- Virus 2020 -

Virus List -  H  2023  2021  2020  2019  2018  2017


Date

Name

Category

Web

31.12.20

SolarWinds victims revealed after cracking the Sunburst malware DGAVirus

Bleepingcomputer

31.12.20

New SUPERNOVA backdoor found in SolarWinds cyberattack analysisVirus

Bleepingcomputer

31.12.20

Stealthy Magecart malware mistakenly leaks list of hacked storesVirus

Bleepingcomputer

30.12.20

CISA releases a PowerShell-based tool to detect malicious activity in Azure, Microsoft 365

Virus

Securityaffairs

30.12.20

AutoHotkey-Based Password Stealer Targeting US, Canadian Banking Users

Virus

Thehackernews

29.12.20

New Zero-Day, Malware Indicate Second Group May Have Targeted SolarWinds

Virus

Securityweek

28.12.20

SolarWinds releases updated advisory for SUPERNOVA backdoorVirusSecurityaffairs

27.12.20

The Emotet botnet is back and hits 100K recipients per dayBotNet  VirusSecurityaffairs

27.12.20

A New SolarWinds Flaw Likely Had Let Hackers Install SUPERNOVA MalwareVirusThehackernews

24.12.20

Malicious Chrome, Edge extensions with 3M installs still in storesVirus

Bleepingcomputer

24.12.20

FireEye, Microsoft create kill switch for SolarWinds backdoorVirus

Bleepingcomputer

24.12.20

New Windows malware may soon target Linux, macOS devicesVirus

Bleepingcomputer

24.12.20

Hacking group’s new malware abuses Google and Facebook servicesVirus

Bleepingcomputer

23.12.20

Emotet Returns to Hit 100K Mailboxes Per Day

Virus

Threatpost

23.12.20

SUPERNOVA, a backdoor found while investigating SolarWinds hackVirusSecurityaffairs

23.12.20

Threat Actors Increasingly Using VBA Purging in AttacksVirusSecurityweek

21.12.20

A massive fraud operation used mobile device emulators to steal millions from online bank accountsVirusSecurityaffairs

18.12.20

Microsoft: New malware can infect over 30K Windows PCs a day

Virus

Bleepingcomputer

18.12.20

Hackers can use WinZip insecure server connection to drop malware

Virus

Bleepingcomputer

18.12.20

Qbot malware switched to stealthy new Windows autostart method

Virus

Bleepingcomputer

18.12.20

Russian hackers hide Zebrocy malware in virtual disk images

Virus

Bleepingcomputer

18.12.20

Millions of Users Downloaded 28 Malicious Chrome and Edge Extensions

Virus

Securityweek

17.12.20

FireEye, GoDaddy, and Microsoft created a kill switch for SolarWinds backdoor

Virus

Securityaffairs

17.12.20

New Evidence Suggests SolarWinds' Codebase Was Hacked to Inject Backdoor

Virus

Thehackernews

16.12.20

Agent Tesla Keylogger Gets Data Theft and Targeting Update

Virus

Threatpost

16.12.20

PyMICROPSIA Windows malware includes checks for Linux and macOS

Virus

Securityaffairs

16.12.20

Wormable Gitpaste-12 Botnet Returns to Target Linux Servers, IoT Devices

BotNet  Virus

Thehackernews

16.12.20

Nearly 18,000 SolarWinds Customers Installed Backdoored Software

Virus

Thehackernews

15.12.20

Analyzing FireEye Maldocs

Virus

SANS

15.12.20

New Windows Trojan Steals Browser Credentials, Outlook Files

Virus

Threatpost
13.12.20PlayStation Now bugs let sites run malicious code on Windows PCsVirus

Bleepingcomputer

13.12.20Qbot malware switched to stealthy new Windows autostart methodVirus

Bleepingcomputer

13.12.20Credit card stealing malware bundles backdoor for easy reinstallVirus

Bleepingcomputer

13.12.20PlayStation Now bugs let sites run malicious code on Windows PCsVirus

Bleepingcomputer

13.12.20

Credit card stealing malware hides in social media sharing iconsVirus

Bleepingcomputer

13.12.20Hacker-for-hire group develops new stealthy Windows backdoorVirus

Bleepingcomputer

13.12.20

Office 95 Excel 4 Macros

Virus

SANS

12.12.20

Adrozek Malware Delivers Fake Ads to 30K Devices a Day

Virus

Threatpost
12.12.20

Security Issues in PoS Terminals Open Consumers to Fraud

Virus

Threatpost
12.12.20

Adrozek malware silently inject ads into search results in multiple browsers

Virus

Securityaffairs
12.12.20

Watch Out! Adrozek Malware Hijacking Chrome, Firefox, Edge, Yandex Browsers

Virus

Thehackernews
11.12.20

njRAT RAT operators leverage Pastebin C2 tunnels to avoid detection

Virus

Securityaffairs
10.12.20Russian hacking group uses Dropbox to store malware-stolen dataVirus

Bleepingcomputer

10.12.20Malicious NPM packages used to install njRAT remote access trojanVirus

Bleepingcomputer

10.12.20Critical Oracle WebLogic flaw actively exploited by DarkIRC malwareVirus

Bleepingcomputer

5.12.20

Novel Online Shopping Malware Hides in Social-Media Buttons

Virus

Threatpost
4.12.20

The chronicles of Emotet

Virus

Securelist
3.12.20TrickBot Malware Gets UEFI/BIOS Bootkit Feature to Remain UndetectedVirusThehackernews
3.12.20

Recent Oracle WebLogic Vulnerability Exploited to Deliver DarkIRC Malware

Exploit  Virus

Securityweek
2.12.20

Misconfigured Docker Servers Under Attack by Xanthe Malware

Virus

Threatpost
2.12.20

Malicious npm packages spotted delivering njRAT Trojan

Virus

Securityaffairs
1.12.20

Digitally Signed Bandook Trojan Reemerges in Global Spy Campaign

Virus

Threatpost
1.12.20

Exploring malware to bypass DNA screening and lead to ‘biohacking’ attacks

Virus

Securityaffairs
1.12.20

Malware may trick biologists into generating dangerous toxins in their labs

Virus

Net-security

29.11.20

TrickBot malware uses obfuscated Windows batch script to evade detection

Virus

Bleepingcomputer

29.11.20

New WAPDropper malware stealthily subscribes you to premium services

Virus

Bleepingcomputer

27.11.20

Digitally Signed Bandook Malware Once Again Targets Multiple Sectors

Virus

Thehackernews

25.11.20

Watch out, WAPDropper malware could subscribe you to premium services

Virus

Securityaffairs

25.11.20

Stantinko Proxy Trojan Masquerades as Apache Servers

Virus

Securityweek

25.11.20

Blackrota Golang Backdoor Packs Heavy Obfuscation Punch

Virus

Threatpost

24.11.20

TA416 APT Rebounds With New PlugX Malware Variant

Virus

Threatpost

23.11.20

Massive threat campaign strikes open-source repos, Sonatype spots new CursedGrabber malware

Virus

Securityaffairs

23.11.20

Quick Tip: Extracting all VBA Code from a Maldoc - JSON Format

Virus

SANS

22.11.20

Romanians arrested for running underground malware servicesVirusSecurityaffairs

22.11.20

New TroubleGrabber Discord malware steals passwords, system infoVirus

Bleepingcomputer

22.11.20

New Jupyter malware steals browser data, opens backdoorVirus

Bleepingcomputer

22.11.20

ModPipe malware decrypts Oracle point-of-sale database passwordsVirus

Bleepingcomputer

20.11.20

Code42 Incydr Series: Protect IP with Code42 Incydr

Virus

Threatpost

20.11.20

Workshop Today: Threat Hunting With VirusTotal - Black Belt Edition

Virus

Securityweek

20.11.20

Malicious Python Code and LittleSnitch Detection

Virus

SANS

19.11.20

Malicious NPM project steals Discord accounts, browser infoVirus

Bleepingcomputer

19.11.20

Evolution of Emotet: From Banking Trojan to Malware DistributorVirusThehackernews

