Qilin Ransomware Malware
Qilin (aka Agenda) is a ransomware malware family deployed via RaaS affiliates. It was used in June 2026 attacks exploiting CVE-2026-0257. The…
Qilin (aka Agenda) is a ransomware malware family deployed via RaaS affiliates. It was used in June 2026 attacks exploiting CVE-2026-0257. The…
UPX version 5.20 was used to pack the ENCFORGE binary, a static Go 1.22.12 ELF file.
A malware campaign using WebDAV shares to deliver infostealers and RATs, leveraging AI-assisted tooling and multiple CVEs.
Infostealer malware was the primary vector for the Snowflake breaches, harvesting credentials that remained valid for years due to lack of rotation.…
A modular .NET RAT delivered via DLL sideloading through a signed Ubisoft binary, part of the DlrtyGames campaign.
SmartLoader is a malware family used in the FakeGit campaign to establish persistence on compromised systems and deploy secondary payloads like StealC.…
HOLLOWGRAPH is a .NET NativeAOT-compiled DLL that abuses Microsoft Graph API to use Microsoft 365 calendar events as a two-way dead-drop for…
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More Ravie LakshmananJul 20, 2026Cybersecurity / Hacking A single…
Cybersecurity researchers have uncovered a sophisticated software supply chain attack dubbed 'SleeperGem' targeting the Ruby ecosystem. Three malicious gems were published to…
SleeperGem is a software supply chain attack targeting the Ruby ecosystem through three malicious RubyGems packages. The malware acts as a loader,…