Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-07-23 ⋅ Group-IB ⋅ Group-IB
JadeProx: Tracing a China-nexus Operation Through an OPSEC Mistake
AdaptixC2 reGeorg
2026-07-22 ⋅ Prophet Security ⋅ Joshua Hubner
EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain
2026-07-22 ⋅ Huntress Labs ⋅ Michael Tigges
Inside FakeAgent: How a Claude Desktop Malvertising Campaign Hit 29 Organizations with SectopRAT
SectopRAT
2026-07-21 ⋅ @oj-sec ⋅ @oj-sec
TChCh-Changes: A Look at macOS TCC Manipulation in the Wild
2026-07-20 ⋅ Medium Ireneusz Tarnowski ⋅ Ireneusz Tarnowski
INC Ransom: Infrastructure Analysis, Operational Tradecraft, and Detection Opportunities
INC INC
2026-07-17 ⋅ Volexity ⋅ Sean Koessel, Steven Adair
Proxying to Compromise: SonicWall Secure Mobile Access 0-day Exploitation
Behinder UTA0533
2026-07-16 ⋅ Cisco Talos ⋅ Alex Karkins, Chetan Raghuprasad
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign
CASTLESTEALER Remcos UAT-11795
2026-07-16 ⋅ Microsoft Security ⋅ Balaji Venkatesh S, Microsoft Security Research
ACR Stealer: Two observed intrusion chains amid increased threat activity
ACR Stealer
2026-07-15 ⋅ fs:0xC0
Lx(Base) RAT: A Technical Deep Dive
LxBase RAT
2026-07-15 ⋅ Zscaler ⋅ Ruchna Nigam
ClaudeFix: Shared Claude Chats Meet ClickFix
MacSync
2026-07-15 ⋅ Symantec ⋅ Threat Hunter Team
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor
Daxin
2026-07-14 ⋅ Ctrl-Alt-Intel ⋅ Ctrl-Alt-Intel
Burnt by Burgers: Highlighting Void Blizzard’s Russian State Links
2026-07-13 ⋅ kienmanowar Blog ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] SolidPDFCreator – Mustang Panda Stage-1 Backdoor (Target India)
2026-07-12 ⋅ OX Security ⋅ Moshe Siman Tov Bustan
Malware-Slop: Crypto Stealer Impersonating Polymarket Exposes Its Own Credentials
OtterCandy
2026-07-07 ⋅ Proofpoint ⋅ Greg Lesnewich, Mark Kelly, Proofpoint Threat Research Team
One Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation
IceCube
2026-07-07 ⋅ Cisco Talos ⋅ Asheer Malhotra, Brandon White, Jungsoo An, Vanja Svajcer
UAT-7810 continues building ORB networks using new malware
DOGLEASH LONGLEASH JARLEASH UAT-7810
2026-07-02 ⋅ Mrtiepolo ⋅ Gianluca Tiepolo
Operation Turb00 — Part 3: Unmasking the SnappyClient RAT
HijackLoader SnappyClient
2026-07-01 ⋅ Fortinet ⋅ Rachael Liao
Analysis of Ongoing Ousaban Attacks Targeting the Iberian Peninsula
Ousaban
2026-06-29 ⋅ Trend Micro ⋅ Yuya Sato
TONResolver RAT Abuses TON Blockchain to Target Japan's Hotel Industry
TonRAT
2026-06-29 ⋅ The DFIR Report ⋅ Ahmed Farouk, Angelo Violetti, Dino, Jake, Mattison Schuch, Renzon Cruz
From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akira
Akira AdaptixC2 Akira BumbleBee