At a Glance Actor/Group Unattributed cluster; low-confidence overlap with SilverFox-associated activity Activity Multi-stage malware campaign delivering SparkRAT...
BYOVD
At a glance Factor Details Actor or Group UAT-10147 (Suspected Chinese-speaking group) Activity Type SEO fraud monetization,...
At a glance Malware family Cruciferra malware loader (delivers Remus stealer) Threat actor Cruciferra and LenAI (ErrTraffic)...
At a Glance Research BTR Reforged (Check Point Research) Component BTR.sys, the Windows Defender Boot-Time Removal driver...
At a Glance Actor / group SilverFox (Silver Fox), a China-aligned APT tracked since about 2022 Activity...
A single crypter is now hiding malware for many unrelated criminal crews at once. Proofpoint researchers call...
At a Glance Malware family GodDamn ransomware (rebrand of Beast, formerly Monster) Threat actor Hyadina, a ransomware-as-a-service...
At a glance Group The Gentlemen (ransomware-as-a-service) Activity Ransomware, data-leak extortion, custom tool development Targets Large firms...
TL;DR CERT/CC disclosed a Secure Boot bypass that affects many vendor-signed UEFI applications. ESET researcher Martin Smolar...
At a glance Malware family Backdoor.Turn (Go-based RAT) Threat actor DragonForce ransomware, developed by Hackledorb (Symantec attribution)...
The Warlock ransomware group (also tracked as Water Manaul) has significantly sharpened its claws. A recent deep-dive...
Aryaka Threat Labs has unmasked a sophisticated malware operation dubbed BlackSanta. This Russian-speaking threat actor has spent...
The notorious Black Basta ransomware group has upgraded its arsenal with a dangerous new capability, embedding defense...
A sophisticated ransomware group known as Interlock is turning the tables on defenders by weaponizing a tool...
A new ransomware family, borrowing the name of the ancient Egyptian god of the dead, has emerged...
In a new report, the Huntress Tactical Response Team details a sophisticated intrusion discovered in December 2025...
A sophisticated new ransomware operator has rapidly ascended the ranks of the cybercriminal underworld, targeting industries across...
A notorious threat group has pivoted its focus to the Great White North, unleashing a sophisticated campaign...
A familiar threat has returned with new tricks, proving that cybercriminals don’t need sophisticated custom code to...
A financially motivated threat group is deploying a new ransomware strain known as “DeadLock,” utilizing advanced “Bring...
The Acronis Threat Research Unit (TRU) has identified a new DragonForce ransomware variant that showcases a dramatic...
Trend Research has uncovered a highly sophisticated ransomware campaign by the Agenda group, also known as Qilin,...