Click here to download all references as Bib-File.•
| 2025-12-02
⋅
Trend Micro
⋅
Unraveling Water Saci's New Multi-Format, AI-Enhanced Attacks Propagated via WhatsApp Water Saci |
| 2025-10-27
⋅
Trend Micro
⋅
Active Water Saci Campaign Spreading Via WhatsApp Features Multi-Vector Persistence and Sophisticated C&C Water Saci |
| 2025-07-23
⋅
Stranded on Pylos Blog
⋅
Will the Real Salt Typhoon Please Stand Up? KV |
| 2025-05-19
⋅
cyjax
⋅
A Sting on Bing: Bumblebee delivered through Bing SEO poisoning campaign BumbleBee |
| 2025-04-23
⋅
Cisco Talos
⋅
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangs HOLERUN |
| 2025-04-17
⋅
Cisco Talos
⋅
Unmasking the new XorDDoS controller and infrastructure XOR DDoS |
| 2024-11-14
⋅
Cisco Talos
⋅
New PXA Stealer targets government and education sectors for sensitive information PXA Stealer |
| 2024-09-10
⋅
Talos Intelligence
⋅
DragonRank, a Chinese-speaking SEO manipulator service provider IISpy PlugX DragonRank |
| 2024-08-01
⋅
Cisco
⋅
APT41 likely compromised Taiwanese government-affiliated research institute with ShadowPad and Cobalt Strike Cobalt Strike ShadowPad |
| 2024-07-26
⋅
SecurityIntelligence
⋅
Hive0137 and AI-supplemented malware distribution WarmCookie XWorm Hive0137 |
| 2024-06-21
⋅
Elastic
⋅
GrimResource - Microsoft Management Console for initial access and evasion Cobalt Strike |
| 2024-04-04
⋅
Cisco Talos
⋅
CoralRaider targets victims’ data and social media accounts CoralRaider |
| 2023-12-08
⋅
Security Intelligence
⋅
ITG05 operations leverage Israel-Hamas conflict lures to deliver Headlace malware Headlace |
| 2023-11-11
⋅
Security Joes
⋅
Mission "Data Destruction": A Large-scale Data-Wiping Campaign Targeting Israel BiBi-Linux |
| 2023-10-30
⋅
Security Joes
⋅
BiBi Wiper BiBi-Linux BiBiGun |
| 2023-10-27
⋅
Elastic
⋅
GHOSTPULSE haunts victims using defense evasion bag o' tricks HijackLoader Lumma Stealer NetSupportManager RAT Rhadamanthys SectopRAT Vidar |
| 2023-09-05
⋅
Github (JoelGMSec)
⋅
MultiPlatform HTTP Reverse Shell HTTP-Shell |
| 2023-06-02
⋅
Mandiant
⋅
Zero-Day Vulnerability in MOVEit Transfer Exploited for Data Theft |
| 2023-05-22
⋅
eSentire
⋅
The Hunt for VENOM SPIDER PART 2 VENOM SPIDER |
| 2023-04-28
⋅
DISCARDED Podcast
⋅
Beyond Banking: IcedID Gets Forked IcedID PhotoLoader |