Click here to download all references as Bib-File.•
2025-09-09
⋅
S2W Inc.
⋅
Kimsuky’s Use of GitHub for Malware Delivery and Exfiltration RandomQuery |
2025-09-09
⋅
Huntress Labs
⋅
How an Attacker’s Blunder Gave Us a Rare Look Inside Their Day-to-Day Operations |
2025-09-09
⋅
ThreatFabric
⋅
The Rise of RatOn: From NFC heists to remote control and ATS RatOn |
2025-09-08
⋅
Fortinet
⋅
MostereRAT Deployed AnyDesk/TightVNC for Covert Full Access MostereRAT |
2025-09-08
⋅
Silent Push
⋅
Salt Typhoon and UNC4841: Silent Push Discovers New Domains; Urges Defenders to Check Telemetry and Log Data |
2025-09-08
⋅
Zscaler
⋅
APT37 Targets Windows with Rust Backdoor and Python Loader Rustonotto |
2025-09-07
⋅
⋅
360
⋅
APT-C-53 (Gamaredon) Attacks on Ukrainian Government Functions Pteranodon |
2025-09-07
⋅
Hexastrike Cybersecurity
⋅
ValleyRAT Exploiting BYOVD to Kill Endpoint Security ValleyRAT |
2025-09-05
⋅
Arctic Wolf
⋅
GPUGate Malware: Malicious GitHub Desktop Implants Use Hardware-Specific Decryption, Abuse Google Ads to Target Western Europe |
2025-09-05
⋅
Kroll
⋅
FANCY BEAR GONEPOSTAL – Espionage Tool Provides Backdoor Access to Microsoft Outlook GONEPOSTAL |
2025-09-04
⋅
SentinelOne
⋅
Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms ContagiousDrop |
2025-09-04
⋅
Recorded Future
⋅
From CastleLoader to CastleRAT: TAG-150 Advances Operations with Multi-Tiered Infrastructure CastleRAT |
2025-09-04
⋅
The Register
⋅
US puts $10M bounty on three Russians accused of attacking critical infrastructure |
2025-09-04
⋅
eSentire
⋅
New Botnet Emerges from the Shadows: NightshadeC2 NightshadeC2 NightshadeC2 |
2025-09-04
⋅
Twitter (@Laughing_Mantis)
⋅
Tweet on similarity between GONEPOSTAL/NotDoor and Cordyceps GONEPOSTAL |
2025-09-04
⋅
Seqrite
⋅
Operation BarrelFire: NoisyBear targets entities linked to Kazakhstan’s Oil & Gas Sector. Meterpreter |
2025-09-03
⋅
Lab52
⋅
Analyzing NotDoor: Inside APT28’s Expanding Arsenal GONEPOSTAL |
2025-09-03
⋅
Reverse The Malware
⋅
Dropper and Downloader : What is the difference ? |
2025-09-02
⋅
At-Bay
⋅
Rhysida: Evading Detection, One Service at a Time Rhysida |
2025-09-02
⋅
Hunt.io
⋅
From Panel to Payload: Inside the TinyLoader Malware Operation XTinyLoader |