Click here to download all references as Bib-File.•
2025-09-14
⋅
Genians
⋅
AI-Driven Deepfake Military ID Fraud Campaign by Kimsuky APT |
2025-09-12
⋅
SOCRadar
⋅
BQTLock Ransomware BQTlock |
2025-09-11
⋅
IBM X-Force
⋅
Hive0154, aka Mustang Panda, drops updated Toneshell backdoor and novel SnakeDisk USB worm PUBLOAD SnakeDisk TONESHELL Yokai |
2025-09-11
⋅
Zero Day
⋅
How the Infamous APT-1 Report Exposing China’s PLA Hackers Came to Be |
2025-09-11
⋅
Trend Micro
⋅
EvilAI Operators Use AI-Generated Code and Fake Apps for Far-Reaching Attacks TamperedChef |
2025-09-11
⋅
DataBreaches.net
⋅
Going Dark: ShinyHunters/ScatteredSpider/LAPSUS$ Say Goodbye (2) |
2025-09-10
⋅
Zscaler
⋅
Technical Analysis of kkRAT kkRAT |
2025-09-10
⋅
Palo Alto Networks Unit 42
⋅
AdaptixC2: A New Open-Source Framework Leveraged in Real-World Attacks AdaptixC2 |
2025-09-09
⋅
S2W Inc.
⋅
Kimsuky’s Use of GitHub for Malware Delivery and Exfiltration RandomQuery |
2025-09-09
⋅
Huntress Labs
⋅
How an Attacker’s Blunder Gave Us a Rare Look Inside Their Day-to-Day Operations |
2025-09-08
⋅
Fortinet
⋅
MostereRAT Deployed AnyDesk/TightVNC for Covert Full Access MostereRAT |
2025-09-08
⋅
Silent Push
⋅
Salt Typhoon and UNC4841: Silent Push Discovers New Domains; Urges Defenders to Check Telemetry and Log Data |
2025-09-08
⋅
Zscaler
⋅
APT37 Targets Windows with Rust Backdoor and Python Loader Rustonotto |
2025-09-07
⋅
⋅
360
⋅
APT-C-53 (Gamaredon) Attacks on Ukrainian Government Functions Pteranodon |
2025-09-07
⋅
Hexastrike Cybersecurity
⋅
ValleyRAT Exploiting BYOVD to Kill Endpoint Security ValleyRAT |
2025-09-05
⋅
Arctic Wolf
⋅
GPUGate Malware: Malicious GitHub Desktop Implants Use Hardware-Specific Decryption, Abuse Google Ads to Target Western Europe |
2025-09-05
⋅
Kroll
⋅
FANCY BEAR GONEPOSTAL – Espionage Tool Provides Backdoor Access to Microsoft Outlook GONEPOSTAL |
2025-09-04
⋅
SentinelOne
⋅
Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms ContagiousDrop |
2025-09-04
⋅
Recorded Future
⋅
From CastleLoader to CastleRAT: TAG-150 Advances Operations with Multi-Tiered Infrastructure CastleRAT |
2025-09-04
⋅
The Register
⋅
US puts $10M bounty on three Russians accused of attacking critical infrastructure |