Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-06-25 ⋅ Palo Alto Networks Unit 42 ⋅ Unit 42
CL-STA-1062 Targets Southeast Asian Governments and Critical Infrastructure
JuicyPotato MimiKatz UAT-7237
2026-03-12 ⋅ Palo Alto Networks Unit 42 ⋅ Lior Rochberger, Yoav Zemah
Suspected China-Based Espionage Operation Against Military Targets in Southeast Asia
AppleChris CL-STA-1087
2026-03-06 ⋅ Palo Alto Networks Unit 42 ⋅ Tom Fakterman
An Investigation Into Years of Undetected Operations Targeting High-Value Sectors
Godzilla Webshell CL-UNK-1068
2026-02-05 ⋅ Palo Alto Networks Unit 42 ⋅ Unit 42
The Shadow Campaigns: Uncovering Global Espionage
Cobalt Strike UNC6619
2025-12-11 ⋅ Palo Alto Networks Unit 42 ⋅ Unit 42
Hamas-Affiliated Ashen Lepus Targets Middle Eastern Diplomatic Entities With New AshTag Malware Suite
Ashen WIRTE
2025-10-29 ⋅ Palo Alto Networks Unit 42 ⋅ Chema Garcia, Kristopher Russo
Suspected Nation-State Threat Actor Uses New Airstalk Malware in a Supply Chain Attack
Airstalk CL-STA-1009
2025-10-15 ⋅ Palo Alto Networks Unit 42 ⋅ paloalto Networks: Unit42
PhantomVAI Loader Delivers a Range of Infostealers
Katz Stealer PhantomVAI
2025-10-10 ⋅ Palo Alto Networks Unit 42 ⋅ Matthew Brady
Scattered Lapsus$ Hunters: What Retail and Hospitality Organizations Should Know
Scattered Lapsus Hunters
2025-09-30 ⋅ Palo Alto Networks Unit 42 ⋅ Lior Rochberger
Phantom Taurus: A New Chinese Nexus APT and the Discovery of the NET-STAR Malware Suite
NET-STAR CL-STA-0043
2025-09-10 ⋅ Palo Alto Networks Unit 42 ⋅ Itay Cohen, Ofek Lahiani
AdaptixC2: A New Open-Source Framework Leveraged in Real-World Attacks
AdaptixC2
2025-07-14 ⋅ Palo Alto Networks Unit 42 ⋅ Lior Rochberger
Behind the Clouds: Attackers Targeting Governments in Southeast Asia Implement Novel Covert C2 Communication
CL-STA-1020
2025-06-17 ⋅ Palo Alto Networks Unit 42 ⋅ Dominik Reichel
Exploring a New KimJongRAT Stealer Variant and Its PowerShell Implementation
KimJongRat
2025-05-07 ⋅ Palo Alto Networks Unit 42 ⋅ Unit 42
Iranian Cyber Actors Impersonate Model Agency in Suspected Espionage Operation
APT35
2025-04-14 ⋅ Palo Alto Networks Unit 42 ⋅ Prashil Pattni
Slow Pisces Targets Developers With Coding Challenges and Introduces New Customized Python Malware
RN Stealer
2025-03-06 ⋅ Palo Alto Networks Unit 42 ⋅ Janos Szurdi, Reethika Ramesh
The Next Level: Typo DGAs Used in Malicious Redirection Chains
2025-02-28 ⋅ Palo Alto Networks Unit 42 ⋅ Margaret Kelley
JavaGhost’s Persistent Phishing Attacks From the Cloud
JavaGhost
2025-02-27 ⋅ Palo Alto Networks Unit 42 ⋅ Lior Rochberger, Tom Fakterman
Squidoor: Suspected Chinese Threat Actor’s Backdoor Targets Global Organizations
FINALDRAFT FINALDRAFT REF7707
2025-02-24 ⋅ Palo Alto Networks Unit 42 ⋅ Alex Armstrong
Auto-Color: An Emerging and Evasive Linux Backdoor
2025-01-29 ⋅ Palo Alto Networks Unit 42 ⋅ Lior Rochberger, Yoav Zemah
CL-STA-0048: An Espionage Operation Against High-Value Targets in South Asia
Cobalt Strike MimiKatz PlugX ValleyRAT Winos CL-STA-0048
2024-11-19 ⋅ Palo Alto Networks Unit 42 ⋅ Asher Davila, Chris Navarrete
FrostyGoop’s Zoom-In: A Closer Look into the Malware Artifacts, Behaviors and Network Communications
FrostyGoop