Click here to download all references as Bib-File.•
| 2026-03-02
⋅
Microsoft
⋅
OAuth redirection abuse enables phishing and malware delivery |
| 2026-02-24
⋅
Symantec
⋅
North Korean Lazarus Group Now Working With Medusa Ransomware ComeBacker Medusa |
| 2026-02-19
⋅
GitLab
⋅
GitLab Threat Intelligence Team reveals North Korean tradecraft BeaverTail OtterCookie Contagious Interview |
| 2026-02-05
⋅
flare
⋅
Threat Alert: TeamPCP, An Emerging Force in the Cloud Native and Ransomware Landscape TeamPCP |
| 2026-02-05
⋅
Symantec
⋅
Reynolds: Defense Evasion Capability Embedded in Ransomware Payload Reynolds |
| 2026-01-29
⋅
CrowdStrike
⋅
LABYRINTH CHOLLIMA Evolves into Three Adversaries |
| 2026-01-28
⋅
Proofpoint
⋅
Can’t stop, won’t stop: TA584 innovates initial access XWorm TA584 |
| 2026-01-22
⋅
Red Asgard
⋅
Hunting Lazarus Part II: When the Dead Drop Moved to the Blockchain StoatWaffle |
| 2026-01-21
⋅
Team Cymru
⋅
Scattered Spider Attacks | Infrastructure and TTP Analysis |
| 2026-01-16
⋅
sysdig
⋅
VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits VoidLink |
| 2026-01-15
⋅
Sansec
⋅
Keylogger targets 200,000+ employees at major US bank |
| 2026-01-12
⋅
PolySwarm Tech Team
⋅
Transparent Tribe Evolves Tradecraft With Multi-Stage LNK Malware |
| 2025-12-19
⋅
PolySwarm Tech Team
⋅
Multiple Threat Actors Leveraging CVE-2025-55182 (React2Shell) ANGRYREBEL COMPOOD MINOCAT Mirai SNOWLIGHT XMRIG EtherRAT Cobalt Strike Mirai VShell xmrig JACKPOT PANDA |
| 2025-12-18
⋅
Proofpoint
⋅
Access granted: phishing with device code authorization for account takeover TA2723 UNK_AcademicFlare |
| 2025-12-17
⋅
Reporters Without Borders
⋅
ResidentBat: A new spyware family used by Belarusian KGB ResidentBat |
| 2025-12-16
⋅
sysdig
⋅
EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2 EtherRAT |
| 2025-12-10
⋅
SpyCloud
⋅
Analyzing the Impact of the Operation Endgame Takedown on Rhadamanthys & the MaaS Ecosystem Rhadamanthys |
| 2025-12-08
⋅
sysdig
⋅
EtherRAT: DPRK uses novel Ethereum implant in React2Shell attacks EtherRAT |
| 2025-11-25
⋅
Arctic Wolf
⋅
Russian RomCom Utilizing SocGholish to Deliver Mythic Agent to U.S. Companies Supporting Ukraine FAKEUPDATES |
| 2025-11-19
⋅
Natto Thoughts
⋅
China’s Cybersecurity Companies Advancing Offensive Cyber Capabilities Through Attack-Defense Labs |