Click here to download all references as Bib-File.•
| 2025-04-30
⋅
Seqrite
⋅
Advisory: Pahalgam Attack themed decoys used by APT36 to target the Indian Government Crimson RAT |
| 2025-04-30
⋅
Google Cloud Community
⋅
Finding Malware: Unveiling LUMMAC.V2 with Google Security Operations Lumma Stealer |
| 2025-04-29
⋅
Nextron Systems
⋅
Nitrogen Dropping Cobalt Strike – A Combination of “Chemical Elements” Cobalt Strike Nitrogen Loader |
| 2025-04-29
⋅
⋅
France Diplomatie
⋅
Russia – Assignment of cyber attacks against France to the Russian military intelligence service (APT28) (29 April 2025) |
| 2025-04-29
⋅
Trustwave
⋅
Yet Another NodeJS Backdoor (YaNB): A Modern Challenge KongTuke |
| 2025-04-29
⋅
LinkedIn (Ethical Hackers Academy)
⋅
RansomHub Ransomware Deploys Malware to Breach Corporate Networks FAKEUPDATES RansomHub |
| 2025-04-28
⋅
Censys
⋅
Scouting a Threat Actor |
| 2025-04-28
⋅
Infoblox
⋅
Uncovering Actor TTP Patterns and the Role of DNS in Investment Scams Reckless Rabbit Ruthless Rabbit |
| 2025-04-27
⋅
SentinelOne
⋅
Atomic Stealer | Threat Actor Spawns Second Variant of macOS Malware Sold on Telegram AMOS |
| 2025-04-25
⋅
Censys
⋅
The Persistent Threat of Salt Typhoon: Tracking Exposures of Potentially Targeted Devices MASOL |
| 2025-04-24
⋅
Kaspersky
⋅
Operation SyncHole: Lazarus APT goes back to the well Bankshot DRATzarus PostNapTea wAgentTea |
| 2025-04-24
⋅
0xreverse
⋅
Understanding Alcatraz ~ Obfuscator Analysis [EN] |
| 2025-04-23
⋅
Cisco Talos
⋅
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangs HOLERUN |
| 2025-04-23
⋅
Trend Micro
⋅
Russian Infrastructure Plays Crucial Role in North Korean Cybercrime Operations BeaverTail FrostyFerret GolangGhost InvisibleFerret GolangGhost WageMole |
| 2025-04-22
⋅
Kaspersky Labs
⋅
Russian organizations targeted by backdoor masquerading as secure networking software updates |
| 2025-04-22
⋅
Volexity
⋅
Phishing for Codes: Russian Threat Actors Target Microsoft 365 OAuth Workflows UTA0352 UTA0355 |
| 2025-04-21
⋅
Aryaka Networks
⋅
Strela Stealer Malware Research: Tracing the Digital Footprint and Network Behavior StrelaStealer |
| 2025-04-21
⋅
Twitter (@browsercookies)
⋅
Tweet on public Google Drive potentially connected to DPRK activity. |
| 2025-04-17
⋅
Trail of Bits
⋅
Mitigating ELUSIVE COMET Zoom remote control attacks ELUSIVE COMET |
| 2025-04-17
⋅
Proofpoint
⋅
Around the World in 90 Days: State-Sponsored Actors Try ClickFix Quasar RAT UNK_RemoteRogue |