19.11.20

PowerShell Dropper Delivering Formbook

Virus

SANS

18.11.20

Phishing campaign targets LATAM e-commerce users with Chaes Malware

Phishing  Virus

Securityaffairs

18.11.20

New 'Chaes' Malware Targets Latin American E-Commerce Users

Virus

Securityweek

18.11.20

ThreatList: Pharma Mobile Phishing Attacks Turn to MalwareVirusThreatpost

18.11.20

COVID-19 Antigen Firm Hit by Malware AttackVirusThreatpost

18.11.20

How to speed up malware analysis

Virus

Net-security

17.11.20

Attackers Target Porn Site Goers in ‘Malsmoke’ Zloader AttackVirusSecurityaffairs

16.11.20

Biotech Company Miltenyi Biotec Discloses Malware AttackVirusSecurityweek

16.11.20

Trojanized Security Software Hits South Korea Users in Supply-Chain Attack

BigBrothers  Virus

Thehackernews

16.11.20

New Jupyter information stealer appeared in the threat landscapeVirusSecurityaffairs

14.11.20

New TroubleGrabber malware targets Discord users

Virus

Securityaffairs

13.11.20

Malware activity spikes 128%, Office document phishing skyrockets

Phishing  Virus

Net-security

12.11.20

New modular ModPipe POS Malware targets restaurants and hospitality sectorsVirusSecurityaffairs

12.11.20

New ModPipe Point of Sale (POS) Malware Targeting Restaurants, HotelsVirusThehackernews

12.11.20

Researchers discover POS backdoor targeting the hospitality industry

ICS  Virus

Net-security

11.11.20

Microsoft Teams Users Under Attack in ‘FakeUpdates’ Malware Campaign

Virus

Threatpost

11.11.20

Malicious NPM project steals browser info and Discord accounts

Virus

Securityaffairs

11.11.20

Tetrade hackers target 112 financial apps with Ghimob banking Trojan

Virus

Securityaffairs

10.11.20

Microsoft Exchange Attack Exposes New xHunt Backdoors

Virus

Threatpost

9.11.20

Ghimob: a Tétrade threat actor moves to infect mobile devicesVirusSecurelist

9.11.20

How Attackers Brush Up Their Malicious Scripts

Virus

SANS

7.11.20

Emotet malware wants to invite you to a Halloween partyVirus

Bleepingcomputer

7.11.20

Gitpaste-12 Worm Targets Linux Servers, IoT Devices

IoT  Virus

Threatpost

3.11.20

Malicious npm library removed from the repository due to backdoor capabilitiesVirusSecurityaffairs

3.11.20

Emotet -> Qakbot -> more Emotet

Virus

SANS
1.11.20Emotet campaign used parked domains to deliver malware payloadsVirus

Bleepingcomputer

1.11.20

Emotet operators are running Halloween-themed campaignsVirus

Securityaffairs

31.10.20

Emotet malware now wants you to upgrade Microsoft Word

Virus

Bleepingcomputer

31.10.20

Wroba Mobile Banking Trojan Spreads to the U.S. via Texts

Virus

Threatpost

30.10.20

Browser Bugs Exploited to Install 2 New Backdoors on Targeted Computers

Virus

Thehackernews

30.10.20

Xfinity, McAfee Brands Abused by Parked Domains in Active Campaigns

Virus

Threatpost

26.10.20

Is the Abaddon RAT the first malware using Discord as C&C?

Virus

Securityaffairs

25.10.20New Emotet attacks use a new template urging recipients to upgrade Microsoft WordVirusSecurityaffairs

24.10.20

TrickBot malware under siege from all sides, and it's workingBotNet  VirusBleepingcomputer

24.10.20

Windows GravityRAT malware now also targets Android, macOSVirus

Bleepingcomputer

22.10.20

Watch out for Emotet malware's new 'Windows Update' attachmentVirus

Bleepingcomputer

22.10.20

Hackers now abuse BaseCamp for free malware hostingVirus

Bleepingcomputer

22.10.20

NPM nukes NodeJS malware opening Windows, Linux reverse shellsVirus

Bleepingcomputer

21.10.20

Mobile Browser Bugs Open Safari, Opera Users to Malware

Virus

Threatpost

20.10.20

GravityRAT Comes Back to Earth with Android, macOS Spyware

Virus

Threatpost

20.10.20

Overlay Malware Targets Windows Users with a DLL Hijack Twist

Virus

Threatpost

20.10.20

GravityRAT malware also targets Android and macOS

Virus

Securityaffairs

19.10.20

GravityRAT: The spy returnsVirusSecurelist

19.10.20

New Emotet campaign uses a new ‘Windows Update’ attachmentVirusSecurityaffairs
17.10.20Windows Update can be abused to execute malicious programsVirus

Bleepingcomputer

19.10.20

GravityRAT: The spy returnsVirusSecurelist

19.10.20

New Emotet campaign uses a new ‘Windows Update’ attachmentVirusSecurityaffairs
17.10.20The most common malicious email attachments infecting WindowsVirus

Bleepingcomputer

17.10.20Google boosts malware protection for high-risk accountsVirus

Bleepingcomputer

17.10.20Fitbit gallery can be used to distribute malicious appsVirus

Bleepingcomputer

16.10.20

QQAAZZ Group Charged for Helping Banking Trojan Operators Launder Money

Virus

Securityweek
15.10.20

Germany Searches Premises of Spyware Maker FinFisher

Virus

Securityweek
15.10.20

German authorities raid the offices of the FinFisher surveillance firm

Virus

Securityaffairs
15.10.20

Nicely Obfuscated Python RAT

Virus

SANS
11.10.20Malware campaigns deliver payloads via obscure paste serviceVirus

Bleepingcomputer

11.10.20Hackers abuse Windows error service in fileless malware attackVirus

Bleepingcomputer

11.10.20

Fitbit Spyware Steals Personal Data via Watch Face

Virus

Threatpost
10.10.20HP Device Manager backdoor lets attackers take over Windows systemsVirus

Bleepingcomputer

8.10.20

PoetRAT Resurfaces in Attacks in Azerbaijan Amid Escalating Conflict

Virus

Threatpost
6.10.20

New 'MosaicRegressor' UEFI Bootkit Malware Found Active in the Wild

Virus

Thehackernews
6.10.20

Rare Bootkit Malware Targets North Korea-Linked Diplomats

Virus

Threatpost
6.10.20

Malware Families Turn to Legit Pastebin-Like Service

Virus

Threatpost
6.10.20

SLOTHFULMEDIA RAT, a new weapon in the arsenal of a sophisticated threat actor

Virus

Securityaffairs
6.10.20

Visa Warns of Attack Involving Mix of POS Malware

Attack  Virus

Securityweek

4.10.20

Emotet malware takes part in the 2020 U.S. electionsVirus

Bleepingcomputer

4.10.20

Fake Threema, Telegram apps hide spyware for targeted attacksVirus

Bleepingcomputer

4.10.20

SILENTFADE a long-running malware campaign targeted Facebook AD platformVirusSecurityaffairs
3.10.20Logistics giant CMA CGM goes offline to block malware attackVirus

Bleepingcomputer

3.10.20

LatAm Banking Trojans Collaborate in Never-Before-Seen Effort

Virus

Threatpost
2.10.20Facebook Details Malware Campaign Targeting Its Ad PlatformSocial  VirusSecurityweek
2.10.20Researchers Fingerprint Exploit Developers Who Help Several Malware AuthorsExploit  VirusThehackernews
2.10.20

