Click here to download all references as Bib-File.•
| 2026-03-10
⋅
ZenoX
⋅
VENON: The First Brazilian Banker RAT in Rust VENON |
| 2026-03-10
⋅
Check Point Research
⋅
Iranian MOIS Actors & the Cyber Crime Connection Qilin Tsundere CASTLELOADER Rhadamanthys |
| 2026-03-10
⋅
Lumen
⋅
Silence of the hops: The KadNap botnet KadNap |
| 2026-03-10
⋅
ESET Research
⋅
Sednit reloaded: Back in the trenches BEARDSHELL GRUNT SLIMAGENT X-Agent XTunnel |
| 2026-03-09
⋅
Abstract Security
⋅
Contagious Interview: Evolution of VS Code and Cursor Tasks Infection Chains Part 2 GolangGhost PylangGhost GolangGhost |
| 2026-03-07
⋅
OpenSourceMalware
⋅
PolinRider: DPRK Threat Actor Implants Malware in Hundreds of GitHub Repos JADESNOW |
| 2026-03-06
⋅
Microsoft
⋅
AI as tradecraft: How threat actors operationalize AI OtterCookie |
| 2026-03-05
⋅
Elastic
⋅
Hooked on Linux: Rootkit Taxonomy, Hooking Techniques and Tradecraft |
| 2026-03-05
⋅
Symantec
⋅
Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company Tsundere |
| 2026-03-05
⋅
eSentire
⋅
North Korean APT Malware Analysis: DEV#POPPER RAT and OmniStealer (Everyday I'm Shufflin') JADESNOW |
| 2026-03-05
⋅
Github (cocomelonc)
⋅
Malware and cryptography 44 - encrypt/decrypt payload via Discrete Fourier Transform. Simple C example. |
| 2026-03-04
⋅
Huntress Labs
⋅
"Malware, from the Outside!": How a Threat Actor Used Fake OpenClaw Installers to Infect Systems with GhostSocks and Information Stealers GhostSocks Vidar |
| 2026-03-04
⋅
Hunt.io
⋅
Iranian APT Infrastructure in Focus: Mapping State-Aligned Clusters During Geopolitical Escalation |
| 2026-03-04
⋅
Ctrl-Alt-Intel
⋅
MuddyWater Exposed: Inside an Iranian APT operation Tsundere |
| 2026-03-04
⋅
EG-FinCirt
⋅
Remcos RAT Operations: How Attackers Gain and Maintain Control Remcos |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna UNC6353 UNC6691 |
| 2026-03-03
⋅
Microsoft
⋅
Signed malware impersonating workplace apps deploys RMM backdoors TrustConnect RAT |
| 2026-03-02
⋅
Moonlock
⋅
Fake VCs target crypto talent in a new ClickFix campaign AmodalTea |
| 2026-03-02
⋅
Zscaler
⋅
Dust Specter APT Targets Government Officials in Iraq |