Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-06-08 ⋅ SYGNIA ⋅ Sygnia Team
Velvet Ant’s Operation Highland: How a China-Nexus Actor Infiltrated an Internal Network Undetected
2026-06-04 ⋅ RESIDENT.NGO ⋅ RESIDENT.NGO Team
Case Study — UNC1151 Gmail Phishing (“Suspicious account activity”) Targeting Belarusian Pro-Democracy Politician, May 2026
2026-06-03 ⋅ Proofpoint ⋅ Proofpoint Threat Research Team
TA4922: The Suspected Chinese Crime Group is Going Global
Atlas RAT RomulusLoader SilentRunLoader TA4922
2026-06-03 ⋅ sonatype ⋅ Sonatype Security Research Team
Lazarus Group's Latest: Brandjacking Campaign on npm
2026-05-31 ⋅ Gridinsoft ⋅ Gridinsoft Malware Research Team
DriveSurge Turns Trusted Websites Into ClickFix Malware Traps
DriveSurge
2026-05-28 ⋅ eSentire ⋅ eSentire
Nimbus RAT: How Threat Actors Are Abusing Microsoft Teams and Google Drive to Deploy a Java RAT
2026-05-21 ⋅ Symantec ⋅ Threat Hunter Team
GodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable Defenses
win.beast MimiKatz Hyadina
2026-05-20 ⋅ K7 Security ⋅ Srinivasan E
Fake Microsoft Teams download sites are being used to deliver ValleyRAT via DLL sideloading
ValleyRAT
2026-05-18 ⋅ Microsoft ⋅ Microsoft Defender Security Research Team
How Storm-2949 turned a compromised identity into a cloud-wide breach
Storm-2949
2026-05-16 ⋅ Symantec ⋅ Threat Hunter Team
Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations
fast16
2026-05-13 ⋅ Rapid7 ⋅ Anna Širokova
When IT Support Calls: Dissecting a ModeloRAT Campaign from Teams to Domain Compromise
ModeloRAT
2026-05-12 ⋅ Symantec ⋅ Threat Hunter Team
Jewelbug: APT Group Runs Espionage and Crypto Fraud Operations Side by Side
Earth Alux REF7707
2026-05-11 ⋅ Qianxin ⋅ QiAnXin XLab Team
Threat Actor Mr_Rot13 Actively Exploits CVE-2026-41940 for Backdoor Deployment
Mr_Rot13
2026-05-05 ⋅ EG-FinCirt ⋅ EG-FinCirt Malware Analysis team
Payload Ransomware: In-depth technical analysis
Payload
2026-05-05 ⋅ EG-FinCirt ⋅ EG-FinCirt Malware Analysis team
Payload Ransomware: In-depth technical analysis
Payload
2026-05-04 ⋅ BlueVoyant ⋅ Joshua Green, Thomas Elkins
Lorem Ipsum Malware: Trojanized MS Teams Installers Deliver Multi-Stage Loader and Backdoor
Lorem Ipsum
2026-04-03 ⋅ SafeDep ⋅ SafeDep Team
Compromised npm Package mgc Deploys Multi-Platform RAT
2026-03-30 ⋅ Trend Micro ⋅ John Rainier Navato
TeamPCP’s Telnyx Attack Marks a Shift in Tactics Beyond LiteLLM
TeamPCP
2026-03-23 ⋅ Sophos ⋅ Sophos Counter Threat Unit Research Team
NICKEL ALLEY strategy: Fake it ‘til you make it
PylangGhost GolangGhost Nickel Alley
2026-03-22 ⋅ Christoffer Strömblad ⋅ Christoffer Strömblad
Threat Assessment: TeamPCP - CanisterWorm & Kubernetes Wiper Campaign
TeamPCP