Emotet Emails Strike Thousands of DNC Volunteers

Virus

Threatpost
29.9.20

Report: Hunting Evasive Malware

Virus

Net-security
28.9.20

PowerShell Backdoor Launched from a ShellCode

Virus

SANS
25.9.20Emotet double blunder: fake ‘Windows 10 Mobile’ and outdated messagesVirus

Bleepingcomputer

25.9.20

Layered security becomes critical as malware attacks rise

Virus

Net-security

24.9.20

Microsoft, Italy and the Netherlands agencies warn of EMOTET campaignsBigBrothers  VirusSecurityaffairs

24.9.20

Party in Ibiza with PowerShell

Virus

SANS

24.9.20

Zerologon Patches Roll Out Beyond Microsoft

Virus

Threatpost
23.9.20

Windows backdoor masquerading as VPN app installer

Virus

Net-security
22.9.20

Fileless Malware Tops Critical Endpoint Threats for 1H 2020

Virus

Threatpost
21.9.20

A look at the top threats inside malicious emails

Virus

Net-security
19.9.20New CDRThief malware steals VoIP metadata from Linux softswitchesVirus

Bleepingcomputer

18.9.20

A Mix of Python & VBA in a Malicious Word Document

Virus

SANS
17.9.20

Source code of Cerberus banking Trojan leaked on underground forums

Virus

Securityaffairs
15.9.20

Traffic Analysis Quiz: Oh No... Another Infection!

Virus

SANS
13.9.20France warns of Emotet attacking companies, administrationBigBrothers  Virus

Bleepingcomputer

11.9.20

New Linux Malware Steals Call Details from VoIP Softswitch Systems

Virus

Thehackernews
11.9.20

CDRThief Malware Targets VoIP Gear in Carrier Networks

Virus

Threatpost
11.9.20

CDRThief Linux malware steals VoIP metadata from Linux softswitches

Virus

Securityaffairs
11.9.20

'CDRThief' Malware Targets Linknat Softswitches

Virus

Securityweek
10.9.20

Spyware Labeled ‘TikTok Pro’ Exploits Fears of US Ban

BigBrothers  Social  Virus

Threatpost
9.9.20

Cybercriminals Are Using Legit Cloud Monitoring Tools As Backdoor

Virus

Thehackernews
8.9.20

Japan, France, New Zealand Warn of Sudden Uptick in Emotet Trojan Attacks

BigBrothers  Virus

Thehackernews
8.9.20

Office: About OLE and ZIP Files

Virus

SANS
6.9.20Epic Fail: Emotet malware uses fake ‘Windows 10 Mobile’ attachmentsVirus

Bleepingcomputer

5.9.20Attackers abuse Google DNS over HTTPS to download malwareVirus

Bleepingcomputer

5.9.20KryptoCibule malware dodges antivirus to steal cryptocurrencyCryptocurrency  Virus

Bleepingcomputer

4.9.20

Evilnum hackers targeting financial firms with a new Python-based RAT

Virus

Thehackernews
4.9.20

A blast from the past - XXEncoded VB6.0 Trojan

Spam  Virus

SANS
4.9.20Emotet malware's new 'Red Dawn' attachment is just as dangerousVirus

Bleepingcomputer

4.9.20

Python-based Spy RAT Emerges to Target FinTech

Virus

Threatpost
3.9.20

Joker Spyware Plagues More Google Play Apps

Android  Virus

Threatpost

3.9.20

Triple-Threat Cryptocurrency RAT Mines, Steals and Harvests

Virus

Threatpost
3.9.20

New KryptoCibule Windows Trojan spreads via malicious torrents

Virus

Securityaffairs
31.8.20

From zero to hero: Zero2Automated malware reverse engineering course

Virus

Bleepingcomputer

31.8.20

Emotet botnet has begun to use a new ‘Red Dawn’ template

BotNet  Virus

Securityaffairs
31.8.20

Malicious npm package ‘fallguys’ removed from the official repository

Virus

Securityaffairs
31.8.20

Finding The Original Maldoc

Virus

SANS

28.8.20

Example of Malicious DLL Injected in PowerShell

Virus

SANS

28.8.20

Malicious Attachments Remain a Cybercriminal Threat Vector Favorite

Spam  Virus

Threatpost

28.8.20

Anubis, a new info-stealing malware spreads in the wild

Virus

Securityaffairs

28.8.20

Microsoft Warns of New 'Anubis' Info-Stealer Distributed in the Wild

Virus

Securityweek

27.8.20

QakBot Banking Trojan Returned With New Sneaky Tricks to Steal Your MoneyVirusThehackernews
26.8.20

DeathStalker cyber-mercenary group targets the financial sector

Virus

Securityaffairs
26.8.20

'Add Photo' Feature on Turkey's Virus App Sparks Alarm

Virus

Securityweek
26.8.20

Malicious Excel Sheet with a NULL VT Score

Virus

SANS
25.8.20Community-provided Amazon Machine Images come with malware riskVirus

Bleepingcomputer

24.8.20

Tracking A Malware Campaign Through VT

Virus

Net-security

24.8.20

A Google Drive weakness could allow attackers to serve malwareVirusSecurityaffairs
24.8.20

Small Challenge: A Simple Word Maldoc - Part 4

Virus

SANS

23.8.20

Duri campaign smuggles malware via HTML and JavaScriptVirus

Bleepingcomputer

22.8.20Emotet malware strikes U.S. businesses with COVID-19 spamVirus

Bleepingcomputer

22.8.20Windows Defender deletes Citrix components mislabeled as malwareVirus

Bleepingcomputer

22.8.20NSA discloses new Russian-made Drovorub malware targeting LinuxBigBrothers  Virus

Bleepingcomputer

22.8.20Mekotio banking trojan imitates update alerts to steal BitcoinVirus

Bleepingcomputer

22.8.20Stealthy RedCurl hackers steal corporate documentsVirus

Bleepingcomputer

22.8.20A Google Drive 'Feature' Could Let Attackers Trick You Into Installing MalwareAttack  VirusThehackernews
22.8.20

Researchers Sound Alarm Over Malicious AWS Community AMIs

Virus

Threatpost

20.8.20

CISA’s MAR warns of North Korean BLINDINGCAN RAT

Virus

Securityaffairs
20.8.20

Ongoing Campaign Uses HTML Smuggling for Malware Delivery

Virus

Securityweek

19.8.20

Researchers Warn of Active Malware Campaign Using HTML Smuggling

Virus

Threatpost
19.8.20

IcedID Trojan Rebooted with New Evasive Tactics

Virus

Threatpost

19.8.20

New Microsoft Defender ATP Capability Blocks Malicious Behaviors

Virus

Securityweek
18.8.20Upgraded Agent Tesla malware steals passwords from browsers, VPNsVirus

Bleepingcomputer

18.8.20

CISA warns of phishing attacks delivering KONNI RAT

Virus

Securityaffairs
17.8.20CISA Warns of Phishing Emails Delivering KONNI MalwareVirusSecurityweek
17.8.20'Vaccine' Kept Emotet Infections Away for Six MonthsVirusSecurityweek
17.8.20Researchers Exploited A Bug in Emotet to Stop the Spread of MalwareVirusThehackernews
16.8.20Hackers can abuse Microsoft Teams updater to install malwareVirus

Bleepingcomputer

16.8.20NodeJS module downloaded 7M times lets hackers inject codeVirus

Bleepingcomputer

16.8.20Newsletter plugin bugs let hackers inject backdoors on 300K sitesVirus

Bleepingcomputer

16.8.20

Small Challenge: A Simple Word Maldoc - Part 3

Virus

SANS
16.8.20

Emotet malware employed in fresh COVID19-themed spam campaign

Virus

Securityaffairs
14.8.20Windows Defender Detected Citrix Services as MalwareVirusSecurityweek
14.8.20New Trials in England for Troubled Virus Tracing AppVirusSecurityweek
14.8.20

