Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2026-10-04 ⋅ Hexastrike Cybersecurity ⋅ Maurice Fielenbach
FLEXRAT – ChilloutVR Lures, Shared Secrets, and an OPSEC Hangover
FLEXRAT
2026-09-28 ⋅ KrebsOnSecurity ⋅ Brian Krebs
Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation
2026-09-25 ⋅ Microsoft ⋅ Microsoft Security Research, Tushar Mudi, Yossi Weizman
Storm-3168: Agentic-driven cloud attacks using compromised service principals
JadePuffer
2026-09-25 ⋅ KrebsOnSecurity ⋅ Brian Krebs
U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortions
2026-09-22 ⋅ Microsoft ⋅ Microsoft Defender Experts, Microsoft Security Research, Microsoft Threat Intelligence
Unmasking EvilTokens: Getting to the root of device code phishing
Storm-2992
2026-09-21 ⋅ Atlassian ⋅ Atlassian Trust and Security, Dawid Osojca, Parthiban Rajendran, Ramazan Uysal
From fake interviews to malicious repositories: Disrupting Contagious Interview
BeaverTail BeaverTail Beavertail
2026-09-18 ⋅ K7 Security ⋅ Ashwath M Ram
From Registry-Stored PowerShell to In-Memory Cryptocurrency Mining: A Multi-Stage Infection Chain
xmrig
2026-09-07 ⋅ Kudelski Security ⋅ Clifford, Coline Chavane, Saee V., TDR Team
Beyond Lazarus: Organization of DPRK Cyber Capabilities
Qilin KillDisk Maui Ransomware PLAY SiennaBlue SiennaPurple WannaCryptor
2026-09-03 ⋅ Abstract Security ⋅ Abstract Security Threat Research Organization (ASTRO)
Chaotic Eclipse Releases CrowdStrike Falcon Zero-Day FalconFlank: Detection Guidance
2026-08-26 ⋅ Abstract Security ⋅ Abstract Security Threat Research Organization (ASTRO)
RMM Hunting: Leveraging LOLRMM for Detection
2026-07-30 ⋅ AhnLab ⋅ ASEC
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Bankshot Gunra PostNapTea
2026-07-30 ⋅ AhnLab ⋅ AhnLab
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
Gunra
2026-07-28 ⋅ StepSecurity ⋅ Varun Sharma
Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan
JADESNOW
2026-07-22 ⋅ Prophet Security ⋅ Joshua Hubner
EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain
2026-07-16 ⋅ Microsoft Security ⋅ Balaji Venkatesh S, Microsoft Security Research
ACR Stealer: Two observed intrusion chains amid increased threat activity
ACR Stealer
2026-07-14 ⋅ PICUS Security ⋅ Sıla Özeren Hacıoğlu
FSB Center 16: How Russian hackers exploit routers via SNMP and Cisco Smart Install
2026-07-12 ⋅ OX Security ⋅ Moshe Siman Tov Bustan
Malware-Slop: Crypto Stealer Impersonating Polymarket Exposes Its Own Credentials
OtterCandy
2026-06-30 ⋅ JFrog Security ⋅ Yair Benamou
Lazarus-Linked npm Malware Masquerades as Rollup Polyfills
OtterCookie
2026-06-25 ⋅ Microsoft Security ⋅ Microsoft Defender Experts, Microsoft Defender Security Research Team, Parth Jomadkar
Photo ZIP campaign targeting hospitality industry delivers Node.js implant for persistent access
TonRAT
2026-06-24 ⋅ JFrog Security ⋅ Guy Korolevski, Yair Benamou
Hijacked npm Packages Use Novel VSCode Autorun and Blockchain Dead Drops to Deploy a Credential/Crypto Stealer
JADESNOW