Threat Actors
65 entries
-
CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
Fri, 07 Aug 2026 01:00 · Blog
-
When Agentic Glue Melts: Exploiting Cloudflare Code Mode and Workers
Thu, 06 Aug 2026 18:20 · Check Point Research
-
Why metaphor may dictate your security strategy
Thu, 06 Aug 2026 14:00 · Cisco Talos Blog
-
Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
Thu, 06 Aug 2026 01:00 · Blog
-
“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI
Tue, 04 Aug 2026 06:00 · Cisco Talos Blog
-
Secure Agent Harness Execution: Preventing Escape
Tue, 04 Aug 2026 01:00 · Blog
-
[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents
Mon, 03 Aug 2026 12:00 · Cisco Talos Blog
-
3rd August – Threat Intelligence Report
Mon, 03 Aug 2026 09:15 · Check Point Research
-
CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
Mon, 03 Aug 2026 01:00 · Blog
-
You were onto something with “It’s the Climb,” Miley
Thu, 30 Jul 2026 14:00 · Cisco Talos Blog
-
Black Hat special: Rewind and revisit
Thu, 30 Jul 2026 06:00 · Cisco Talos Blog
-
Falcon AIDR Now Protects Copilot Studio Agents and Claude Code
Thu, 30 Jul 2026 01:00 · Blog
-
Inside Astaroth's New Spambot Component
Wed, 29 Jul 2026 01:00 · Blog
-
Falcon Cloud Security July 2026 Release: Helping Security Teams Move Faster in the Cloud
Wed, 29 Jul 2026 01:00 · Blog
-
Falcon Platform IOAs Arrive in Falcon Next-Gen SIEM to Identify New Threats
Wed, 29 Jul 2026 01:00 · Blog
-
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
Tue, 28 Jul 2026 06:00 · Cisco Talos Blog
-
Mirage Kitten targets Middle East and Africa region with new malware
Tue, 28 Jul 2026 04:00 · APT reports – Securelist
-
27th July – Threat Intelligence Report
Mon, 27 Jul 2026 12:00 · Check Point Research
-
5 High-Impact Use Cases for Falcon Onum
Mon, 27 Jul 2026 01:00 · Blog
-
CrowdStrike Joins the Open Secure AI Alliance to Advance AI Safety and Security
Mon, 27 Jul 2026 00:00 · Blog
-
Don’t swing at everything
Thu, 23 Jul 2026 14:00 · Cisco Talos Blog
-
Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel
Thu, 23 Jul 2026 06:00 · Cisco Talos Blog
-
Preview: Cisco Talos at Black Hat USA 2026
Thu, 23 Jul 2026 06:00 · Cisco Talos Blog
-
20th July – Threat Intelligence Report
Mon, 20 Jul 2026 08:18 · Check Point Research
-
Begun, the Patch Wars have
Thu, 16 Jul 2026 14:00 · Cisco Talos Blog
-
The Hunter's Paradox: Is it time to embrace automated threat hunting?
Thu, 16 Jul 2026 06:00 · Cisco Talos Blog
-
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign
Thu, 16 Jul 2026 06:00 · Cisco Talos Blog
-
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities
Tue, 14 Jul 2026 16:27 · Cisco Talos Blog
-
[Video] Where protection starts: Cisco Talos Intelligence Integrations
Tue, 14 Jul 2026 06:47 · Cisco Talos Blog
-
The serpent’s tongue: Luring the Python out of its den
Tue, 14 Jul 2026 06:00 · Cisco Talos Blog
-
AI Security Report 2026
Mon, 13 Jul 2026 20:51 · Check Point Research
-
13th July – Threat Intelligence Report
Mon, 13 Jul 2026 09:06 · Check Point Research
-
Cavern Manticore: Exposing Iran-Linked Modular C2 Framework
Mon, 06 Jul 2026 08:25 · Check Point Research
-
6th July – Threat Intelligence Report
Mon, 06 Jul 2026 08:01 · Check Point Research
-
22nd June – Threat Intelligence Report
Wed, 01 Jul 2026 07:29 · Check Point Research
-
Browser-Only Ransomware: From LLM Hallucinations to a Practical Attack Technique
Wed, 01 Jul 2026 06:05 · Check Point Research
-
ToddyCat: your hidden email assistant. Part 2
Tue, 30 Jun 2026 06:00 · APT reports – Securelist
