Click here to download all references as Bib-File.•
| 2026-03-05
⋅
Elastic
⋅
Hooked on Linux: Rootkit Taxonomy, Hooking Techniques and Tradecraft |
| 2026-03-05
⋅
Symantec
⋅
Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company Tsundere |
| 2026-03-05
⋅
eSentire
⋅
North Korean APT Malware Analysis: DEV#POPPER RAT and OmniStealer (Everyday I'm Shufflin') JADESNOW |
| 2026-03-05
⋅
Github (cocomelonc)
⋅
Malware and cryptography 44 - encrypt/decrypt payload via Discrete Fourier Transform. Simple C example. |
| 2026-03-04
⋅
Huntress Labs
⋅
"Malware, from the Outside!": How a Threat Actor Used Fake OpenClaw Installers to Infect Systems with GhostSocks and Information Stealers GhostSocks Vidar |
| 2026-03-04
⋅
Hunt.io
⋅
Iranian APT Infrastructure in Focus: Mapping State-Aligned Clusters During Geopolitical Escalation |
| 2026-03-04
⋅
Ctrl-Alt-Intel
⋅
MuddyWater Exposed: Inside an Iranian APT operation Tsundere |
| 2026-03-04
⋅
EG-FinCirt
⋅
Remcos RAT Operations: How Attackers Gain and Maintain Control Remcos |
| 2026-03-03
⋅
Radware
⋅
Retaliatory Hacktivist DDoS Activity Following Operation Epic Fury/Roaring Lion Conquerors Electronic Army |
| 2026-03-03
⋅
Sophos
⋅
Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies APTIran |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna |
| 2026-03-03
⋅
Google
⋅
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit Coruna UNC6353 UNC6691 |
| 2026-03-03
⋅
Microsoft
⋅
Signed malware impersonating workplace apps deploys RMM backdoors TrustConnect RAT |
| 2026-03-02
⋅
Talos
⋅
Update, March 13: Talos on the developing situation in the Middle East Tsundere APTIran |
| 2026-03-02
⋅
Moonlock
⋅
Fake VCs target crypto talent in a new ClickFix campaign AmodalTea |
| 2026-03-02
⋅
Zscaler
⋅
Dust Specter APT Targets Government Officials in Iraq |
| 2026-03-02
⋅
Microsoft
⋅
OAuth redirection abuse enables phishing and malware delivery |
| 2026-03-02
⋅
ClearSky
⋅
Exposing a Russian Campaign Targeting Ukraine Using New Malware Duo: BadPaw and MeowMeow BadPaw |
| 2026-03-02
⋅
abuse.ch
⋅
MalwareBazaar | SHA256 8011996692048501c1eccb66a2771546ade084806f48994104d199e28af82a4c (ArcaneStealer) ArcaneStealer |
| 2026-02-28
⋅
Github (cocomelonc)
⋅
MacOS malware persistence 4: AutoLaunched Applications, Background Task Management (BTM). Simple C example |