apt
130 articles with this tag
INFO
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
INFO
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
INFO
CRITICAL
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
INFO
CRITICAL
HIGH
CRITICAL
HIGH
INFO
CRITICAL
HIGH
INFO
INFO
INFO
HIGH
HIGH
HIGH
INFO
INFO
CRITICAL
MEDIUM
MEDIUM
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
INFO
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
LOW
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
Dear Diary, Today I found a Ghost in the Network
Mirage Kitten targets Middle East and Africa region with new malware
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
SnappyClient Analysis
HelloNet campaign — new malicious modules launched through the ViPNet update system
USN-8555-1: Ubuntu Advantage Tools (pro client) vulnerabilities
Armored Likho APT leverages AI-generated malware and BusySnake Stealer
China-Linked APT Expands Arsenal With New ‘Leash’ Backdoors
China-Linked APT Expands Proxy Network With New Malware
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks
UAT-7810 continues building ORB networks using new malware
'BusySnake' Infostealer Slithers into Critical Infrastructure Networks
Armored Likho APT Targeting Government, Electric Power Entities
Armored Likho digging a snake pit: inside the covert BusySnake Stealer campaign
Gamaredon group expands malware arsenal in ongoing Ukraine cyberattacks
Gamaredon Expands Ukraine Attacks with New Malware and Cloud Service Abuse
Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign
FishMonger’s arsenal upgraded: SprySOCKS for Windows
ESET APT Activity Report Q4 2025–Q1 2026
OceanLotus: From external espionage to domestic targeting
LotusLite: Believe me I am MustangPanda
Tracking APT28 PixyNetLoader: Evolutions from 2024 to 2026
MUSTANG PANDA x PLUGX - Analysis of the January 2026 sample: a multi-layer execution chain
ESET APT Activity Report Q4 2025–Q1 2026
Iranian APT Targets Aviation, Software Companies With Updated Tools
Tracking Iranian APT Screening Serpens’ 2026 Espionage Campaigns
Webworm: New burrowing techniques
Webworm APT targets European government organizations with new backdoors
China-Linked Webworm APT Evolves Tactics, Expands to European Targets
ESET details new Ghostwriter activity targeting Ukrainian government
Inside Shadow-Earth-053: A China-Aligned Cyberespionage Campaign Against Government and Defense Sectors in Asia
Hunting Lazarus Part VII: The Server That Was Not Just FTP
UAT-8302 and its box full of malware
Chinese APT Abuses Multiple Cloud Tools to Spy on Mongolia
New GopherWhisper APT group abuses Outlook, Slack, Discord for comms
China-Linked GopherWhisper Infects 12 Mongolian Government Systems with Go Backdoors
GopherWhisper APT group hides command and control traffic in Slack and Discord
U.S. Public Sector Under Siege: Threat Intelligence for Q1 2026
Nearly 4,000 US industrial devices exposed to Iranian cyberattacks
Iran-linked hackers disrupt operations at US critical infrastructure sites
Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure
New Whitepaper: Stealthy BPFDoor Variants are a Needle That Looks Like Hay
New Whitepaper: Stealthy BPFDoor Variants are a Needle That Looks Like Hay
Iran Deploys 'Pseudo-Ransomware,' Revives Pay2Key Operations
Russian APT Star Blizzard Adopts DarkSword iOS Exploit Kit
BPFdoor in Telecom Networks: Sleeper Cells in the backbone
Researchers release tool to detect stealthy BPFDoor implants in critical infrastructure networks
Russian APT Exploits Zimbra Vulnerability Against Ukraine
New Malware Highlights Increased Systematic Targeting of Network Infrastructure
Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun Malware
Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company
MuddyWater Exposed: Inside an Iranian APT operation
Rapid7 Detection Coverage for Iran-Linked Cyber Activity
Chinese Nexus Actors Shift Focus to Qatar Amid Iranian Conflict
Dust Specter APT Targets Government Officials in Iraq
PlugX Meeting Invitation via MSBuild and GDATA
North Korean APT Malware Analysis: DEV#POPPER RAT and OmniStealer (Everyday I'm Shufflin')
Iran-linked APT targets US critical sectors with new backdoors
UAT-9244 targets South American telecommunication providers with three new malware implants
Silver Dragon Targets Organizations in Southeast Asia and Europe
OPSEC on a Budget: What BadAudio Reveals About APT24
How to understand and avoid Advanced Persistent Threats
UnsolicitedBooker Targets Central Asian Telecoms With LuciDoor and MarsSnake Backdoors
Ukrainian gets 5 years for helping North Koreans infiltrate US firms
FBI: Threats from Salt Typhoon are ‘still very much ongoing’
CISA orders feds to patch actively exploited Dell flaw within 3 days
Chinese hackers exploited zero-day Dell RecoverPoint flaw for 1.5 years
Dell's Hard-Coded Flaw: A Nation-State Goldmine
Dell RecoverPoint for Virtual Machines Zero Day Attack
China-linked hackers exploited Dell zero-day since 2024 (CVE-2026-22769)
Chinese APT Group Exploits Dell Zero-Day for Two Years
Dell RecoverPoint Zero-Day Exploited by Chinese Cyberespionage Group
Singapore & Its 4 Major Telcos Fend Off Chinese Hackers
Chinese hackers exploited a Dell zero-day for 18 months before anyone noticed
China-linked snoops have been exploiting Dell 0-day since mid-2024, using 'ghost NICs' to avoid detection
Chinese hackers exploiting Dell zero-day flaw since mid-2024
DomainTools Investigations | Lotus Blossom (G0030) and the Notepad++ Supply-Chain Espionage Campaign
Notepad++ hijacking linked to Chinese Lotus Blossom crew
What is UNC3886, the group that attacked Singapore’s telcos
Google: state-backed hackers exploit Gemini AI for cyber recon and attacks
Lazarus Group: A criminal syndicate with a flag
Lazarus Group, Labyrinth Chollima, HIDDEN COBRA, Guardians of Peace, ZINC, NICKEL ACADEMY, Diamond Sleet, Group G0032 | MITRE ATT&CK®
The Lazarus group: North Korean scourge for +10 years | NCC Group
Google: State-backed hackers using Gemini AI at every stage of attacks
Google identifies state-sponsored hackers using AI in attacks
VoidLink: A Cloud-Native Linux Framework Built for Stealth and Scale | Hive Pro
Largest Multi-Agency Cyber Operation Mounted to Counter Threat Posed by Advanced Persistent Threat (APT) Actor UNC3886 to Singapore’s Telecommunications Sector
Singapore confirms UNC3886 espionage campaign against telecom sector, prompts major cyber response - Industrial Cyber
Notepad++ supply chain compromise: Trojanized updates used in suspected nation-state attack | ThreatLocker Blog
Google Ties Suspected Russian Actor to CANFAIL Malware Attacks on Ukrainian Orgs
Nation-State Hackers Put Defense Industrial Base Under Siege
Nation-State Hackers Embrace Gemini AI for Malicious Campaigns, Google Finds
DPRK Operatives Impersonate Professionals on LinkedIn to Infiltrate Companies
Singapore telcos breached in China-linked cyber espionage campaign
Singapore spent 11 months booting China-linked snoops out of telco networks
Singapore Takes Down Chinese Hackers Targeting Telco Networks
Singapore: Rootkits, Zero-Day Used in Chinese Attack on Major Telecom Firms
Chinese cyberspies breach Singapore's four largest telcos
China-Linked UNC3886 Targets Singapore Telecom Sector in Cyber Espionage Campaign