Click here to download all references as Bib-File.•
| 2026-08-26
⋅
Abstract Security
⋅
RMM Hunting: Leveraging LOLRMM for Detection |
| 2026-08-26
⋅
Microsoft
⋅
TerminalFix campaign deploys a reverse tunnel through multistage intrusion Lorem Ipsum |
| 2026-08-25
⋅
Github (Yavuzhanzgen)
⋅
KoiLoader Technical Analysis Report Koi Loader |
| 2026-08-24
⋅
Field Effect
⋅
A ClickFix cluster: Observed activity from recent ClickFix campaigns Lorem Ipsum |
| 2026-08-21
⋅
Bitso Quetzal Team
⋅
North Korea’s Crypt: Hunting Ghosts StoatWaffle |
| 2026-08-21
⋅
Netresec
⋅
CNCMachineRMS C2 Protocol Babadeda |
| 2026-08-20
⋅
Wiz.io
⋅
Rust Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns |
| 2026-08-20
⋅
trendai
⋅
Prompting the Payload: How an npm Supply Chain Attack Delivers the RedC2 AI-Powered Linux Implant redshell |
| 2026-08-19
⋅
Bitdefender
⋅
SilkParasite: Inside a China-nexus espionage cluster and its seven-family RAT ecosystem across Central Asia BloodAlchemy ShadowPad SNAPPYBEE |
| 2026-08-19
⋅
zimperium
⋅
The ToxicPanda Never Sleeps: ToxicPanda 2.0 Prepares its Next Strike on Mobile ToxicPanda |
| 2026-08-19
⋅
Bitdefender
⋅
SilkParasite: Tracking a China-Nexus APT Across Central Asia BloodAlchemy ShadowPad SNAPPYBEE SilkParasite |
| 2026-08-19
⋅
abuse.ch
⋅
MalwareBazaar | SHA256 9768b7e31324805672cfcba91cf4d6da91494e9899db58f22da9dda6c91931d6 (NeedleStealer) NeedleStealer |
| 2026-08-18
⋅
Recorded Future
⋅
PurpleDelta's Fraudulent Employment Operations |
| 2026-08-18
⋅
BitSight
⋅
Who Invited Aisuru to the LAN Party? Kimwolf Aisuru |
| 2026-08-18
⋅
Gen
⋅
WordlistLoader Delivering Amatera via ClearFake Campaigns ACR Stealer Amatera |
| 2026-08-17
⋅
Github (Yavuzhanzgen)
⋅
AsyncRAT Technical Analysis AsyncRAT |
| 2026-08-17
⋅
Zscaler
⋅
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2 C2Looper |
| 2026-08-15
⋅
Github (Yavuzhanzgen)
⋅
KermitRAT-Malware-Analysis |
| 2026-08-15
⋅
neso.re
⋅
Borrowed Machinery: SnappyClient, HijackLoader, and a Shared Codebase? HijackLoader SnappyClient |
| 2026-08-14
⋅
QUIRSO GmbH
⋅
Global Exploitation of CVE-2026–59310 by Suspected Chinese-Nexus APT & Related CVE-2026–59309 Activity |