Definition of 'overkill' - using 130 MB executable to hide 24 kB malware

Virus

SANS
13.8.20

Agent Tesla includes new password-stealing capabilities from browsers and VPNs

Virus

Securityaffairs
13.8.20

To the Brim at the Gates of Mordor Pt. 1

Virus

SANS

12.8.20Agent Tesla Spyware Adds Fresh Tricks to Its ArsenalVirus

Threatpost

12.8.20Malicious Actor Controlled 23% of Tor Exit NodesVirusSecurityweek
10.8.20Newsletter plugin bugs let hackers inject backdoors on 300K sitesVirus

Bleepingcomputer

10.8.20QNAP urges users to update Malware Remover after QSnatch alertVirus

Bleepingcomputer

10.8.20Linux warning: TrickBot malware is now infecting your systemsVirus

Bleepingcomputer

10.8.20Sneaky Doki Linux malware infiltrates Docker cloud instancesVirus

Bleepingcomputer

10.8.20

Small Challenge: A Simple Word Maldoc - Part 2

Virus

SANS

8.8.20Microsoft now detects CCleaner as a Potentially Unwanted ApplicationVirus

Bleepingcomputer

8.8.20BootHole GRUB bootloader bug lets hackers hide malware in Linux, WindowsVirus

Bleepingcomputer

8.8.20Emotet malware now steals your email attachments to attack contactsVirus

Bleepingcomputer

8.8.20Feature-rich Ensiko malware can encrypt, targets Windows, macOS, LinuxVirus

Bleepingcomputer

8.8.20

UK and US warn QNAP owners to upgrade firmware to block malwareVirus

Bleepingcomputer

6.8.20

A Cyber ‘Vigilante’ is Sabotaging Emotet’s ReturnVirusThreatpost

6.8.20

Hackers can abuse Microsoft Teams updater to deliver malicious payloadsVirusSecurityaffairs

6.8.20

Malware attacks abusing machine identities grew 8x over the last 10 years

Virus

Net-security

4.8.20

QNAP urges users to update Malware Remover after QSnatch joint alertVirusSecurityaffairs

4.8.20

The author of FastPOS PoS malware pleads guiltyVirusSecurityaffairs

31.7.20

WastedLocker: technical analysis

Virus

Securelist

31.7.20

Doki Backdoor Infiltrates Docker Servers in the Cloud

Virus

Threatpost

31.7.20

Facial-Recognition Flop: Face Masks Thwart Virus, Stump Security Systems

Virus

Threatpost

29.7.20

Doki, an undetectable Linux backdoor targets Docker ServersVirusSecurityaffairs

28.7.20

QSnatch malware infected over 62,000 QNAP NAS DevicesVirusSecurityaffairs

28.7.20

US, UK Warn of Malware Targeting QNAP NAS DevicesVirus 

Securityweek

28.7.20

Undetectable Linux Malware Targeting Docker Servers With Exposed APIsVirusThehackernews

28.7.20

QSnatch Data-Stealing Malware Infected Over 62,000 QNAP NAS DevicesVirusThehackernews

28.7.20

62,000 QNAP NAS devices infected with persistent QSnatch malware

Virus

Net-security

28.7.20

Hacker Replaced Emotet Payloads With GIF Images

Virus

Securityweek

26.7.20

Cracking Maldoc VBA Project PasswordsVirusSANS

26.7.20

Emotet malware operation hacked to show memes to victimsVirus

Bleepingcomputer

26.7.20

Threat actors are hijacking the infamous Emotet botnet

BotNet  Virus

Securityaffairs

23.7.20

Twilio exposes SDK, attackers inject it with malvertising codeVirus

Bleepingcomputer

23.7.20

Emotet botnet is now heavily spreading QakBot malwareVirus

Bleepingcomputer

23.7.20

Emotet-TrickBot malware duo is back infecting Windows machinesVirus

Bleepingcomputer

23.7.20

Researchers Disclose New Methods for Replacing Content in Signed PDF FilesVirus

Securityweek

23.7.20

Going Down the Spyware Rabbit Hole with SilkBean Mobile Malware

Virus

Threatpost

23.7.20

REMnux toolkit for malware analysis version 7 released

Virus

Net-security

22.7.20

Diebold ATM Terminals Jackpotted Using Machine’s Own Software

Virus

Threatpost

21.7.20

GReAT thoughts: Awesome IDA Pro pluginsVirusSecurelist

21.7.20

Emotet Resumes Activity After Five Months of SilenceVirus

Securityweek

20.7.20

Tedrade banking malware families target users worldwideVirusSecurityaffairs

20.7.20

Scanning Activity for ZeroShell Unauthenticated Access

Virus

SANS

19.7.20

Emotet botnet surges back after months of absence

Virus

Securityaffairs

16.7.20

New GoldenHelper malware found in official Chinese tax software

Virus

Bleepingcomputer

16.7.20

Malware adds online sandbox detection to evade analysis

Virus

Bleepingcomputer

16.7.20

Brazil’s Banking Trojans Go Global

Virus

Threatpost

16.7.20

LokiBot Redux Attacks Massive List of Common Android Apps

Virus

Threatpost

15.7.20

GReAT Ideas follow-upVirus

Securelist

15.7.20

GoldenHelper, a new malware delivered via Chinese tax softwareVirusSecurityaffairs

15.7.20

'Tetrade' Brazilian Banking Trojans Go InternationalVirus

Securityweek

15.7.20

4 Dangerous Brazilian Banking Trojans Now Trying to Rob Users WorldwideVirusThehackernews

15.7.20

The Tetrade: Brazilian banking malware goes global

Virus

Securelist

15.7.20

Researchers Find More Malware Delivered via Chinese Tax Software

Virus

Securityweek

15.7.20

Word docs with macros for IcedID (Bokbot)

Virus

SANS

14.7.20

The Tetrade: Brazilian banking malware goes globalVirusSecurelist

14.7.20

TrickBot Sample Accidentally Warns Victims They’re InfectedVirusThreatpost

13.7.20

Malware campaign attempts to evade analysis with Any.Run sandboxVirusSecurityaffairs

13.7.20

Backdoors Identified in Tens of C-Data Fiber Broadband DevicesVirus

Securityweek

12.7.20

TrickBot malware mistakenly warns victims that they are infectedVirus

Bleepingcomputer

12.7.20

First look: Microsoft's Project Freta detects Linux malware for freeVirus

Bleepingcomputer

12.7.20

Malwarebytes AdwCleaner now removes malware from the command lineVirus

Bleepingcomputer

12.7.20

GoldenSpy backdoor installed by tax software gets remotely removedVirus

Bleepingcomputer

12.7.20

TrickBot malware now checks screen resolution to evade analysisVirus

Bleepingcomputer

12.7.20

Windows POS malware uses DNS to smuggle stolen credit cardsVirus

Bleepingcomputer

11.7.20

Google Updates Policies to Reject Ads for SpywareVirusSecurityweek

10.7.20

Researchers found allegedly intentional backdoors in FTTH devices from Chinese vendor C-Data

Virus

Securityaffairs

10.7.20

Honeywell Sees Rise in USB-Borne Malware That Can Cause Major ICS DisruptionICS  VirusSecurityweek

9.7.20

Microsoft Seizes Malicious Domains Used in Mass Office 365 AttacksVirusThreatpost
8.7.20New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloaderVirusSecurityaffairs
8.7.20

If You Want Something Done Right, You Have To Do It Yourself... Malware Too!

