NanoCore: Remote Access Trojan Used by Sable Squirrel
NanoCore is a remote access trojan that has been identified in malware samples communicating with Sable Squirrel's infrastructure, highlighting its role in…
NanoCore is a remote access trojan that has been identified in malware samples communicating with Sable Squirrel's infrastructure, highlighting its role in…
Nanjing Ranyi Technology Co., Ltd. is a Chinese company whose digital certificate was used to sign the malicious msagent.sys driver. The certificate…
Ransomware is a type of malware deployed by Transnational Criminal Organizations to extort victims. The White House memo highlights ransomware as one…
This week's ThreatsDay Bulletin covers a wide range of cybersecurity developments, including new attack techniques, data breaches, and product updates. Key highlights…
SHEETCREEP is a malware family that uses Google Sheets for C2 communications. It is referenced as a predecessor to SHEETCORD, which combines…
HACKERAI C2 is an AI-assisted malware project that overlaps with PATCHCORD and SHEETCORD but uses GitHub Gists for C2. It implements dedicated…
SopraVPN is a trojanized VPN client distributed by UAC-0145 via SourceForge. It is compiled from WireGuard source code with modifications that allow…
The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed a new social engineering campaign attributed to UAC-0145, a subgroup of the…
Lynx ransomware is a malware family used by the Lynx affiliate program. It has been observed in attacks alongside DeadLock, indicating a…
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks Ravie LakshmananAug 11, 2026Ransomware / Threat Intelligence Cybersecurity and intelligence agencies…