Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-02-11 ⋅ Bitdefender ⋅ Bogdan Ionut Lazar, Janos Gergo Szeles, Manuel Dragomir
LummaStealer Is Getting a Second Life Alongside CastleLoader
CASTLELOADER Lumma Stealer
2026-02-10 ⋅ Google ⋅ Google Threat Intelligence Group
Beyond the Battlefield: Threats to the Defense Industrial Base
Infrastructure Destruction Squad
2026-02-10 ⋅ Cisco Talos ⋅ Aaron Boyd, Asheer Malhotra, Nick Biasini, Vitor Ventura
New threat actor, UAT-9921, leverages VoidLink framework in campaigns
VoidLink UAT-9921
2026-02-09 ⋅ Bitdefender ⋅ Jade Brown
No Encryptors, No Problem: The Coinbase Cartel Ransomware Group
Coinbase Cartel
2026-02-09 ⋅ Mandiant ⋅ Adrian Hernandez, Ross Inman
UNC1069 Targets Cryptocurrency Sector with New Tooling and AI-Enabled Social Engineering
SUGARLOADER WAVESHAPER
2026-02-09 ⋅ TRUESEC ⋅ Andreas Törnqvist, Mattias Wåhlén, Nicklas Keijser
Detecting Russian Threats to Critical Energy Infrastructure
DynoWiper
2026-02-08 ⋅ GitHub (nikaiw) ⋅ nikaiw
Github Repository: VMkatz
2026-02-06 ⋅ t0ast's blog ⋅ t0ast
DynoWiper: From Russia with Love
DynoWiper
2026-02-05 ⋅ flare ⋅ Assaf Morag
Threat Alert: TeamPCP, An Emerging Force in the Cloud Native and Ransomware Landscape
TeamPCP
2026-02-05 ⋅ Symantec ⋅ Threat Hunter Team
Reynolds: Defense Evasion Capability Embedded in Ransomware Payload
Reynolds
2026-02-05 ⋅ Github (cocomelonc) ⋅ cocomelonc
MacOS malware persistence 3: Dylib hijacking (VLC). Simple C example
2026-02-05 ⋅ Palo Alto Networks Unit 42 ⋅ Unit 42
The Shadow Campaigns: Uncovering Global Espionage
Cobalt Strike UNC6619
2026-02-05 ⋅ Bleeping Computer ⋅ Bill Toulas
Italian university La Sapienza goes offline after cyberattack
Rorschach Ransomware Femwar02
2026-02-04 ⋅ Github (ShadowOpCode) ⋅ ShadowOpCode
DesckVB-RAT: Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain
2026-02-04 ⋅ Cyderes ⋅ Howler Cell Research Team
RenEngine Loader and HijackLoader: Dual-Stage Attack Chain Fueling Stealer Campaigns
ACR Stealer HijackLoader
2026-02-04 ⋅ Silent Push ⋅ João Batista, Silent Push
Silent Push Identifies More Than 10,000 Infected IPs as Part of SystemBC Botnet Malware Family
SystemBC SystemBC
2026-02-04 ⋅ Trellix ⋅ Alex Lanstein, Pham Duy Phuc
APT28’s Stealthy Multi-Stage Campaign Leveraging CVE‑2026‑21509 and Cloud C2 Infrastructure
GONEPOSTAL GRUNT
2026-02-04 ⋅ StrikeReady ⋅ Alex Lanstein, Pham Duy Phuc
APT28’s Stealthy Multi-Stage Campaign Leveraging CVE‑2026‑21509 and Cloud C2 Infrastructure
GONEPOSTAL GRUNT
2026-02-04 ⋅ Check Point Research ⋅ Check Point Research
Amaranth-Dragon: Targeted Cyber Espionage Campaigns Across Southeast Asia
Amaranth-Dragon
2026-02-04 ⋅ safebreach ⋅ Tomer Bar
Prince of Persia, Part II: Covering Tracks, Striking Back & a Revealing Link to the Iranian Regime Amid the Country’s Internet Blackout
Infy StormKittyRAT