At a Glance Malware family PHP web shells, a Perl web shell installer, Platypus agents, and a...
Web Shell
Since at least early September 2026, attackers have taken root-level control of Citrix NetScaler appliances without a...
On August 31, 2026, attackers broke into a school’s print server and ended up owning its entire...
A single crafted email can give attackers a shell on an unpatched Zimbra mail server. Microsoft Threat...
Changing one letter to its URL code let attackers walk past firewall rules meant to block a...
At a glance Malware family Custom Java web shell (unnamed implant) Threat actor Clop / Cl0p (highly...
At a glance Actor/group Head Mare (tracked by Kaspersky; reclassified from hacktivist group to APT) Activity type...
An AI Agent Spots What Analysts Might Have Missed ReliaQuest Threat Research has identified a new espionage...
TrendAI Research has identified a persistent and methodical China-aligned threat cluster targeting government entities and critical infrastructure...
Security researchers have sounded the alarm on two critical vulnerabilities within Froxlor, the popular open-source server management...
A technical analysis from the Microsoft Defender Security Research Team has revealed that threat actors are increasingly...
In a significant discovery for enterprises and public sector organizations, a critical security vulnerability has been unmasked...
A sophisticated new web shell has been discovered burrowing into communication infrastructure, leveraging a critical vulnerability to...
Adobe has issued critical updates for its ColdFusion platform after security researcher Brian Reilly uncovered a clever...
Researchers from Elastic Security Labs, in collaboration with Texas A&M University System (TAMUS) Cybersecurity, have uncovered a...
A newly released report from ReliaQuest reveals how the China-backed advanced persistent threat (APT) group “Flax Typhoon”...
Huntress researchers have unveiled a new and highly creative intrusion technique that combines log poisoning, AntSword web...
Sucuri’s Puja Srivastava recently uncovered a stealthy and complex malware campaign targeting WordPress websites that left no...
In April 2025, South Korea’s leading telecommunications provider, SK Telecom, disclosed a major security incident. The company...
In a report issued by Unit 42, researchers disclosed that the vulnerability CVE-2025-31324, affecting SAP NetWeaver’s Visual...
In a targeted and technically advanced cyber operation discovered in February 2025, the AhnLab Security Intelligence Center...
A newly published report by Yuma Masubuchi from the JPCERT Coordination Center (JPCERT/CC) has uncovered the deployment...