mitre-ta0007
152 articles with this tag
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
Passkey-themed social engineering leads to identity and cloud compromise
Passkey-themed social engineering leads to identity and cloud compromise
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities
DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors
BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
Human attacker uses AI agents to breach enterprise network in under 10 hours
Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means
Anatomy of a Silent Domain Takeover
Hackers Start Exploiting Critical Langflow Vulnerability
Fake Cloudflare CAPTCHA tricks victims into opening a tunnel for attackers
China-linked hackers turn Cisco routers into covert attack infrastructure
China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs
Hunting MacSync Stealer infrastructure through behavioral pivots
Aurora ransomware actors leverage AI tool for exploitation campaigns
Siemens S7 Series PLCs and other Internet-exposed PLC Attack
Officials disrupt Chinese espionage operation that hit multiple federal agencies
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations
U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
Frequently asked questions about the active threat to Siemens S7 Series PLCs
Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks
Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices
Iran's Mabna Institute ran a 3-phase spearphishing campaign against university professors for a decade. The 50-page superseding indictment has more methodological detail than the press coverage suggests.
China-Linked Hacker Shows AI Capabilities in APAC Attack
Hunting MacSync Stealer infrastructure through behavioral pivots
New Malware turns Microsoft cloud into its control center
Operation ASTERIX: Anatomy of a Crypto Fraud Pipeline
New macOS malware turns stolen browsers into attacker-controlled sessions
China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud
Novel macOS Infostealer AmnesiaStealer Spread via ClickFix
Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations
AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions
China-linked Jewelbug group conducts espionage and cryptocurrency theft
Taiwan confirms AI-assisted cyberattack on government systems
'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
Armored Likho expands its cyber-espionage toolkit
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan
Hackers Stalked Me by Hijacking a Smartwatch for Kids
Cloud and SaaS Environments Now Top Targets for Attackers
Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled
VU#790363: foreUP golf management platform's web API contains multiple vulnerabilities
Toy Ghouls’ new toy: the GenieLocker ransomware
'Flying Eagle' Full-Service Mobile RAT Builder Wings Across China
Tycoon2FA takedown reshapes the phishing landscape
AgentForger proves AI agents can become persistent insider threats
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage
Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory
Ciblage et compromission d’entités françaises au moyen du mode opératoire d’attaque Turla (13 juillet 2026)
Targeting and Compromise of French Entities Using the Turla Intrusion Set (13 juillet 2026)
Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns
China, India-Linked Hackers Both Targeted Same Pakistani Police Force
Threat actor uses AI-generated malware in network intrusion
AI-Coded Malware | Analyzing Vibe-Coded AD Enumeration | Huntress
'BusySnake' Infostealer Slithers into Critical Infrastructure Networks
ARToken: Inside an EvilTokens affiliate panel targeting Microsoft 365
The Gentlemen are knocking: сustom backdoors and evolving tactics
Chinese Framework Powers 200,000 Scam Sites
Russian APT Deploys ‘StockStay’ Backdoor Against Ukrainian Targets
Google Details Turla's New STOCKSTAY Backdoor Used in Ukraine Espionage Attacks
StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them
StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them
FishMonger’s arsenal upgraded: SprySOCKS for Windows
China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
Chinese Hackers Target Medical, Military, and AI Research in North America
Russian national charged in connection with Void Blizzard cyberespionage campaign
Russian national charged in connection with Void Blizzard espionage campaign
OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt Attack
JDY botnet expands, enabling rapid exploitation of disclosed vulnerabilities
China-linked JDY botnet expands targeting of U.S. military networks
Russian Attackers Weaponize WinRAR Flaw Against Ukrainian Orgs
New Shai-Hulud attack trojanizes 19 science-focused PyPI packages
AI accelerates development of ransomware toolkit with EDR evasion capabilities
Four coordinated npm supply chain campaigns active in May–June 2026 — TTPs, IOCs, and detection notes
A week after Dutch FIOD seized 800+ servers, the hosting network's ASN (AS209847) is still scanning at its normal daily rate
Supply Chain Compromises Impact Nx Console and GitHub Repositories
FBI warns US-based law firms to be on the lookout for cybercrime group that steals data in person
CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries
Tracking Iranian APT Screening Serpens’ 2026 Espionage Campaigns
Paved With Intent: ROADtools and Nation-State Tactics in the Cloud
Storm-2949 actor targets Microsoft 365 and Azure environments
Malaysian government-linked campaign used hidden infrastructure for years
Russian hackers turn Kazuar backdoor into modular P2P botnet
PCPJack Campaign Boots TeamPCP Off Compromised Machines
Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says
Weaver E-cology critical bug exploited in attacks since March
Alleged Chinese hacker extradited to US over cyberattacks targeting COVID-19 research
New BlackFile extortion group linked to surge of vishing attacks
Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
AI-driven attacks target governments, cloud agents, supply chains
North Korean Hackers Use AppleScript, ClickFix in Fresh macOS Attacks
Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circles
Microsoft Teams, Quick Assist weaponized in helpdesk spoofing intrusions
‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty
SOHO router compromise leads to DNS hijacking and adversary-in-the-middle attacks
UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign
Renovate & Dependabot: The New Malware Delivery System
New ‘LucidRook’ malware used in targeted attacks on NGOs, universities