Click here to download all references as Bib-File.•
| 2026-03-23
⋅
Sophos
⋅
NICKEL ALLEY strategy: Fake it ‘til you make it PylangGhost GolangGhost Nickel Alley |
| 2026-02-17
⋅
Google
⋅
From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day BRICKSTORM GRIMBOLT SLAYSTYLE UNC6201 |
| 2026-02-10
⋅
Cisco Talos
⋅
New threat actor, UAT-9921, leverages VoidLink framework in campaigns VoidLink UAT-9921 |
| 2026-02-09
⋅
TRUESEC
⋅
Detecting Russian Threats to Critical Energy Infrastructure DynoWiper |
| 2025-12-08
⋅
Ransom-ISAC
⋅
Cross-Chain TxDataHiding Crypto Heist: A Very (Very) Chainful Process (Part 4) JADESNOW |
| 2025-09-16
⋅
Proofpoint
⋅
Going Underground: China-aligned TA415 Conducts U.S.-China Economic Relations Targeting Using VS Code Remote Tunnels |
| 2025-08-28
⋅
Trend Micro
⋅
TAOTH Campaign Exploits End-of-Support Software to Target Traditional Chinese Users and Dissidents Cobalt Strike Merlin |
| 2025-08-27
⋅
TRUESEC
⋅
Tamperedchef – The Bad PDF Editor TamperedChef |
| 2025-08-23
⋅
LevelBlue
⋅
Like PuTTY in Admin’s Hands Broomstick |
| 2025-06-04
⋅
Threatray
⋅
The Bitter End: Unraveling Eight Years of Espionage Antics – Part Two AlmondRAT AlmondRAT Artra Downloader BDarkRAT Havoc KiwiStealer KugelBlitz MiyaRAT ORPCBackdoor WmRAT ZxxZ |
| 2025-06-04
⋅
Proofpoint
⋅
The Bitter End: Unraveling Eight Years of Espionage Antics—Part One Artra Downloader Havoc |
| 2025-04-25
⋅
Trend Micro
⋅
Earth Kurma APT Campaign Targets Southeast Asian Government, Telecom Sectors KRNRAT Moriya Earth Kurma |
| 2025-03-12
⋅
Mandiant
⋅
Ghost in the Router: China-Nexus Espionage Actor UNC3886 Targets Juniper Routers reptile tsh |
| 2025-03-12
⋅
Mandiant
⋅
Ghost in the Router: China-Nexus Espionage Actor UNC3886 Targets Juniper Routers tsh |
| 2025-01-06
⋅
North Korean Internet
⋅
Hangro: Investigating North Korean VPN Infrastructure Part 1 |
| 2024-12-17
⋅
Proofpoint
⋅
Hidden in Plain Sight: TA397’s New Attack Chain Delivers Espionage RATs MiyaRAT WmRAT HAZY TIGER |
| 2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against Middle East STEALHOOK OilRig |
| 2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against UAE and Gulf Regions STEALHOOK |
| 2024-08-30
⋅
TRUESEC
⋅
Dissecting the Cicada Cicada3301 |
| 2024-04-17
⋅
Mandiant
⋅
Unearthing APT44: Russia’s Notorious Cyber Sabotage Unit Sandworm Sandworm |