Click here to download all references as Bib-File.•
| 2025-11-13
⋅
NVISO Labs
⋅
Contagious Interview Actors Now Utilize JSON Storage Services for Malware Delivery BeaverTail OtterCookie InvisibleFerret Beavertail TsunamiKit |
| 2025-11-13
⋅
Anthropic
⋅
Disrupting the first reported AI-orchestrated cyber espionage campaign GTG-1002 |
| 2025-11-13
⋅
Israel National Digital Agency
⋅
SpearSpecter: Unmasking Iran’s IRGC Cyber Operations Targeting High-Profile Individuals TAMECAT |
| 2025-11-12
⋅
ISC
⋅
SmartApeSG campaign uses ClickFix page to push NetSupport RAT SmartApeSG NetSupportManager RAT |
| 2025-11-11
⋅
Botcrawl
⋅
National Civil Service Commission of Colombia Data Breach Exposes 2.9 TB of Government Files Kazu |
| 2025-11-10
⋅
Mandiant
⋅
No Place Like Localhost: Unauthenticated Remote Access via Triofox Vulnerability CVE-2025-12480 UNC6485 |
| 2025-11-10
⋅
Genians
⋅
State-Sponsored Remote Wipe Tactics Targeting Android Devices Quasar RAT Remcos |
| 2025-11-05
⋅
Google
⋅
GTIG AI Threat Tracker: Advances in Threat Actor Usage of AI Tools PromptLock UNC1069 |
| 2025-11-05
⋅
Huntress Labs
⋅
Gootloader Returns: What Goodies Did They Bring? GootLoader Supper |
| 2025-11-05
⋅
ESET Research
⋅
APT Activity: Russia-Aligned APTs Ramp Up Attacks Against Ukraine and Its Strategic Partners (April 2025 – September 2025 Report) |
| 2025-11-04
⋅
The Record
⋅
Treasury sanctions 8 for laundering North Korea earnings from cybercrime, IT worker scheme |
| 2025-11-04
⋅
Twitter (@nextronresearch)
⋅
Tweet about BQT ransomware on Linux BQTlock |
| 2025-11-03
⋅
Breached Company
⋅
When the Defenders Become the Attackers: Cybersecurity Experts Indicted for BlackCat Ransomware Operations BlackCat BlackCat |
| 2025-11-03
⋅
Seqrite
⋅
Operation Peek-a-Baku: Silent Lynx APT makes sluggish shift to Dushanbe Laplas (Reverseshell) SilentSweeper YoroTrooper |
| 2025-11-02
⋅
Symantec
⋅
Multi-Stage In-Memory Agent Tesla Campaign Targets LATAM Agent Tesla |
| 2025-10-31
⋅
Seqrite
⋅
Operation SkyCloak: Tor Campaign targets Military of Russia & Belarus |
| 2025-10-31
⋅
Expel
⋅
Certified OysterLoader: Tracking Rhysida ransomware gang activity via code-signing certificates Broomstick |
| 2025-10-30
⋅
Arctic Wolf
⋅
UNC6384 Weaponizes ZDI-CAN-25373 Vulnerability to Deploy PlugX Against Hungarian and Belgian Diplomatic Entities PlugX |
| 2025-10-29
⋅
Qianxin
⋅
Smoking Gun Uncovered: RPX Relay at PolarEdge’s Core Exposed PolarEdge |
| 2025-10-28
⋅
ThreatFabric
⋅
New Android Malware Herodotus Mimics Human Behaviour to Evade Detection |