All Malware Phishing APT Ransomware Botnet
50 results
Fast and Furious - Nimbus Manticore Operations During the Iranian Conflict
operation epic furyminifastminijunkseo poisoningnimbus manticoreappdomain hijacking
2026-05-25 AlienVault United States of America, Australia, Saudi Arabia, Israel, United Arab Emirates TLP:WHITE
69
IOCs
Nimbus Manticore
Tracking Iranian APT Screening Serpens’ 2026 Espionage Campaigns
minijunk v2screening serpensappdomainmanager hijackingiran nexus
2026-05-22 AlienVault United States of America, Israel, United Arab Emirates TLP:WHITE
20
IOCs
Screening Serpens
Cloud Atlas activity in the second half of 2025 and early 2026: new tools and a new payload
vbcloudnetsupport ratpowershowerreversesocksphantomheartvalleyrat +2
2026-05-22 AlienVault Belarus, Russian Federation TLP:WHITE
115
IOCs
Inception Framework
AMOS Stealer delivered via Cursor AI agent session
cryptocurrency theftsocial engineeringamos stealerai agent exploitationcursorapplescript +2
2026-04-25 AlienVault TLP:WHITE
17
IOCs
RTF Exploit Installs RAT: uWarrior
rtf exploitationctos ratuwarrior
2026-04-24 AlienVault TLP:WHITE
8
IOCs
GopherWhisper: A burrow full of malware
gopherwhisperlaxgopherratgopherboxoffriendsgo-based backdoorsjabgopher +2
2026-04-23 AlienVault Mongolia TLP:WHITE
37
IOCs
GopherWhisper
DinDoor Backdoor: Deno Runtime Abuse and 20 Active C2 Servers
castleloaderdeno runtimecaddy proxytsundere botnet
2026-04-23 AlienVault United States of America, Russian Federation TLP:WHITE
39
IOCs
MuddyWater
Malicious Campaign Deploying AdaptixC2 Beacon and VS Code via Trojanized SumatraPDF
sumatrapdfcobaltstrikeadaptixc2 beaconentryshelltoshistropic trooper +5
2026-04-23 AlienVault TLP:WHITE
31
IOCs
Tropic Trooper
Beyond PowerShell: Analyzing the Multi-Action ClickFix Variant
scheduled tasksocial engineeringclickfixcmdkeyunc pathlolbins +2
2026-04-23 AlienVault TLP:WHITE
3
IOCs
Unmasking DPRK Cyber Threat Actors: Fake IT Worker Infrastructure
dprkastrill vpnvpn infrastructurefreelance platformsfake it workerscryptocurrency fraud +2
2026-04-23 AlienVault United States of America, Latvia TLP:WHITE
3
IOCs
DPRK
Malicious Artifacts Found in Official KICS Docker Repository and Code Extensions
docker hub poisoninggithub actionsmcpaddon.jscredential theftnpm propagationci/cd compromise +4
2026-04-22 AlienVault TLP:WHITE
20
IOCs
TeamPCP
Untangling a Linux Incident With an OpenAI Twist (Part 2)
cryptominerrepocketbotnetlinux compromisemultiple threat actorscredential harvesting +10
2026-04-22 AlienVault TLP:WHITE
7
IOCs
Dissecting FudCrypt: A Real-World Malware Crypting Service Analysis
cmstplua-uac-bypassazure-trusted-signingcryptor-as-a-servicedll-sideloadingetw-patchingamsi-bypass +2
2026-04-22 AlienVault TLP:WHITE
567
IOCs
TwizAdmin -- Multi-Stage Crypto Clipper, Infostealer & Ransomware Operation
crypto clippertwizadminmulti-platformrussian-speakinginfostealercrpx0 +3
2026-04-22 AlienVault TLP:WHITE
24
IOCs
DataBreachPlus
Cybercriminal VPN Dismantled in Crackdown
takedownlaw enforcement operationransomware operatorsdata theftcybercrime forumsfraud operations +2
2026-05-21 AlienVault TLP:WHITE
3
IOCs