Virus

SANS

7.7.20BIG-IP Vulnerability Exploited to Deliver DDoS MalwareExploit  Virus  Vulnerebility

Securityweek

7.7.20

Researchers discover how to pinpoint the location of a malicious drone operator

Virus

Net-security
4.7.20Morocco Asks Amnesty for Proof It Used Spyware on JournalistVirus

Securityweek

4.7.20Enterprises in Americas, Europe Targeted With Valak Information StealerVirusSecurityweek
6.20Over 100 New Chrome Browser Extensions Caught Spying On UsersVirusThehackernews
6.20Oh, what a boot-iful mornin’VirusSecurelist
30.5.20Himera and AbSent-Loader Leverage Covid19 luresVirus

Securityaffairs

30.5.20Google Takes Action Against Misleading and Malicious Notifications in ChromeVirus

Securityweek

29.5.20Hacking group builds new Ketrum malware from recycled backdoorsVirus

Bleepingcomputer

29.5.20Russian cyberspies use Gmail to control updated ComRAT malwareBigBrothers  Virus

Bleepingcomputer

29.5.20Octopus Scanner Malware: open source supply chain attack via NetBeans projects on GitHubVirusSecurityaffairs
29.5.20Valak Loader Revamped to Rob Microsoft Exchange ServersVirus

Threatpost

29.5.20Improved Version of Valak Malware Targets Enterprises in US, GermanyVirusSecurityweek
28.5.20Valak a sophisticated malware that completely changed in 6 monthsVirus

Securityaffairs

28.5.20Ke3chang hacking group adds new Ketrum malware to its arsenalVirus

Securityaffairs

28.5.20Grandoreiro Malware implements new features in Q2 2020Virus

Securityaffairs

28.5.20Virus Apps Expose Tension Between Privacy and Need for DataVirus

Securityweek

27.5.20

Chinese Researchers Disrupt Malware Attack That Infected Thousands of PCsVirusThehackernews

27.5.20

Silent Night: A New Malware-as-a-Service Banking Trojan AnalyzedVirusSecurityweek
26.5.20

Malware opens RDP backdoor into Windows systems

Virus

Net-security
26.5.20

New ComRAT Malware Uses Gmail to Receive Commands and Exfiltrate Data

Virus

Thehackernews
26.5.20

Top UN Official Warns Malicious Emails on Rise in Pandemic

Virus

Securityweek
26.5.20

Why building backdoors into encryption won’t make us safer

Virus

Net-security

25.5.20

Zloader Maldoc Analysis With xlm-deobfuscator

Virus

SANS
25.5.20Discord client turned into a password stealer by updated malwareVirus

Bleepingcomputer

24.5.20ZLoader banking malware is back, deployed in over 100 campaignsVirus

Bleepingcomputer

23.5.20New PipeMon malware uses Windows print processors for persistenceVirus

Bleepingcomputer

23.5.20

‘Coronavirus Report’ Emails Spread NetSupport RAT, Microsoft Warns

Virus

Threatpost

23.5.20

AgentTesla Delivered via a Malicious PowerPoint Add-In

Virus

SANS
22.5.20Winnti uses a new PipeMon backdoor in attacks aimed at the gaming industryVirusSecurityaffairs
22.5.20Hackers Can Target Rockwell Industrial Software With Malicious EDS FilesVirusSecurityweek
21.5.20Microsoft warns of 'massive' phishing attack pushing legit RATPhishing  Virus

Bleepingcomputer

21.5.20

Malware Triage with FLOSS: API Calls Based Behavior

Virus

SANS
20.5.20WordPress Malware Targets WooCommerce StoresVirusSecurityweek
17.5.20

QNodeService Trojan spreads via fake COVID-19 tax relief

Virus

Securityaffairs
17.5.20RATicate drops info stealing malware and RATs on industrial targetsVirus

Bleepingcomputer

17.5.20Backdoors in recent espionage attempts link to Microcin malwareVirus

Bleepingcomputer

17.5.20Microsoft Office 365 ATP getting malware campaign analysisVirus

Bleepingcomputer

17.5.20New COMpfun malware variant gets commands from HTTP error codesVirus

Bleepingcomputer

17.5.20New Ramsay malware steals files from air-gapped computersVirus

Bleepingcomputer

16.5.20

RATicate Group Hits Industrial Firms With Revolving Payloads

Virus

Threatpost

15.5.20'Ramsay' Espionage Framework Can Exfiltrate Data From Air-Gapped NetworksVirusSecurityweek
15.5.20HTTP Status Codes Command This Malware How to Control Hacked SystemsVirusThehackernews
15.5.20

Innovative Spy Trojan Targets European Diplomatic Targets

Virus

Threatpost
14.5.20

COMpfun authors spoof visa application with HTTP status-based Trojan

APT  Virus

Securelist
14.5.20

New Ramsay malware allows exfiltrating files from air-gapped computers

Virus

Securityaffairs
14.5.20

Ramsay Malware Targets Air-Gapped Networks

Virus

Threatpost

13.5.20Trojan Lampion is back after 3 monthsVirusSecurityaffairs
13.5.20Researcher Spots New Malware Claimed to be 'Tailored for Air‑Gapped Networks'VirusThehackernews
13.5.20

Malspam with links to zip archives pushes Dridex malware

Spam  Virus

SANS
12.5.20

Sphinx Malware Returns to Riddle U.S. Targets

Virus

Threatpost

12.5.20

Astaroth’s New Evasion Tactics Make It ‘Painful to Analyze’

Virus

Threatpost

12.5.20

Excel 4 Macro Analysis: XLMMacroDeobfuscator

Virus

SANS
11.5.20

STAMINA, a new approach to malware detection by Microsoft, Intel

Virus

Securityaffairs

11.5.20

Railway Vehicle Maker Stadler Hit by Malware Attack

Virus

Securityweek

11.5.20Swiss rail vehicle manufacturer Stadler hit by a malware-based attackVirusSecurityaffairs
11.5.20Microsoft, Intel Introduce 'STAMINA' Approach to Malware DetectionVirus

Securityweek

11.5.20

YARA v4.0.0: BASE64 Strings

Virus

SANS
10.5.20New "Aria-body" backdoor gets advanced hackers back in the spy gameVirus

Bleepingcomputer

8.5.20

H2 2019: Duration of phishing attacks grows, use of banking trojans wanes

Phishing  Virus

Net-security

7.5.20

Brazilian trojan banker is targeting Portuguese users using browser overlayVirus

Securityaffairs

7.5.20

North Korean Hackers Release Mac Variant of Dacls RATVirus

Securityweek

6.5.20

Keeping an Eye on Malicious Files Life Time

Virus

SANS

5.5.20

Kaiji, a new Linux malware targets IoT devices in the wild

Virus

Securityaffairs
5.5.20

Microsoft spotted multiple malspam campaigns using malware-laced ISO and IMG files

Spam  Virus

Securityaffairs
5.5.20

Most Malicious Coronavirus-Related Domains Located in U.S.

