Click here to download all references as Bib-File.•
| 2026-02-19
⋅
GitLab
⋅
GitLab Threat Intelligence Team reveals North Korean tradecraft BeaverTail OtterCookie |
| 2026-02-17
⋅
Hunt.io
⋅
Fake Homebrew Typosquats Used to Deliver Cuckoo Stealer via ClickFix |
| 2026-02-17
⋅
Google
⋅
From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day BRICKSTORM GRIMBOLT SLAYSTYLE UNC6201 |
| 2026-02-17
⋅
⋅
CERT.PL
⋅
ClickFix in action: how a fake captcha can encrypt an entire company Latrodectus Supper |
| 2026-02-17
⋅
ANY.RUN
⋅
LATAM Businesses Hit by XWorm via Fake Financial Receipts: Full Campaign Analysis XWorm |
| 2026-02-16
⋅
kmsec
⋅
Exposed DPRK reference malware and logs |
| 2026-02-16
⋅
Huntress Labs
⋅
ClickFix Won't Die. Neither Will Matanbuchus. A New RAT and a Hands-on-Keyboard Intrusion AstarionRAT Matanbuchus |
| 2026-02-15
⋅
Github (jrm360seclab)
⋅
AODIN X1BQ Projector — Pre-Installed Vo1d Botnet Malware Void |
| 2026-02-13
⋅
kmsec
⋅
VMWare artifacts left by a FAMOUS CHOLLIMA operator |
| 2026-02-12
⋅
Botcrawl
⋅
Nippon Medical School Musashi Kosugi Hospital Data Breach Claimed by NetRunnerPR NetRunnerPR |
| 2026-02-12
⋅
Sekoia
⋅
OysterLoader Unmasked: The Multi-Stage Evasion Loader Broomstick |
| 2026-02-12
⋅
LevelBlue
⋅
How ClickFix Opens the Door to Stealthy StealC Information Stealer IClickFix Stealc |
| 2026-02-11
⋅
Isovalent
⋅
Deconstructing Voidlink: Why New AI and Cloud-Native Threats Require a New Class of Defense VoidLink UAT-9921 |
| 2026-02-11
⋅
Bitdefender
⋅
LummaStealer Is Getting a Second Life Alongside CastleLoader CASTLELOADER Lumma Stealer |
| 2026-02-10
⋅
Cisco Talos
⋅
New threat actor, UAT-9921, leverages VoidLink framework in campaigns VoidLink UAT-9921 |
| 2026-02-09
⋅
Mandiant
⋅
UNC1069 Targets Cryptocurrency Sector with New Tooling and AI-Enabled Social Engineering SUGARLOADER WAVESHAPER |
| 2026-02-09
⋅
TRUESEC
⋅
Detecting Russian Threats to Critical Energy Infrastructure DynoWiper |
| 2026-02-06
⋅
t0ast's blog
⋅
DynoWiper: From Russia with Love DynoWiper |
| 2026-02-05
⋅
Symantec
⋅
Reynolds: Defense Evasion Capability Embedded in Ransomware Payload Reynolds |
| 2026-02-05
⋅
Github (cocomelonc)
⋅
MacOS malware persistence 3: Dylib hijacking (VLC). Simple C example |