Click here to download all references as Bib-File.•
| 2026-04-14
⋅
Gen
⋅
Chasing an Angry Spark |
| 2026-04-10
⋅
Infoblox
⋅
Scams, Slaves and (Malware-as-a) Service: Tracking a Trojan to Cambodia’s Scam Centers |
| 2026-04-09
⋅
⋅
F6
⋅
Eastern Signature: Investigating a Cyberattack by an Asian Threat Group ShadowPad |
| 2026-04-07
⋅
Microsoft
⋅
SOHO router compromise leads to DNS hijacking and adversary-in-the-middle attacks |
| 2026-04-01
⋅
SOC Prime
⋅
UAC-0255 Attack Detection: Threat Actors Impersonate CERT-UA to Infect Ukrainian Public and Private Sector Organizations With AGEWHEEZE RAT AGEWHEEZE Cyber Serp |
| 2026-03-31
⋅
Google
⋅
North Korea-Nexus Threat Actor Compromises Widely Used Axios NPM Package in Supply Chain Attack WAVESHAPER |
| 2026-03-26
⋅
Converging Interests: Analysis of Threat Clusters Targeting a Southeast Asian Government MASOL |
| 2026-03-23
⋅
Sophos
⋅
NICKEL ALLEY strategy: Fake it ‘til you make it PylangGhost GolangGhost Nickel Alley |
| 2026-03-22
⋅
Christoffer Strömblad
⋅
Threat Assessment: TeamPCP - CanisterWorm & Kubernetes Wiper Campaign TeamPCP |
| 2026-03-20
⋅
Nextron Systems
⋅
RegPhantom Backdoor Threat Analysis RegPhantom |
| 2026-03-19
⋅
Sophos
⋅
Android devices ship with firmware-level malware Keenadu |
| 2026-03-18
⋅
Google
⋅
The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors GHOSTBLADE UNC6748 |
| 2026-03-18
⋅
Google
⋅
The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors GHOSTBLADE |
| 2026-03-12
⋅
Microsoft
⋅
Storm-2561 uses SEO poisoning to distribute fake VPN clients for credential theft Storm-2561 |
| 2026-03-11
⋅
Bitdefender
⋅
Bitdefender Threat Debrief | March 2026 ShadowByt3$ |
| 2026-03-09
⋅
Abstract Security
⋅
Contagious Interview: Evolution of VS Code and Cursor Tasks Infection Chains Part 2 GolangGhost PylangGhost GolangGhost |
| 2026-03-07
⋅
OpenSourceMalware
⋅
PolinRider: DPRK Threat Actor Implants Malware in Hundreds of GitHub Repos JADESNOW |
| 2026-03-06
⋅
Microsoft
⋅
AI as tradecraft: How threat actors operationalize AI OtterCookie |
| 2026-03-05
⋅
Symantec
⋅
Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company Tsundere |
| 2026-03-05
⋅
eSentire
⋅
North Korean APT Malware Analysis: DEV#POPPER RAT and OmniStealer (Everyday I'm Shufflin') JADESNOW |