mitre-ta0005
286 articles with this tag
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
INFO
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
INFO
MEDIUM
CRITICAL
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
USN-8621-1: Samba vulnerabilities
Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
Golden Chickens malware-as-a-service resurfaces with four new families
Kubernetes Runtime Threats Explained
Lampion banking malware continues to target Portuguese organizations
Russian hackers exploit Zimbra zero-click flaw for email theft
A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots
Attackers Combo Up Evasion Tactics for BEC Phishing
Cruciferra Crypter Uses Process Ghosting to Evade Detection
OkoBot malware targets hardware wallet users with recovery phrase phishing
Windows bind links exploited for EDR evasion
‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
New Windows Bind Link techniques let attackers evade EDR, security controls
Windows Bind Link Attacks Can Hide Malware From EDR Tools
ShinyHunters group exploits OAuth trust, prompting Microsoft security upgrades
Multiple Jscrambler Packages Impacted by Supply Chain Attack
Russia’s FSB attacks critical infrastructure, says 12 Western nations
EU and UK officially blame Russian spies for cyberattack on Poland's power grid
Officials once again warn defenders that Russian hackers are targeting network devices
Pakistani Police Systems Hit by Chinese and Indian Espionage
Novel OAuth Client ID Spoofing Technique Targets Cloud Environments
RabbitMQ flaws expose OAuth secrets, risk complete takeover of the broker
NCSC-2026-0227 [1.00] [M/H] Kwetsbaarheden verholpen in Palo Alto Networks PAN-OS
No Manners Here: The Ruthless Rise of The Gentlemen Ransomware
New Ransomware Exploits Malicious Driver to Remove Cybersecurity Protections
‘GodDamn’ ransomware deploys PoisonX driver to kill EDR
Attack on Amazon Bedrock-linked AI gateway highlights new cloud security risk
GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
Lone Attacker Uses AI to Breach AWS Cloud Environment in 72 Hours
FortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices
Cybercriminals exploit India’s tax filing season with a dual-malware campaign
Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks
Armored Likho APT Targeting Government, Electric Power Entities
USN-8506-1: Request Tracker vulnerabilities
USN-8504-1: SOGo vulnerabilities
Ousaban banking trojan targets Spain and Portugal with new stealth techniques
And the Winner in Dominant Malware Delivery? ClickFix
Brazilian Banking Trojan Ousaban Targets Spain and Portugal
Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet Addresses
UK Healthcare Sector Records Tenfold Increase in Cyber-Attacks
Defence Impairment Olympics
Rússar grunaðir um stærstu netárás í sögu Bretlands
Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack
Russian APT 'Gamaredon' Upgrades Its Arsenal, Requiring New Defenses
Nation-state actors cracked critical Australian infrastructure to ‘cripple it at a time of their choosing’
More Malicious OpenClaw Skills Threaten AI Supply Chain
Two men plead guilty in UK for cyberattacks on Transport for London
Anatomy of a retail ransomware attack: Tabletop simulates modern mayhem methods
Threat actor adds advanced ‘EDR killer’ tools to ransomware-as-a-service platform
The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
FortiBleed: 86,000 Fortinet Device Credentials Compromised
Killing me gently: Inside Gentlemen’s EDR killer framework
Rokarolla Banking Trojan Targets 200 Applications
From package to postinstall payload: Inside the Mastra npm supply chain compromise
Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain
144 Mastra npm Packages Compromised via Hijacked Contributor Account
GhostTree technique uses NTFS junctions to evade security scans
New Rokarolla Android malware targets 217 banking, crypto apps
SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection
Ransomware gang abuses Microsoft Teams relays to hide malicious traffic
North Korean Hackers Are Turning Developer Tools Into Malware Delivery Channels
China-linked spies backdoored authentication stack to stay hidden for years
AI brands as bait: How threat actors are using the AI hype in social engineering
Malicious npm packages abuse dependency confusion to profile developer environments
Trust No Skill: Integrity Verification for AI Agent Supply Chains
EDRChoker: Choking The Telemetry Stream to Bypass Defenses
Blinding the Watchmen: Abusing Cloud Logging Services for Defense Evasion and Visibility
EDRChoker: Choking The Telemetry Stream to Bypass Defenses
IronWorm malware, similar to Shai-Hulud, hits 57 projects across 9 organizations
“BTMOB” RAT Demonstrates Deep Persistence on Android Devices
Claude Code has an MCP security problem — and your developers are already using it
Attackers Use AI to Automate EDR Evasion Testing
AI-built ransomware toolkit automates EDR evasion, AD discovery
The HazyBeacon Protocol – How Malware Weaponizes Amazon Web Services (AWS) Lambda Function URLs
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices
Threat Actor Uses AI to Build EDR Evasion Tools
Sophos uncovers AI-powered malware lab built for EDR evasion
Malicious npm packages abuse dependency confusion to profile developer environments
‘Claude Code install’ search result leads to ClickFix infostealer attack
Over 5,500 GitHub Repositories Infected in ‘Megalodon’ Supply Chain Attack
Laravel Lang Supply Chain Advisory
Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential Stealer
The Gentleman Ransomware | Defense Evasion TTPs Uncovered | Huntress
Grafana Labs Says Code Breach Stemmed from TanStack Attack
Mini Shai Hulud: Compromised @antv npm packages enable CI/CD credential theft
Over 320 NPM Packages Hit by Fresh Mini Shai-Hulud Supply Chain Attack
Grafana Labs Confirms Hackers Stole Source Code
Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential Stealer
Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer Account
Threat Actor Defense Evasion: How Attackers Disable AV & EDR
TanStack weighs invitation-only pull requests after supply chain attack
TanStack Supply Chain Attack (And How to Lock Down GitHub Actions)
TeamPCP releases ‘vibe coded’ Shai-Hulud source code, issues challenge
TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS Updates
OpenAI Hit by TanStack Supply Chain Attack
OpenAI caught in TanStack npm supply chain chaos after employee devices compromised
OpenAI confirms security breach in TanStack supply chain attack
House committee chair calls on Instructure to testify in Canvas hack
Mini Shai-Hulud Hits TanStack npm Packages