Unpacking "Cruciferra": An Analysis of a Sophisticated Crypter Service 2026-07-20 AlienVault Tags: adaptixc2 agenttesla asyncrat +19 Ver Detalhes
Still Circling: Toolkit Keeps Evolving 2026-07-18 AlienVault Tags: apt-c-36 asyncrat banking fraud +7 Ver Detalhes
Contagious Interview malware in SVG images: DPRK campaign 2026-07-17 AlienVault Tags: beavertail cryptocurrency wallet theft developer targeting +6 Ver Detalhes
Botnet Analysis: A Product-Grade Threat for the AI Service Era 2026-07-17 AlienVault Tags: ai infrastructure targeting autonomous scanning botnet +8 Ver Detalhes
Behind the Refund: From GST Phishing to Remcos RAT Through a Multi-Stage .NET Infection Chain 2026-07-17 AlienVault Tags: bitmap steganography credential theft dynamic dns +5 Ver Detalhes
ACR Stealer: Two observed intrusion chains amid increased threat activity 2026-07-17 AlienVault Tags: acr stealer amatera stealer blockchain c2 +3 Ver Detalhes
The Patch Wars have begun 2026-07-16 AlienVault Tags: castlestealer clickfix cryptocurrency theft +7 Ver Detalhes
GoSerpent backdoor attacks in Southeast Asia 2026-07-16 AlienVault Tags: credential dumping data exfiltration diplomatic entities +11 Ver Detalhes
HelloNet campaign: a threat via the ViPNet update system 2026-07-16 AlienVault Tags: chinese apt dll sideloading hellobackdoor +10 Ver Detalhes
The TTF Trap: A Global Campaign of a Low-Detection Lua Loader 2026-07-16 AlienVault Tags: agent tesla autoit best private logger +11 Ver Detalhes
Spirals: New Stealthy Ransomware Deployed Against Asian IT Company 2026-07-16 AlienVault Tags: asp.net web shell chisel cloudflare tunnel +9 Ver Detalhes
Novel Starland RAT and bespoke WLDR C2 implant deployed in financially motivated campaign 2026-07-16 AlienVault Tags: castlestealer clickfix credential harvesting +7 Ver Detalhes
ClickLock Stealer: Paste Once, Lose Everything 2026-07-16 AlienVault Tags: atomic stealer banshee stealer browser credential theft +12 Ver Detalhes
Unpacking the AsyncAPI npm supply chain compromise and import-time payload delivery 2026-07-16 AlienVault Tags: asyncapi bluerabbit gigawiper +2 Ver Detalhes
TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains 2026-07-16 AlienVault Tags: clickfix maas telepuz +1 Ver Detalhes
Introducing CylindricalCanine: The GoldenEyeDog subgroup responsible for the April DigiCert incident 2026-07-16 AlienVault Tags: cylindricalcanine gh0st rat golden gh0st loader +2 Ver Detalhes
Fake crypto scams try to piggyback off SpaceX IPO 2026-07-15 AlienVault Tags: brand impersonation cryptocurrency theft fake portals +5 Ver Detalhes
Operation Fake KickOff: Attackers Abuse Recruiters and SaaS to Harvest Work Credentials 2026-07-15 AlienVault Tags: aitm browser-in-the-box credential theft +5 Ver Detalhes
11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windows Host-Surveillance Payload 2026-07-15 AlienVault Tags: dns-over-https evasion game cheats google sheets telemetry +6 Ver Detalhes
Shared Claude Chats Meet ClickFix 2026-07-15 AlienVault Tags: claude platform abuse clickfix credential stealing +5 Ver Detalhes
Miasma Worm Returns to npm 2026-07-15 AlienVault Tags: asyncapi miasma v3 npm hijacking +1 Ver Detalhes
June 2026 Infostealer Trend Report 2026-07-15 AlienVault Tags: acrstealer agenttesla amos +12 Ver Detalhes
Inside an IoT Botnet Framework With LLM-Assisted Development 2026-07-15 AlienVault Tags: aisuru ddos-for-hire gafgyt +8 Ver Detalhes
Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor 2026-07-15 AlienVault Tags: backdoor china-linked espionage daxin +5 Ver Detalhes
OkoBot framework infection chain 2026-07-15 AlienVault Tags: browser extension cryptocurrency theft hdutil +10 Ver Detalhes
Six Minutes to Compromise: How 'Patriot Bait' Actor Used AI to Build and Deploy a C&C Botnet 2026-07-15 AlienVault Tags: ai-assisted hacking botnet operations cryptocurrency fraud +3 Ver Detalhes
