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit
ZimReaper Void Blizzard
2026-07-28t0ast's blogt0ast
Download Meccha Chameleon Cheats, Get Malware
Remus
2026-07-28StepSecurityVarun Sharma
Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan
JADESNOW
2026-07-28Hunt.ioHunt.io
Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon
2026-07-27NetresecErik Hjelmvik
PureLogs, PureRAT and misleading zgRAT
PureLogs Stealer PureRAT zgRAT
2026-07-24GoogleGoogle Threat Intelligence Group
Updated Cyber Threat Actor Naming System
APT15 APT20 APT27 APT28 APT29 APT30 APT31 APT33 APT35 APT37 APT39 APT40 APT41 APT42 APT45 APT5 BlackTech Callisto Conference Crew FIN11 FIN6 FIN7 FIN8 MuddyWater MUSTANG PANDA Naikon OilRig Sandworm TEMP.Hermit Tick Tonto Team Turla UAC-0020 UNC1069 UNC1088 UNC2814
2026-07-23NSANSA
NSA and Partners Alert Zimbra Collaboration Suite Users of a Russian State-Supported Phishing Campaign
ZimReaper
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
Operation RoundPress Rolls on with More Half-Click Webmail Zero-Days from TA458
SpyPress
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
TA488 Targets Zimbra Mailservers with Half-Click Exploits
ZimReaper
2026-07-23Group-IBGroup-IB
JadeProx: Tracing a China-nexus Operation Through an OPSEC Mistake
AdaptixC2 reGeorg
2026-07-22Prophet SecurityJoshua Hubner
EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain
2026-07-22Huntress LabsMichael Tigges
Inside FakeAgent: How a Claude Desktop Malvertising Campaign Hit 29 Organizations with SectopRAT
SectopRAT
2026-07-20Medium Ireneusz TarnowskiIreneusz Tarnowski
INC Ransom: Infrastructure Analysis, Operational Tradecraft, and Detection Opportunities
INC INC
2026-07-16Cisco TalosAlex Karkins, Chetan Raghuprasad
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign
CASTLESTEALER Remcos UAT-11795
2026-07-16Microsoft SecurityBalaji Venkatesh S, Microsoft Security Research
ACR Stealer: Two observed intrusion chains amid increased threat activity
ACR Stealer
2026-07-15fs:0xC0
Lx(Base) RAT: A Technical Deep Dive
LxBase RAT
2026-07-15ZscalerRuchna Nigam
ClaudeFix: Shared Claude Chats Meet ClickFix
MacSync
2026-07-15SymantecThreat Hunter Team
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor
Daxin
2026-07-14Ctrl-Alt-IntelCtrl-Alt-Intel
Burnt by Burgers: Highlighting Void Blizzard’s Russian State Links