mitre-ta0002
213 articles with this tag
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
INFO
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
Kubernetes Runtime Threats Explained
Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled
[NEU] [hoch] n8n: Mehrere Schwachstellen
Sophisticated crypter service Cruciferra evades detection with advanced techniques
[NEU] [hoch] Synacor Zimbra: Mehrere Schwachstellen
Ukraine warns fake CAPTCHAs are being used to make you hack yourself
ACR Stealer: Two observed intrusion chains amid increased threat activity
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign
New ACR Stealer campaigns use WebDAV, MSHTA to evade detection
Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
ACR Stealer: Two observed intrusion chains amid increased threat activity
New TELEPUZ malware spreads via ClickFix lures
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands
TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains
Phishing Campaign Abuses eCards to Deploy RMM Tools
AI used to help plan the break-in, now it’s doing the break-in
Silver Fox group uses new Rust-based MODBEACON RAT
New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
RedWing Android Spyware Sold as a Service on Telegram
SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users
New Malicious Campaign Delivers Vidar Infostealer and Monero Crypto Miner
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
ClickFix to Cash-Out: Anatomy of a Mexican Banking-Fraud Toolkit
Fake IT bods on Microsoft Teams coax workers into installing malware
UAT-7810 continues building ORB networks using new malware
RustDuck botnet rapidly evolves with migration to Rust
VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer
Fileless Malware Abuses Google Blogspot to Deploy Infostealer in Memory
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery
Malware steals Chrome session cookies to take over your accounts
CL-STA-1062 Targets Southeast Asian Governments and Critical Infrastructure
FishMonger’s arsenal upgraded: SprySOCKS for Windows
Cisco Unified CM flaw actively exploited to drop webshells (CVE-2026-20230)
Malicious npm Packages Pose as PostCSS Tools to Deliver Windows RAT
[NEU] [hoch] MISP: Mehrere Schwachstellen
WhatsApp VBScript Campaign Uses Fake Documents to Install ManageEngine RMM Tool
New OXLOADER Loader Uses Malicious Google Ads to Deliver CastleStealer
Weekly Metasploit Update: NTLM Relay Priv Esc, MCP Server Integration, Paperclip AI RCE Chain, and more
Malware campaign uses VirusTotal manipulation, legitimate news sites to gain reputation
Lost in relocation: analysis of a new loader distributing CASTLESTEALER
Fake GitHub Stars and AI Videos Mask a Crypto Clipper
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds
Rokarolla Trojan Combines Banking Fraud With Device Surveillance
[NEU] [mittel] Cacti: Mehrere Schwachstellen
Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code
OnyxC2 stealer sold as a service targets over 210 applications
Cybercriminals Use Fake AI Guides and Dev Tools to Spread AsyncRAT Malware
OnyxC2 Stealer Offers Cybercriminals Enterprise-Grade Theft for $250 a Month
[NEU] [hoch] Jenkins: Mehrere Schwachstellen
[NEU] [hoch] n8n: Mehrere Schwachstellen
New SilabRAT Trojan Hijacks Sessions to Steal Crypto
WinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in Ukraine
RemotePE: The Lazarus RAT that lives in memory
[NEU] [hoch] VMware Tanzu Spring Framework: Mehrere Schwachstellen
Google Protocol Buffers flaw turns schemas into shells
Malicious podcast, PDF apps spread FlutterShell macOS backdoor malware
Infostealers are becoming the go-to phishing payload
WordPress malware campaign hides payloads in Steam profiles
Russia-aligned crime group Greyvibe extensively uses AI in attacks
New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
GreyVibe hackers use ChatGPT, Gemini to power cyberattacks
BTMOB Android malware service generates custom phishing payloads
Russia-Linked ‘GreyVibe’ Attackers Use AI to Supercharge Cyberattacks
[NEU] [hoch] Gladinet Triofox: Mehrere Schwachstellen
PureLogs Variant Steals Data via Purchase Order Lures
700+ education and tech websites hijacked in huge ClickFix malware campaign
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
Exploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability
Analyzing Void Dokkaebi’s Cython-Compiled InvisibleFerret Malware
Belarus-linked Ghostwriter group targets Ukraine using Prometheus learning platform lures
Fast and Furious – Nimbus Manticore Operations During the Iranian Conflict
Webworm: New burrowing techniques
Internet Explorer may be dead, but its ghost still runs malware
Inside SHADOW-WATER-063’s Banana RAT: From Build Server to Banking Fraud
Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks
When prompts become shells: RCE vulnerabilities in AI agent frameworks
Hackers use PyInstaller to hide XWorm malware
ESET details new Ghostwriter activity targeting Ukrainian government
China-Linked Hackers Deploy New TencShell Malware Against Global Manufacturer
Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt Strike
Chinese APTs Expand Targets, Update Backdoors in Recent Campaigns
[NEU] [mittel] Aruba ArubaOS: Mehrere Schwachstellen
NCSC-2026-0140 [1.00] [M/H] Kwetsbaarheden verholpen in diverse SAP-producten
[NEU] [hoch] pgAdmin: Mehrere Schwachstellen
Technical Analysis of EagleSpy V6.0 (CraxsRAT Rebrand) Distributed Through Odysee and Telegram
New TCLBanker malware self-spreads over WhatsApp and Outlook
MUSTANG PANDA × PLUGX - From deceptive LNK to multi-transport backdoor
New botnet targets gaming servers via misconfigured Jenkins
ClickFix Removes Your Background but Leaves the Malware
Hackers exploit Qinglong vulnerabilities to deploy cryptominers
Hackers exploit RCE flaws in Qinglong task scheduler for cryptomining
Vidar infostealer evolves, uses image files for stealthy attacks
North Korean Hackers Target Crypto Firms with ClickFix and AI-Made Zoom Lures
Tropic Trooper targets Chinese speakers with SumatraPDF trojan and VS Code tunnels
Incomplete Windows Patch Opens Door to Zero-Click Attacks
New GopherWhisper APT group abuses Outlook, Slack, Discord for comms
[NEU] [hoch] n8n: Mehrere Schwachstellen