All Malware Phishing APT Ransomware Botnet
50 results
Threat Actor Targets Arabian Gulf Region With PlugX
china-nexusdestroyratarabian gulfdoplugssogukaba +9
2026-04-13 AlienVault TLP:WHITE
31
IOCs
Mustang Panda
Threat Actors Leverage Claude Code Leak as Social Engineering Lure to Distribute Malicious Payloads via GitHub
tradedownloaderghostsockssocial engineeringzero trustgithub deliveryvidar +5
2026-04-13 AlienVault TLP:WHITE
20
IOCs
A new Android RAT turning infected devices into potential residential proxy nodes
miraxspanish targetsteabotalbirioxandroidresidential proxy +5
2026-04-13 AlienVault Spain TLP:WHITE
4
IOCs
CPU-Z & HWMonitor, cpuid.com, Watering Hole Attack
supply chain compromisedll sideloadingcpu-zcryptbase.dllcpuid.comstx rat +2
2026-04-13 AlienVault Brazil, Russian Federation, China TLP:WHITE
43
IOCs
Tracking MiniDionis: CozyCar's New Ride Is Related to Seaduke
minidioniscozercloudlookjson-configurationclouddukecozycar +11
2026-04-13 AlienVault TLP:WHITE
44
IOCs
CozyDuke
RondoDox Botnet: From Zero to 174 Exploited Vulnerabilities
ddosxmrigbotnetvulnerability exploitationrondodoxiot
2026-03-11 AlienVault TLP:WHITE
44
IOCs
RondoDox
CastleRAT attack first to abuse Deno JavaScript runtime to evade enterprise security
clickfixsocial engineeringcastleratdenojavascriptapi abuse
2026-03-11 AlienVault TLP:WHITE
6
IOCs
Stolen Service Accounts Lead to Rogue Workstations and Deep AD Compromise
fortigatengfwcredential theftcve-2025-59719cve-2025-59718rmm tools +2
2026-03-11 AlienVault TLP:WHITE
7
IOCs
KadNap Malware Turning Asus Routers Into Botnets
iot devicesbotnetkademlia dhtkadnapproxy service
2026-03-11 AlienVault United States of America, Taiwan, Hong Kong, Russian Federation TLP:WHITE
2
IOCs
Payroll pirate attacks targeting Canadian employees
malvertisingcredential phishingcve-2025-27152payroll fraudsession hijackingaitm +3
2026-04-09 AlienVault TLP:WHITE
3
IOCs
Storm-2755
In-Memory Loader Drops ScreenConnect
in-memory executionpowershell stagingcom abuseremote access toolpeb manipulationscreenconnect +2
2026-04-10 AlienVault TLP:WHITE
12
IOCs
NPM Package Supply Chain Compromise Leads to RAT Deployment
axios packagepostinstall scriptdeveloper environmentsratnpm package compromisedependency poisoning +3
2026-04-10 AlienVault TLP:WHITE
7
IOCs
Stealer Campaign Impacting SLTT macOS Users
macsync stealercryptocurrency walletinfostealerclickfixseo poisoningmaas +3
2026-04-09 AlienVault TLP:WHITE
17
IOCs
The long road to your crypto: ClipBanker and its marathon infection chain
2026-04-09 AlienVault TLP:WHITE
12
IOCs
Hack-for-Hire Campaign Targets Journalists Across MENA Region
prospyhack-for-hirecivil-society-targetingoauthmenaspear-phishing +4
2026-04-09 AlienVault Egypt, Lebanon, Bahrain, United Arab Emirates, Saudi Arabia, United Kingdom of Great Britain and Northern Ireland TLP:WHITE
16
IOCs
Bitter