-
29th June – Threat Intelligence Report
Mon, 29 Jun 2026 10:06 · Check Point Research
-
From Stars to Upvotes: Fake Reputation Fueling a Crypto Clipboard Hijacker
Wed, 17 Jun 2026 09:38 · Check Point Research
-
15th June – Threat Intelligence Report
Mon, 15 Jun 2026 09:40 · Check Point Research
-
From SQLi to RCE – Exploiting LangGraph’s Checkpointer
Thu, 11 Jun 2026 09:37 · Check Point Research
-
8th June – Threat Intelligence Report
Mon, 08 Jun 2026 10:47 · Check Point Research
-
Tracking Iranian APT Screening Serpens’ 2026 Espionage Campaigns
Fri, 22 May 2026 09:00 · Threat Actor Groups Archives - Unit 42
-
Cloud Atlas activity in the second half of 2025 and early 2026: new tools and a new payload
Fri, 22 May 2026 05:12 · APT reports – Securelist
-
Kimsuky targets organizations with PebbleDash-based tools
Thu, 14 May 2026 07:00 · APT reports – Securelist
-
OceanLotus suspected of using PyPI to deliver ZiChatBot malware
Wed, 06 May 2026 09:00 · APT reports – Securelist
-
Converging Interests: Analysis of Threat Clusters Targeting a Southeast Asian Government
Thu, 26 Mar 2026 18:00 · Threat Actor Groups Archives - Unit 42
-
Boggy Serpens Threat Assessment
Mon, 16 Mar 2026 18:00 · Threat Actor Groups Archives - Unit 42
-
A Peek Into Muddled Libra’s Operational Playbook
Tue, 10 Feb 2026 18:00 · Threat Actor Groups Archives - Unit 42
-
The Shadow Campaigns: Uncovering Global Espionage
Thu, 05 Feb 2026 06:00 · Threat Actor Groups Archives - Unit 42
-
HoneyMyte updates CoolClient and deploys multiple stealers in recent campaigns
Tue, 27 Jan 2026 03:00 · APT reports – Securelist
-
The HoneyMyte APT evolves with a kernel-mode rootkit and a ToneShell backdoor
Mon, 29 Dec 2025 05:00 · APT reports – Securelist
-
Evasive Panda APT poisons DNS requests to deliver MgBot
Wed, 24 Dec 2025 02:00 · APT reports – Securelist
-
Cloud Atlas activity in the first half of 2025: what changed
Fri, 19 Dec 2025 05:00 · APT reports – Securelist
-
From Linear to Complex: An Upgrade in RansomHouse Encryption
Wed, 17 Dec 2025 06:00 · Threat Actor Groups Archives - Unit 42
-
Operation ForumTroll continues: Russian political scientists targeted using plagiarism reports
Wed, 17 Dec 2025 05:00 · APT reports – Securelist
-
Hamas-Affiliated Ashen Lepus Targets Middle Eastern Diplomatic Entities With New AshTag Malware Suite
Thu, 11 Dec 2025 06:00 · Threat Actor Groups Archives - Unit 42
-
The Golden Scale: Bling Libra and the Evolving Extortion Economy
Fri, 10 Oct 2025 17:00 · Threat Actor Groups Archives - Unit 42
-
Phantom Taurus: A New Chinese Nexus APT and the Discovery of the NET-STAR Malware Suite
Tue, 30 Sep 2025 06:00 · Threat Actor Groups Archives - Unit 42
-
Bookworm to Stately Taurus Using the Unit 42 Attribution Framework
Wed, 24 Sep 2025 17:00 · Threat Actor Groups Archives - Unit 42
-
Threat Actor Groups Tracked by Palo Alto Networks Unit 42 (Updated Aug. 1, 2025)
Fri, 01 Aug 2025 09:00 · Threat Actor Groups Archives - Unit 42
-
Introducing Unit 42’s Attribution Framework
Thu, 31 Jul 2025 06:00 · Threat Actor Groups Archives - Unit 42
-
2025 Unit 42 Global Incident Response Report: Social Engineering Edition
Wed, 30 Jul 2025 06:00 · Threat Actor Groups Archives - Unit 42
-
The Covert Operator's Playbook: Infiltration of Global Telecom Networks
Tue, 29 Jul 2025 17:00 · Threat Actor Groups Archives - Unit 42
-
Muddled Libra Threat Assessment: Further-Reaching, Faster, More Impactful
Fri, 25 Jul 2025 06:00 · Threat Actor Groups Archives - Unit 42
← Back to home