Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-05-27Group-IBKuvonchbek Yorkulov, Yuan Huang
The GHOST STADIUM Score: Billions At Stake At The World’s Largest Football Tournament
GHOST STADIUM
2026-05-27Wiz.ioAndre Maccarone, Benjamin Read, Eden Abergil, Shira Ayal, Yuval Dan
Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure
JINX-0164
2026-05-22Fox-ITMick Koomen, Yun Zheng Hu
RemotePE: The Lazarus RAT that lives in memory
DPAPILoader RemotePE
2026-05-22Check PointCheckpoint Research
Fast and Furious – Nimbus Manticore Operations During the Iranian Conflict
MiniFast
2026-05-21LumenDanny Adamitis, Ryan English, Steve Rudd
Introducing Showboat: A new malware family taunts defenses and targets international telecom firms
Showboat
2026-05-21PWCPwC Threat Intelligence
Inside Red Lamassu’s JFMBackdoor
JFMBackdoor Calypso
2026-05-20Seqrite LabsDixit Panchal, Kartik Jivani, Vaibhav Krushna Billade
Operation Dragon Whistle: UNG0002 Targets Chinese Academia via Weaponized Institutional Lure
Cobalt Strike
2026-05-20K7 SecuritySrinivasan E
Fake Microsoft Teams download sites are being used to deliver ValleyRAT via DLL sideloading
ValleyRAT
2026-05-19Github (microsoft)Microsoft
MSTIC actor name mapping in JSON format
Amethyst Rain Houndstooth Typhoon Pinstripe Lightning Storm-0252 Wisteria Tsunami
2026-05-19Trend MicroAldrin Ceriola, Gabriel Nicoleta, Jovit Samaniego, Mohamed Fahmy
Inside SHADOW-WATER-063’s Banana RAT: From Build Server to Banking Fraud
Banana RAT SHADOW-WATER-063
2026-05-18ZynapOscar Gallego
Zynap’s Next-Gen Sandbox Redefines Automatic Malware Analysis
Black Basta HijackLoader
2026-05-18Gen Threat LabsGen Threat Labs
X.com - Gen Threat Labs - AuraStealer (version 1.8.0)
Aura Stealer
2026-05-17Github (zanez)Irvin Martínez González
Analysis on Malware that attacks Israel's Water treatment facilities
ZionSiphon
2026-05-16SymantecThreat Hunter Team
Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations
fast16
2026-05-16DerpMatt Kirkland
Vidar v1.5 in Go: same family, new language, heavy sandbox checks
Vidar
2026-05-14ANY.RUNMoises Cerqueira
LATAM Under Siege: Agent Tesla’s 18-Month Credential Theft Campaign Against Chilean Enterprises
Agent Tesla
2026-05-14MicrosoftMicrosoft Threat Intelligence
Kazuar: Anatomy of a nation-state botnet
Kazuar
2026-05-13Rapid7Anna Širokova
When IT Support Calls: Dissecting a ModeloRAT Campaign from Teams to Domain Compromise
ModeloRAT
2026-05-11QianxinQiAnXin XLab Team
Threat Actor Mr_Rot13 Actively Exploits CVE-2026-41940 for Backdoor Deployment
Mr_Rot13
2026-05-11urlscan.iourlscan.io
Darcula aka. "Magic Cat"