Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign involving a malicious program disguised as a Notepad++…
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign involving a malicious program disguised as a Notepad++…
A Russian state-sponsored espionage group exploited a zero-day vulnerability in Zimbra's webmail client to steal emails, passwords, and two-factor authentication recovery codes…
A threat actor documented by Check Point, associated with the WebDAV hijack technique (CVE-2025-33053) used in this campaign.
Group-IB has discovered a new espionage implant named HollowGraph that hijacks Microsoft 365 calendars for command-and-control (C2) and data exfiltration. The malware,…
At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine to spy on military logistics, according…
The AIVD is the civilian intelligence service of the Netherlands. Alongside the MIVD, it published an advisory on July 10, 2026, detailing…
The MIVD is the military intelligence service of the Netherlands. It co-published an advisory with the AIVD on July 10, 2026, revealing…
State-sponsored hacking groups from North Korea known for targeting cryptocurrency and sensitive data, often using social engineering and malware.
Cybersecurity researchers at Kaspersky have uncovered a previously undocumented malware called GoSerpent, used since late 2025 in cyber attacks targeting government and…
An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm,…