Virus

Securityweek
4.5.20New Malware Jumps Air-Gapped Devices by Turning Power-Supplies into SpeakersAttack  VirusThehackernews

4.5.20

ZIP & AES

Virus

SANS

2.5.20

Asnarök malware exploits firewall zero-day to steal credentialsExploit  Virus

Bleepingcomputer

2.5.20

Upgraded Cerberus Spyware Spreads Rapidly via MDMVirus

Threatpost

1.5.20

Crooks spread malware via pirated movies during COVID-19 outbreakVirusSecurityaffairs

28.4.20

Agent Tesla delivered by the same phishing campaign for over a year

Phishing  Virus

SANS

27.4.20Malware Delivered to Sophos Firewalls via Zero-Day VulnerabilityVirus  VulnerebilitySecurityweek
26.4.20

Video: Malformed .docm File

Virus

SANS
26.4.20BazarBackdoor: TrickBot gang’s new stealthy network-hacking malwareVirus

Bleepingcomputer

26.4.20US universities targeted with malware used by state-backed actorsVirus

Bleepingcomputer

26.4.20Customer complaint phishing pushes network hacking malwarePhishing  Virus

Bleepingcomputer

26.4.20

MALWARE Bazaar

Virus

SANS
26.4.20Bad actor sells Huiying Medical Technology’s source code for AI-assisted COVID-19 detectionVirusSecurityaffairs
25.4.20Revive ad servers being hacked to distribute malicious adsVirus

Bleepingcomputer

25.4.20New Coronavirus screenlocker malware is extremely annoyingVirus

Bleepingcomputer

24.4.20

Malicious Excel With a Strong Obfuscation and Sandbox Evasion

Virus

SANS
23.4.20A look at the ATM/PoS malware landscape from 2017-2019VirusSecurelist
23.4.20State-sponsored hackers are using COVID-19 lures, Google warnsVirusSecurityaffairs
23.4.20

Web shell malware continues to evade many security tools

Virus

Net-security

22.4.20Oil and Gas Firms Targeted With Agent Tesla SpywareVirusThreatpost
22.4.20Oil and Gas Companies Targeted With Agent Tesla MalwareVirusSecurityweek
22.4.20

Odix is disarming the growing malware threat

Virus

Net-security

20.4.20

LED Light Control Console Abused to Spew MalwareVirusSecurityweek

19.4.20

KPOT Analysis: Obtaining the Decrypted KPOT EXE

Virus

SANS

19.4.20

Coronavirus-themed campaign targets energy sector with PoetRAT

Virus

Securityaffairs
19.4.20

Trickbot is the most prolific malware operation using COVID-19 themed lures

BotNet  Virus

Securityaffairs
19.4.20Fake Valorant beta key generators are stealing gamers' passwordsVirus

Bleepingcomputer

19.4.20Hackers steal WiFi passwords using upgraded Agent Tesla malwareVirus

Bleepingcomputer

18.4.20

A Brand New Ursnif/ISFB Campaign Targets Italian OrganizationsVirusSecurityaffairs

18.4.20

Google Sees Millions of COVID-19-Related Malicious Emails DailyVirusSecurityweek

17.4.20

760+ malicious packages found typosquatting on RubyGems

Virus

Net-security

17.4.20

Shipping giant MSC discloses a malware-based attackAttack  VirusSecurityaffairs

16.4.20

Shipping Giant MSC Confirms Outage Caused by Malware AttackVirusSecurityweek
16.4.20Over 700 Malicious Typosquatted Libraries Found On RubyGems RepositoryVirusThehackernews
16.4.20Taxpayers Targeted With Improved NetWire RAT VariantVirusThreatpost

15.4.20

No IOCs? No Problem! Getting a Start Hunting for Malicious Office Files

Virus

SANS
14.4.20

Overlay Malware Leverages Chrome Browser, Targets Banks and Heads to Spain

Virus

Threatpost

13.4.20

Reader Analysis: "Dynamic analysis technique to get decrypted KPOT Malware."

Virus

SANS

12.4.20New Wiper Malware impersonates security researchers as prankVirus

Bleepingcomputer

12.4.20Microsoft: No surge in malicious attacks, only more COVID-19 luresVirus

Bleepingcomputer

11.4.20

PSA: Fake Zoom installers being used to distribute malwareVirus

Bleepingcomputer

11.4.20

WooCommerce Falls to Fresh Card-Skimmer Malware

Virus

Threatpost

10.4.20

Copycat Site Serves Up Raccoon Stealer

Virus

Threatpost
9.4.20

PowerPoint ‘Weakness’ Opens Door to Malicious Mouse-Over Attack

Virus

Threatpost

8.4.20

German malspam pushes ZLoader malware

Spam  Virus

SANS
7.4.20

Spotting and blacklisting malicious COVID-19-themed sites

Virus

Net-security

7.4.20

Unkillable xHelper and a Trojan matryoshka

Virus

Securelist
6.4.20YARA webinar follow upVirusSecurelist
5.4.20Discord Turned Into an Account Stealer by Updated MalwareVirus

Bleepingcomputer

5.4.20Microsoft: Emotet Took Down a Network by Overheating All ComputersVirus

Bleepingcomputer

5.4.20New Coronavirus-Themed Malware Locks You Out of WindowsVirus

Bleepingcomputer

5.4.20Hacker Group Backdoors Thousands of Microsoft SQL Servers DailyVirus

Bleepingcomputer

5.4.20

New Bypass Technique or Corrupt Word Document?

Virus

SANS
5.4.20

Microsoft’s case study: Emotet took down an entire network in just 8 days

Virus

Securityaffairs
4.4.20Banking Malware Spreading via COVID-19 Relief Payment PhishingPhishing  Virus

Bleepingcomputer

4.4.20Hackers Take Advantage of Zoom's Popularity to Push MalwareVirus

Bleepingcomputer

4.4.20lf-Propagating Malware Targets Thousands of Docker Ports Per DayVirus

Threatpost

3.4.20

Obfuscated with a Simple 0x0A

Virus

SANS

2.4.20

Loncom packer: from backdoors to Cobalt StrikeVirusSecurelist
2.4.20New COVID19 wiper overwrites MBR making computers unusableVirusSecurityaffairs
2.4.20Coronavirus Malware Makes Devices Unusable by Overwriting MBRVirusSecurityweek
2.4.20Wiper Malware Called “Coronavirus” Spreads Among Windows VictimsVirusThreatpost
2.4.20Trojanized Zoom Apps Target Remote WorkersVirusSecurityweek
1.4.20New Raccoon Stealer uses Google Cloud Services to evade detectionVirusSecurityaffairs

1.4.20

LimeRAT malware delivered using 8-year-old VelvetSweatshop trickVirusSecurityaffairs

1.4.20

WARNING: Hackers Install Secret Backdoor on Thousands of Microsoft SQL ServersVirusThehackernews
1.4.208-Year-Old VelvetSweatshop Bug Resurrected in LimeRAT CampaignVirus

Threatpost

31.3.20

Zeus Sphinx Banking Trojan Arises Amid COVID-1

Virus

Threatpost

31.3.20

Crooks leverage Zoom’s popularity in Coronavirus outbreak to serve malware

Virus

Securityaffairs

31.3.20

Corporate Workers Warned of 'COVID-19 Payment' Emails Delivering Banking Trojan

Virus

Securityweek

30.3.20

Your colleague was infected with Coronavirus, this is the latest phishing lure

Phishing  Virus

Securityaffairs

30.3.20

COVID-19: Hackers Begin Exploiting Zoom's Overnight Success to Spread Malware

Exploit  Virus

Thehackernews

29.3.20

WordPress Malware Distributed via Pirated Coronavirus PluginsVirus

Bleepingcomputer

29.3.20

Malware Disguised as Google Updates Pushed via Hacked News SitesVirus

Bleepingcomputer

28.3.20

Ginp Mobile Banker Targets Spain with "Coronavirus Finder" LureVirus

Bleepingcomputer

28.3.20

Unknown Hackers Use New Milum RAT in WildPressure CampaignVirus

Bleepingcomputer

28.3.20

Fake Corona Antivirus Software Used to Install Backdoor MalwareVirus

Bleepingcomputer

28.3.20

Hackers Hijack Routers’ DNS to Spread Malicious COVID-19 AppsVirus

Bleepingcomputer

28.3.20

HHS.gov Open Redirect Used by Coronavirus Phishing to Spread MalwarePhishing  Virus

Bleepingcomputer

27.3.20

Malicious JavaScript Dropping Payload in the Registry

Virus

SANS

26.3.20Hackers hijack D-Link and Linksys routers to point users to coronavirus-themed sites serving malwareVirusSecurityaffairs
26.3.20WordPress WP-VCD malware delivered via pirated Coronavirus pluginsVirusSecurityaffairs
26.3.20

Very Large Sample as Evasion Technique?

