Click here to download all references as Bib-File.•
| 2026-05-14
⋅
Microsoft
⋅
Kazuar: Anatomy of a nation-state botnet Kazuar |
| 2026-05-13
⋅
Rapid7
⋅
When IT Support Calls: Dissecting a ModeloRAT Campaign from Teams to Domain Compromise ModeloRAT |
| 2026-05-12
⋅
Symantec
⋅
Jewelbug: APT Group Runs Espionage and Crypto Fraud Operations Side by Side Earth Alux REF7707 |
| 2026-05-11
⋅
Qianxin
⋅
Threat Actor Mr_Rot13 Actively Exploits CVE-2026-41940 for Backdoor Deployment Mr_Rot13 |
| 2026-05-11
⋅
urlscan.io
⋅
Darcula aka. "Magic Cat" |
| 2026-05-11
⋅
ThreatFabric
⋅
New TrickMo Variant: Device Take Over malware targeting Banking, Fintech, Wallet & Auth apps TrickMo |
| 2026-05-10
⋅
Medium RaghavtiResearch
⋅
Industrialized Smishing Infrastructure Targeting the UAE and Singapore Transportation, Government, and Logistics Sectors |
| 2026-05-07
⋅
Sophos
⋅
Donuts and Beagles: Fake Claude site spreads backdoor TriBack Loader |
| 2026-05-06
⋅
Elastic
⋅
TCLBANKER: Brazilian Banking Trojan Spreading via WhatsApp and Outlook TCLBANKER |
| 2026-05-05
⋅
ESET Research
⋅
A rigged game: ScarCruft compromises gaming platform in a supply-chain attack BirdCall |
| 2026-05-05
⋅
ANY.RUN
⋅
New Phishing Campaign Targets US with Credential Theft: What CISOs Need to Know |
| 2026-05-05
⋅
Red Asgard
⋅
Hunting Lazarus Part VII: The Server That Was Not Just FTP BeaverTail OtterCookie |
| 2026-05-05
⋅
Cisco Talos
⋅
UAT-8302 and its box full of malware SNOWLIGHT DracuLoader FINALDRAFT SNAPPYBEE STOWAWAY VShell UAT-8302 |
| 2026-05-04
⋅
Trend Micro
⋅
Quasar Linux (QLNX) – A Silent Foothold in the Supply Chain: Inside a Full-Featured Linux RAT With Rootkit, PAM Backdoor, Credential Harvesting Capabilities QLNX |
| 2026-04-30
⋅
Kaspersky
⋅
Silver Fox uses the new ABCDoor backdoor to target organizations in Russia and India ABCDoor |
| 2026-04-27
⋅
Red Piranha
⋅
Weekly Detected Threats - April 21 - April 27 2026 Lamashtu |
| 2026-04-23
⋅
cocomelonc
⋅
MacOS malware persistence 10: caffeinate LOLBin. Simple C example |
| 2026-04-22
⋅
Secure Blink
⋅
Mustang Panda Strikes India and South Korea with Updated LOTUSLITE Backdoor in Espionage Campaign LOTUSLITE |
| 2026-04-22
⋅
Ransom-ISAC
⋅
DragonBreath: Dragon in the Kernel DragonBreath |
| 2026-04-22
⋅
Expel
⋅
Inside Lazarus: How North Korea uses AI to industrialize attacks on developers BeaverTail OtterCookie InvisibleFerret HexagonalRodent |