Threat Spotlight: The Jalisco Toolkit and AI-Powered Phishing Surge 2026-07-15 AlienVault Tags: darcula jalisco kali365 +7 Ver Detalhes
Suspected Chinese Operators Use Claude Code and DeepSeek to Breach Government Systems Across Four Countries 2026-07-14 AlienVault Tags: claude code deepseek gshell +6 Ver Detalhes
LabubaRAT: A Rust Based Remote Access Tool Masquerading as NVIDIA Software 2026-07-14 AlienVault Tags: dns tunneling labubapanel labubarat +3 Ver Detalhes
Compromised npm Packages in the AsyncAPI Namespace Deliver Miasma Botnet Loader 2026-07-14 AlienVault Tags: asyncapi cross-platform ipfs delivery +6 Ver Detalhes
Supply Chain Compromise via GitHub Actions 2026-07-14 AlienVault Tags: asyncapi credential theft github actions +6 Ver Detalhes
Kratos PhaaS Targets US and EU: How to Reduce Microsoft 365 Account Takeover Risk 2026-07-14 AlienVault Tags: account takeover credential theft europe +5 Ver Detalhes
The Scam Will Go On: Beware of Fake Offers for Celine Dion Concert Tickets 2026-07-14 AlienVault Tags: celine dion concert facebook scam france +5 Ver Detalhes
Lucide Proxy: Turning Student Web Proxies into DDoS Bots 2026-07-14 AlienVault Tags: adware browser-based attack ddos botnet +7 Ver Detalhes
One Misconfigured Server, Three Active Campaigns: Full exposure of three AiTM Phishing Operators 2026-07-13 AlienVault Tags: aitm asyncrat evilginx +4 Ver Detalhes
Vishing actors target Entra passkey enrollment 2026-07-10 AlienVault Tags: data extortion microsoft entra operator-controlled phishing +4 Ver Detalhes
Inside the FortiBleed Open Directory: A Technical Analysis of What the Attacker Left Behind 2026-06-19 AlienVault Tags: credential harvesting fortibleed fortigate +5 Ver Detalhes
Operation Poisson – Analyzing a Cybercriminal’s Entire Operation 2026-06-19 AlienVault Tags: credential-theft fileless-attack france +8 Ver Detalhes
Popa: From Sourcing to Distribution 2026-06-18 AlienVault Tags: android consent bypass hopanet +8 Ver Detalhes
Klue Integration Abused in Salesforce Data Theft | Threat Spotlight 2026-06-18 AlienVault Tags: api exfiltration crm data theft klue integration +5 Ver Detalhes
ClickFix Campaign Generated Via AI Delivers SmartRAT 2026-06-17 AlienVault Tags: ai-generated banana rat banking trojan +10 Ver Detalhes
Attackers Weaponize Microsoft Teams Relays to Stay Hidden 2026-06-16 AlienVault Tags: backdoor.turn byovd credential theft +9 Ver Detalhes
Potemkin Loader & RMMProject The Anatomy of a ClickFix Attack 2026-06-16 AlienVault Tags: blockchain c2 chisel clickfix +7 Ver Detalhes
Gamers beware: malicious wallpapers on Steam found stealing accounts 2026-06-16 AlienVault Tags: account hijacking credential theft crypto miner +8 Ver Detalhes
Investigation of email-based attack delivering MediaFire ZIP file with execution chain analysis 2026-06-16 AlienVault Tags: dll hijacking email delivery mediafire +5 Ver Detalhes
WebAssembly Malware Found in Trojanized Open VSX Extensions 2026-06-16 AlienVault Tags: chacha20 encryption cryptocurrency targeting dead-drop c2 +7 Ver Detalhes
How attackers are jailbreaking LLMs with CTF framing and how to catch them 2026-06-15 AlienVault Tags: ai agent exploitation ai platform targeting credential harvesting +20 Ver Detalhes
Public and Private Medical Community Targeted by Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research 2026-06-15 AlienVault Tags: china-nexus content compliance abuse credential harvesting +5 Ver Detalhes
Analysis of APT37 NarwhalRAT Leveraging MS-Themed Phishing and Dead-drop C2 2026-06-15 AlienVault Tags: anti-vm dead-drop-resolver korean-targeting +6 Ver Detalhes
The Devil, Eight Million Emails, and a Whole Lot of Milk | Phishing Stager Exposed 2026-06-15 AlienVault Tags: bulk email abuse compromised government website credential theft +5 Ver Detalhes