Click here to download all references as Bib-File.•
| 2026-03-05
⋅
eSentire
⋅
North Korean APT Malware Analysis: DEV#POPPER RAT and OmniStealer (Everyday I'm Shufflin') JADESNOW |
| 2026-03-04
⋅
Huntress Labs
⋅
"Malware, from the Outside!": How a Threat Actor Used Fake OpenClaw Installers to Infect Systems with GhostSocks and Information Stealers GhostSocks Vidar |
| 2026-03-04
⋅
Hunt.io
⋅
Iranian APT Infrastructure in Focus: Mapping State-Aligned Clusters During Geopolitical Escalation |
| 2026-03-04
⋅
Ctrl-Alt-Intel
⋅
MuddyWater Exposed: Inside an Iranian APT operation Tsundere |
| 2026-03-04
⋅
EG-FinCirt
⋅
Remcos RAT Operations: How Attackers Gain and Maintain Control Remcos |
| 2026-03-03
⋅
Radware
⋅
Retaliatory Hacktivist DDoS Activity Following Operation Epic Fury/Roaring Lion Conquerors Electronic Army |
| 2026-03-03
⋅
Sophos
⋅
Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies APTIran |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna UNC6353 UNC6691 |
| 2026-03-03
⋅
Microsoft
⋅
Signed malware impersonating workplace apps deploys RMM backdoors TrustConnect RAT |
| 2026-03-02
⋅
Talos
⋅
Update, March 13: Talos on the developing situation in the Middle East Tsundere APTIran |
| 2026-02-28
⋅
Github (cocomelonc)
⋅
MacOS malware persistence 4: AutoLaunched Applications, Background Task Management (BTM). Simple C example |
| 2026-02-26
⋅
Cisco Talos
⋅
New Dohdoor malware campaign targets education and health care DohDoor |
| 2026-02-26
⋅
Gdata
⋅
HijackLoader: Free Games, Costly Consequences HijackLoader |
| 2026-02-26
⋅
Lab52
⋅
PlugX Meeting Invitation via MSBuild and GDATA PlugX |
| 2026-02-25
⋅
Google
⋅
Exposing the Undercurrent: Disrupting the GRIDTIDE Global Cyber Espionage Campaign GRIDTIDE UNC2814 |
| 2026-02-25
⋅
Cisco Talos
⋅
Active exploitation of Cisco Catalyst SD-WAN by UAT-8616 UAT-8616 |
| 2026-02-25
⋅
Google
⋅
Cloud Threat Horizons Report: H1 2026 UNC6426 |
| 2026-02-25
⋅
Hive Pro
⋅
SANDWORM_MODE: npm Supply Chain Attack Targeting AI Development Tools |
| 2026-02-25
⋅
Abstract Security
⋅
Contagious Interview: Evolution of VS Code and Cursor Tasks Infection Chains - Part 1 BeaverTail PylangGhost GolangGhost |