Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2025-08-21Swiss Post CybersecurityLouis Schürmann
The ClickFix Deception: How a Fake CAPTCHA Deploys an Evasive Infostealer
donut_injector
2025-08-21CrowdStrikeCounter Adversary Operations
MURKY PANDA: A Trusted-Relationship Threat in the Cloud
2025-08-20Hunt.ioHunt.io
APT MuddyWater Deploys Multi-Stage Phishing to Target CFOs
2025-08-20KrollMarc Messer, Otavio Passos, Ryan Hicks
XWORM Returns to Haunt Systems with Ghost Crypt
XWorm
2025-08-20HarfangLabHarfangLab CTR
UAC-0057 keeps applying pressure on Ukraine and Poland
PicassoLoader
2025-08-19cocomelonccocomelonc
MacOS hacking part 9: shellcode injection via task_for_pid - thread hijacking. Simple C (Intel) example
2025-08-19The Wall Street JournalRobert McMillan
Oregon Man Accused of Operating One of Most Powerful Attack ‘Botnets’ Ever Seen
RapperBot
2025-08-19IBM X-ForceRaymond Joseph Alfonso
IBM X-Force Threat Analysis: QuirkyLoader - A new malware loader delivering infostealers and RATs
QuirkyLoader
2025-08-19Red CanaryChris Brook, Christina Johns, Tyler Edmonds
Patching for persistence: How DripDropper Linux malware moves through the cloud
2025-08-18TrellixAlex Lanstein, Pham Duy Phuc
The Coordinated Embassy Hunt: Unmasking the DPRK-linked GitHub C2 Espionage Campaign
XenoRAT
2025-08-180x0d4y0x0d4y
Veletrix Loader Infection: A Look from a Digital Forensic Perspective
VELETRIX
2025-08-18Medium RaghavtiResearchBeGoodToAll
Qilin Ransomware-as-a-Service: Threat Analysis and Strategic Outlook
Qilin AgendaCrypt
2025-08-18TrellixRyan Weil
A Comprehensive Analysis of HijackLoader and Its Infection Chain
HijackLoader
2025-08-16t0ast's blogt0ast
Warlock Group: We're only here for SharePoint and the Lamborghinis
WarLock
2025-08-15cocomelonccocomelonc
Malware development trick 50: phishing attack using a fake login page with Telegram exfiltration. Simple Javascript example.
2025-08-15Cisco TalosAsheer Malhotra, Brandon White, Vitor Ventura
UAT-7237 targets Taiwanese web hosting infrastructure
SoundBill
2025-08-15Bleeping ComputerBill Toulas
Colt Telecom attack claimed by WarLock ransomware, data up for sale
WarLock
2025-08-14CensysHimaja Motheram
2025 State of the Internet: Digging into Residential Proxy Infrastructure
PolarEdge
2025-08-14Hunt.ioHunt.io
Hunt.io Exposes and Analyzes ERMAC V3.0 Banking Trojan Full Source Code Leak
ERMAC
2025-08-13IntezerNicole Fishbein
Threat Bulletin: Fire in the Woods – A New Variant of FireWood
FireWood