Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-06-25 ⋅ Microsoft Security ⋅ Microsoft Defender Experts, Microsoft Defender Security Research Team, Parth Jomadkar
Photo ZIP campaign targeting hospitality industry delivers Node.js implant for persistent access
TonRAT
2026-06-24 ⋅ BitSight ⋅ Bitsight TRACE
Amadey and StealC: Malware-as-a-Service Unavailable
Amadey Stealc
2026-06-24 ⋅ JFrog Security ⋅ Guy Korolevski, Yair Benamou
Hijacked npm Packages Use Novel VSCode Autorun and Blockchain Dead Drops to Deploy a Credential/Crypto Stealer
JADESNOW
2026-06-24 ⋅ Europol ⋅ Europol
Global cyber strike disrupts SocGholish, Amadey, and StealC malware networks
FAKEUPDATES Amadey Stealc
2026-06-23 ⋅ Sentinel LABS ⋅ Phil Stokes
macOS.Gaslight | Rust Backdoor Turns Prompt Injection on the Analyst, Not the Sandbox
Gaslight
2026-06-23 ⋅ abuse.ch ⋅ abuse.ch
MalwareBazaar | SolarisLoader
SolarisLoader
2026-06-22 ⋅ Melted in Hex ⋅ Melted in Hex
Dead Drops on the Blockchain: Reversing a DPRK npm Loader (PolinRider / A6-Shadow-15)
JADESNOW
2026-06-22 ⋅ K7 Security ⋅ Harihara Sudhan
A Multi-Stage Steganographic Loader Campaign Deploying Diverse Payloads Globally
Remcos
2026-06-22 ⋅ JFrog Security ⋅ Yair Benamou
From PostCSS Masquerading to Windows RAT
PylangGhost
2026-06-21 ⋅ Infosec Writeups ⋅ Couch Potato
I found a malware hiding in my tailwindcss config file.
2026-06-19 ⋅ Elastic ⋅ Daniel Stepanic
Lost in relocation: analysis of a new loader distributing CASTLESTEALER
CASTLESTEALER
2026-06-18 ⋅ ESET Research ⋅ Jakub Souček
Killing me gently: Inside Gentlemen’s EDR killer framework
Gentlemen KillAV
2026-06-18 ⋅ Gen Digital ⋅ Vojtěch Krejsa
Inside Vidar’s ABE Bypass: From Memory Scanning to APC Injections
Vidar
2026-06-18 ⋅ Daniel Stepanic, Jia Yu Chan
Lost in relocation: analysis of a new loader distributing CASTLESTEALER
oxloader
2026-06-18 ⋅ Qurium
Finding “Popa”: When Your Smart TV Stops Being Yours
BADBOX
2026-06-18 ⋅ Politie NL ⋅ Politie NL
International law enforcement initiate hunt on malware group SocGholish
FAKEUPDATES
2026-06-17 ⋅ Medium ⋅ Jason Reaves, Joshua Platt
MetaStealer traffic, new DGAs and analyzing the “tracker” backdoor DGA with AI
Potemkin
2026-06-17 ⋅ Rapid7 ⋅ Anna Širokova
Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain
Unidentified 125 (RAT, Dropping Elephant)
2026-06-17 ⋅ Microsoft ⋅ Microsoft Defender Research Team
From package to postinstall payload: Inside the Mastra npm supply chain compromise by Sapphire Sleet
2026-06-17 ⋅ TechRepublic ⋅ Kezia Jungco
Ozempic Maker Novo Nordisk Confirms Security Incident After $25M Hacker Demand
FulcrumSec