Virus

SANS

26.3.20

Evasive malware increasing, evading signature-based antivirus solutions

Virus

Net-security

25.3.20Fake Coronavirus Finder spread Ginp Mobile BankerVirusSecurityaffairs
4.4.20Hackers Take Advantage of Zoom's Popularity to Push MalwareVirus

Bleepingcomputer

4.4.20lf-Propagating Malware Targets Thousands of Docker Ports Per DayVirus

Threatpost

3.4.20

Obfuscated with a Simple 0x0A

Virus

SANS

2.4.20

Loncom packer: from backdoors to Cobalt StrikeVirusSecurelist
2.4.20New COVID19 wiper overwrites MBR making computers unusableVirusSecurityaffairs
2.4.20Coronavirus Malware Makes Devices Unusable by Overwriting MBRVirusSecurityweek
2.4.20Wiper Malware Called “Coronavirus” Spreads Among Windows VictimsVirusThreatpost
2.4.20Trojanized Zoom Apps Target Remote WorkersVirusSecurityweek
1.4.20New Raccoon Stealer uses Google Cloud Services to evade detectionVirusSecurityaffairs

1.4.20

LimeRAT malware delivered using 8-year-old VelvetSweatshop trickVirusSecurityaffairs

1.4.20

WARNING: Hackers Install Secret Backdoor on Thousands of Microsoft SQL ServersVirusThehackernews
1.4.208-Year-Old VelvetSweatshop Bug Resurrected in LimeRAT CampaignVirus

Threatpost

31.3.20

Zeus Sphinx Banking Trojan Arises Amid COVID-1

Virus

Threatpost

31.3.20

Crooks leverage Zoom’s popularity in Coronavirus outbreak to serve malware

Virus

Securityaffairs

31.3.20

Corporate Workers Warned of 'COVID-19 Payment' Emails Delivering Banking Trojan

Virus

Securityweek

30.3.20

Your colleague was infected with Coronavirus, this is the latest phishing lure

Phishing  Virus

Securityaffairs

30.3.20

COVID-19: Hackers Begin Exploiting Zoom's Overnight Success to Spread Malware

Exploit  Virus

Thehackernews

29.3.20

WordPress Malware Distributed via Pirated Coronavirus PluginsVirus

Bleepingcomputer

29.3.20

Malware Disguised as Google Updates Pushed via Hacked News SitesVirus

Bleepingcomputer

28.3.20

Ginp Mobile Banker Targets Spain with "Coronavirus Finder" LureVirus

Bleepingcomputer

28.3.20

Unknown Hackers Use New Milum RAT in WildPressure CampaignVirus

Bleepingcomputer

28.3.20

Fake Corona Antivirus Software Used to Install Backdoor MalwareVirus

Bleepingcomputer

28.3.20

Hackers Hijack Routers’ DNS to Spread Malicious COVID-19 AppsVirus

Bleepingcomputer

28.3.20

HHS.gov Open Redirect Used by Coronavirus Phishing to Spread MalwarePhishing  Virus

Bleepingcomputer

27.3.20

Malicious JavaScript Dropping Payload in the Registry

Virus

SANS

26.3.20Hackers hijack D-Link and Linksys routers to point users to coronavirus-themed sites serving malwareVirusSecurityaffairs
26.3.20WordPress WP-VCD malware delivered via pirated Coronavirus pluginsVirusSecurityaffairs
26.3.20

Very Large Sample as Evasion Technique?

Virus

SANS

26.3.20

Evasive malware increasing, evading signature-based antivirus solutions

Virus

Net-security

25.3.20Fake Coronavirus Finder spread Ginp Mobile BankerVirusSecurityaffairs
25.3.20TrickBot Mobile App Bypasses 2‐Factor Authentication for Net Banking ServicesBotNet  VirusThehackernews
25.3.20

Unknown ‘WildPressure’ Malware Campaign Lets Off Steam in Middle East

Virus

Threatpost
25.3.20

Recent Dridex activity

Virus

SANS

24.3.20

Hackers try to breach WHO, other COVID-19-fighting orgs

Virus

Net-security
24.3.20MalwareBazaar – welcome to the abuse-ch malware repositoryVirusSecurityaffairs
24.3.20

Fake Coronavirus ‘Vaccine’ Website Busted in DoJ Takedown

Virus

Threatpost

24.3.20

Abuse.ch Launches Free Malware Repository

Virus

Securityweek
24.3.20

Python backdoor attacks and how to prevent them

Attack  Virus

Net-security

23.3.20

Coronavirus-themed attacks March 15 – March 21, 2020

Virus

Securityaffairs

23.3.20

More COVID-19 Themed Malware

Virus

SANS

22.3.20

Extortion Emails Threaten to Infect Your Family With CoronavirusSpam  Virus

Bleepingcomputer

22.3.20

WHO Chief Impersonated in Phishing to Deliver HawkEye MalwarePhishing  Virus

Bleepingcomputer

22.3.20

RedLine Info-Stealing Malware Spread by Folding@home PhishingPhishing  Virus

Bleepingcomputer

22.3.20

Hackers Hide Malware C2 Communication By Faking News Site TrafficVirus

Bleepingcomputer

22.3.20

Trickbot, Emotet Malware Use Coronavirus News to Evade DetectionVirus

Bleepingcomputer

21.3.20

Nation-Backed Hackers Spread Crimson RAT via Coronavirus PhishingSpam  Virus

Bleepingcomputer

21.3.20

Revamped HawkEye Keylogger Swoops in on Coronavirus Fears

Virus

Threatpost

20.3.20

Experts found a new TrickBot module (rdpScanDll) built for RDP bruteforcing operationsVirusSecurityaffairs

20.3.20

RDP-Capable TrickBot Targets Telecoms Sectors in U.S. and Hong KongVirusSecurityweek

19.3.20

Coronavirus news used by Emotet and Trickbot to evade detectionVirusSecurityaffairs

19.3.20

TrickBot Trojan Adds RDP Brute-Forcing to Its Arsenal

Virus

Threatpost

19.3.20

Thousands of Coronavirus-related malicious domains are being created every day

Virus

Securityaffairs

19.3.20

COVID-19 Themed Multistage Malware

Virus

SANS

18.3.20

Hackers Crated Thousands of Coronavirus (COVID-19) Related Sites As Bait

Virus

Thehackernews

18.3.20

TrickBot Now Exploits Infected PCs to Launch RDP Brute Force Attacks

Attack  Exploit  Virus

Thehackernews

18.3.20

A COVID-19 Cybersecurity Poll: Securing a Remote WorkforceVirus

Threatpost

18.3.20

Ursnif campaign targets Italy with a new infection ChainSpam  VirusSecurityaffairs

18.3.20

Trickbot gtag red5 distributed as a DLL file

Spam  Virus

SANS

18.3.20

Healthcare cybersecurity in the time of coronaviru

Cyber  Virus

Net-security

16.3.20

MonitorMinor: vicious stalkerwareVirusSecurelist

16.3.20

Many Backdoors Found in Zyxel CloudCNM SecuManager SoftwareVirusSecurityweek

16.3.20

BlackWater, a malware that uses Cloudflare Workers for C2 CommunicationVirusSecurityaffairs

