Click here to download all references as Bib-File.•
| 2026-01-29
⋅
CrowdStrike
⋅
LABYRINTH CHOLLIMA Evolves into Three Adversaries |
| 2026-01-28
⋅
Proofpoint
⋅
Can’t stop, won’t stop: TA584 innovates initial access XWorm TA584 |
| 2026-01-16
⋅
sysdig
⋅
VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits VoidLink |
| 2026-01-15
⋅
Sansec
⋅
Keylogger targets 200,000+ employees at major US bank |
| 2026-01-12
⋅
PolySwarm Tech Team
⋅
Transparent Tribe Evolves Tradecraft With Multi-Stage LNK Malware |
| 2025-12-17
⋅
Reporters Without Borders
⋅
ResidentBat: A new spyware family used by Belarusian KGB ResidentBat |
| 2025-12-16
⋅
sysdig
⋅
EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2 EtherRAT |
| 2025-12-10
⋅
SpyCloud
⋅
Analyzing the Impact of the Operation Endgame Takedown on Rhadamanthys & the MaaS Ecosystem Rhadamanthys |
| 2025-12-08
⋅
sysdig
⋅
EtherRAT: DPRK uses novel Ethereum implant in React2Shell attacks EtherRAT |
| 2025-11-25
⋅
Arctic Wolf
⋅
Russian RomCom Utilizing SocGholish to Deliver Mythic Agent to U.S. Companies Supporting Ukraine FAKEUPDATES |
| 2025-11-19
⋅
Natto Thoughts
⋅
China’s Cybersecurity Companies Advancing Offensive Cyber Capabilities Through Attack-Defense Labs |
| 2025-11-17
⋅
AhnLab
⋅
NKNShell Malware Distributed via VPN Website Larva-24010 |
| 2025-11-04
⋅
Twitter (@nextronresearch)
⋅
Tweet about BQT ransomware on Linux BQTlock |
| 2025-10-30
⋅
Arctic Wolf
⋅
UNC6384 Weaponizes ZDI-CAN-25373 Vulnerability to Deploy PlugX Against Hungarian and Belgian Diplomatic Entities PlugX |
| 2025-10-27
⋅
Kaspersky
⋅
Mem3nt0 mori – The Hacking Team is back! Dante |
| 2025-10-22
⋅
Multilateral Sanctions Monitoring Team
⋅
The DPRK's Violation and Evasion of UN Sanctions through Cyber and Information Technology Worker Activities |
| 2025-10-15
⋅
Symantec
⋅
Jewelbug: Chinese APT Group Widens Reach to Russia REF7707 |
| 2025-10-14
⋅
Reliaquest
⋅
SOE-phisticated Persistence: Inside Flax Typhoon's ArcGIS Compromise |
| 2025-10-14
⋅
Gatewatcher
⋅
Data Breach: the operations of "Charming Kitten" revealed |
| 2025-10-13
⋅
SpyCloud
⋅
More Than Meets the YY: Analyzing the YYlaiyu PhaaS Panel |