Click here to download all references as Bib-File.•
| 2026-01-16
⋅
sysdig
⋅
VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits VoidLink |
| 2026-01-14
⋅
Microsoft
⋅
Inside RedVDS: How a single virtual desktop provider fueled worldwide cybercriminal operations |
| 2026-01-13
⋅
Spamhaus
⋅
Spamhaus Botnet Threat Update July to December 2025 Coper FluBot Joker Aisuru Mirai AsyncRAT BianLian Cobalt Strike DCRat Havoc Latrodectus PureLogs Stealer Quasar RAT Remcos Rhadamanthys Sliver ValleyRAT Venom RAT Vidar XWorm |
| 2026-01-09
⋅
flare
⋅
New Threat Actor Group PayTool Targets Canadians with Traffic Scams PayTool |
| 2025-12-30
⋅
Koi Security
⋅
DarkSpectre: Unmasking the Threat Actor Behind 8.8 Million Infected Browsers DarkSpectre ShadyPanda |
| 2025-12-18
⋅
Proofpoint
⋅
Access granted: phishing with device code authorization for account takeover TA2723 UNK_AcademicFlare |
| 2025-12-16
⋅
sysdig
⋅
EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2 EtherRAT |
| 2025-12-15
⋅
Amazon
⋅
Amazon Threat Intelligence identifies Russian cyber threat group targeting Western critical infrastructure |
| 2025-12-12
⋅
Google
⋅
Multiple Threat Actors Exploit React2Shell (CVE-2025-55182) ANGRYREBEL MINOCAT SNOWLIGHT Earth Lamia |
| 2025-12-08
⋅
sysdig
⋅
EtherRAT: DPRK uses novel Ethereum implant in React2Shell attacks EtherRAT |
| 2025-12-08
⋅
Trend Micro
⋅
AI-Automated Threat Hunting Brings GhostPenguin Out of the Shadows GhostPenguin |
| 2025-12-04
⋅
Amazon
⋅
China-nexus cyber threat groups rapidly exploit React2Shell vulnerability (CVE-2025-55182) |
| 2025-12-02
⋅
ANY.RUN
⋅
Salty2FA & Tycoon2FA Hybrid: A New Phishing Threat to Enterprises Storm-1747 |
| 2025-12-01
⋅
FORTRA
⋅
Scripted Sparrow: A Prolific BEC Threat Group Scripted Sparrow |
| 2025-12-01
⋅
LinkedIn (Microsoft)
⋅
Post about Phishing Campaign pushing XWorm XWorm TA584 |
| 2025-11-26
⋅
CERT-FR
⋅
Mobile phones: Threat landscape since 2015 |
| 2025-11-19
⋅
Amazon
⋅
New Amazon Threat Intelligence findings: Nation-state actors bridging cyber and kinetic warfare |
| 2025-11-18
⋅
DataBreaches.net
⋅
From bad to worse: Doctor Alliance hacked again by same threat actor (2) Kazu |
| 2025-11-05
⋅
Google
⋅
GTIG AI Threat Tracker: Advances in Threat Actor Usage of AI Tools PromptLock UNC1069 |
| 2025-11-04
⋅
Twitter (@nextronresearch)
⋅
Tweet about BQT ransomware on Linux BQTlock |