Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2026-07-29ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan, Stuart Del Caliz
Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit
ZimReaper Void Blizzard
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
Operation RoundPress Rolls on with More Half-Click Webmail Zero-Days from TA458
SpyPress
2026-07-23ProofpointGreg Lesnewich, Konstantin Klinger, Mark Kelly, Nick Attfield, Saher Naumaan
TA488 Targets Zimbra Mailservers with Half-Click Exploits
ZimReaper
2025-09-16ProofpointGreg Lesnewich, Mark Kelly, Nick Attfield, Proofpoint Threat Research Team
Going Underground: China-aligned TA415 Conducts U.S.-China Economic Relations Targeting Using VS Code Remote Tunnels
2025-06-04ThreatrayAbdallah Elshinbary, Jonas Wagner, Konstantin Klinger, Nick Attfield
The Bitter End: Unraveling Eight Years of Espionage Antics – Part Two
AlmondRAT AlmondRAT Artra Downloader BDarkRAT Havoc KiwiStealer KugelBlitz MiyaRAT ORPCBackdoor WmRAT ZxxZ
2025-06-04ProofpointAbdallah Elshinbary, Jonas Wagner, Konstantin Klinger, Nick Attfield
The Bitter End: Unraveling Eight Years of Espionage Antics—Part One
Artra Downloader Havoc
2024-12-17ProofpointDavid Galazin, Konstantin Klinger, Nick Attfield, Pim Trouerbach
Hidden in Plain Sight: TA397’s New Attack Chain Delivers Espionage RATs
MiyaRAT WmRAT HAZY TIGER