15.3.20

List of Free Software and Services During Coronavirus OutbreakVirus

Bleepingcomputer

15.3.20

BlackWater Malware Abuses Cloudflare Workers for C2 CommunicationVirus

Bleepingcomputer

15.3.20WordPress Plugin Bug Allows Malicious Code Injection on 100K SitesVirus

Bleepingcomputer

15.3.20Discord Offers Enhanced Go Live Streaming Due to CoronavirusVirus

Bleepingcomputer

15.3.20Advanced Russian Hackers Use New Malware in Watering Hole OperationVirus

Bleepingcomputer

15.3.20Windows Registry Helps Find Malicious Docs Behind InfectionsVirus

Bleepingcomputer

14.3.20Malware Unfazed by Google Chrome's New Password, Cookie EncryptionVirus

Bleepingcomputer

14.3.20Malware Spread as Nude Extortion Pics of Friend's GirlfriendVirus

Bleepingcomputer

12.3.20Crooks use weaponized coronavirus map to deliver malwareVirusSecurityaffairs
12.3.20Wormable, Unpatched Microsoft Bug Threatens Corporate LANsVirus  Vulnerebility

Threatpost

12.3.20New TrickBot Variant Updates Anti-Analysis TricksBotNet  Virus

Threatpost

11.3.20

Beware of 'Coronavirus Maps' – It's a malware infecting PCs to steal passwords

Virus

Thehackernews
11.3.20

Coronavirus as an opportunity to evolve security architecture

Virus

Net-security

10.3.20

Hackers are getting hacked via trojanized hacking tools

Virus

Net-security
10.3.20

Malicious Spreadsheet With Data Connection and Excel 4 Macros

Spam  Virus

SANS
9.3.20New Coronavirus-themed malspam campaign delivers FormBook MalwareSpam  VirusSecurityaffairs
8.3.20Data-Stealing FormBook Malware Preys on Coronavirus FearsVirus

Bleepingcomputer

8.3.20Emotet Actively Using Upgraded WiFi Spreader to Infect VictimsVirus

Bleepingcomputer

8.3.20TrickBot Malware Targets Italy in Fake WHO Coronavirus EmailsVirus

Bleepingcomputer

8.3.20Attackers Deliver Malware via Fake Website Certificate ErrorsVirus

Bleepingcomputer

8.3.20Zero-Day Bug Allowed Attackers to Register Malicious DomainsVulnerebility  Virus

Bleepingcomputer

7.3.20

New Evasion Encyclopedia Shows How Malware Detects Virtual MachinesVirus

Bleepingcomputer

7.3.20

Spread of Coronavirus-Themed Cyberattacks Persists with New AttacksAttack  Virus

Threatpost

6.3.20

TrickBot targets Italy using fake WHO Coronavirus emails as baitSpam  VirusSecurityaffairs
6.3.20Malware campaign employs fake security certificate updatesVirus

Threatpost

5.3.20

Fake alerts about outdated security certificates lead to malware

Virus

Net-security
5.3.20

Vulnerability allows attackers to register malicious lookalikes of legitimate web domains

Vulnerebility  Virus

Net-security

4.3.20Cobalt Ulster Strikes Again With New ForeLord MalwareVirusThreatpost
3.3.20TrickBot Adds ActiveX Control, Hides Dropper in ImagesVirus

Threatpost

3.3.20NetSupport Manager RAT Spread via Bogus NortonLifeLock DocsVirus

Threatpost

3.3.20Checkpoint Creates Encyclopedia of Malware Evasion TechniquesVirusSecurityweek

1.3.20

Hackers Use Windows 10 RDP ActiveX Control to Run TrickBot DropperVirus

Bleepingcomputer

1.3.20As Coronavirus Spreads, So Does Covid-19 Themed MalwareVirus

Bleepingcomputer

1.3.20Norton LifeLock Phishing Scam Installs Remote Access TrojanPhishing  Virus

Bleepingcomputer

29.2.20

New Mozart Malware Gets Commands, Hides Traffic Using DNSVirus

Bleepingcomputer

29.2.20

Racoon Malware Steals Your Data From Nearly 60 AppsVirus

Bleepingcomputer

28.2.20

Lampion malware origin servers geolocated in TurkeyVirusSecurityaffairs

27.2.20

Data on Detection of Malicious Documents in Gmail are impressiveVirusSecurityaffairs

27.2.20

Modern malware is increasingly leveraging evasive behaviors

Virus

Net-security

26.2.20

Google Boosts Detection of Malicious Documents in GmailVirusSecurityweek

26.2.20

New Cyber Attack Campaign Leverages the COVID-19 Infodemic

Virus

Securityaffairs

26.2.20

Fbot re-emerged, the backstage

Virus

Securityaffairs

25.2.20

South Korea suffers from the spread of people infected with Corona 19VirusSecurityaffairs

25.2.20

Lampion malware v2 February 2020

Virus

Securityaffairs

25.2.20

Raccoon Malware, a success case in the cybercrime ecosystem

Virus

Securityaffairs

24.2.20

ISS reveals malware attack impacted parts of the IT environmentVirusSecurityaffairs

24.2.20

ObliqueRAT, a new malware employed in attacks on government targets in Southeast AsiaVirusSecurityaffairs

24.2.20

Maldoc: Excel 4 Macros in OOXML Format

Virus

SANS

23.2.20

Over 20,000 WordPress Sites Run Trojanized Premium ThemesVirus

Bleepingcomputer

23.2.20

Simple but Efficient VBScript Obfuscation

Virus

SANS
22.2.20AZORult Malware Infects Victims via Fake ProtonVPN InstallerVirus

Bleepingcomputer

22.2.20Hacker Group Catfishes Israeli Soldiers Into Installing Mobile RATBigBrothers  Virus

Bleepingcomputer

22.2.20

ISS World Hit with Malware Attack that Shuts Down Global Computer Network

Virus

Threatpost

22.2.20Malware Attack Takes ISS World's Systems OfflineVirusSecurityweek
21.2.20FireEye Spotted Over 500 New Malware Families in 2019VirusSecurityweek
21.2.2020,000 WordPress Websites Infected via Trojanized ThemesVirusSecurityweek

20.2.20

SMS Attack Spreads Emotet, Steals Bank Credentials

Mobil  Virus

Threatpost

4.3.20Cobalt Ulster Strikes Again With New ForeLord MalwareVirusThreatpost
3.3.20TrickBot Adds ActiveX Control, Hides Dropper in ImagesVirus

Threatpost

3.3.20NetSupport Manager RAT Spread via Bogus NortonLifeLock DocsVirus

Threatpost

3.3.20Checkpoint Creates Encyclopedia of Malware Evasion TechniquesVirusSecurityweek

1.3.20

Hackers Use Windows 10 RDP ActiveX Control to Run TrickBot DropperVirus

Bleepingcomputer

1.3.20As Coronavirus Spreads, So Does Covid-19 Themed MalwareVirus

Bleepingcomputer

1.3.20Norton LifeLock Phishing Scam Installs Remote Access TrojanPhishing  Virus

Bleepingcomputer

29.2.20

New Mozart Malware Gets Commands, Hides Traffic Using DNSVirus

Bleepingcomputer

29.2.20

Racoon Malware Steals Your Data From Nearly 60 AppsVirus

Bleepingcomputer

28.2.20

Lampion malware origin servers geolocated in TurkeyVirusSecurityaffairs

27.2.20

Data on Detection of Malicious Documents in Gmail are impressiveVirusSecurityaffairs

27.2.20

Modern malware is increasingly leveraging evasive behaviors

Virus

Net-security

26.2.20

Google Boosts Detection of Malicious Documents in GmailVirusSecurityweek

26.2.20

New Cyber Attack Campaign Leverages the COVID-19 Infodemic

Virus

Securityaffairs

26.2.20

Fbot re-emerged, the backstage

Virus

Securityaffairs

25.2.20

South Korea suffers from the spread of people infected with Corona 19VirusSecurityaffairs

25.2.20

Lampion malware v2 February 2020

Virus

Securityaffairs

25.2.20

Raccoon Malware, a success case in the cybercrime ecosystem

Virus

Securityaffairs

24.2.20

ISS reveals malware attack impacted parts of the IT environmentVirusSecurityaffairs

24.2.20

ObliqueRAT, a new malware employed in attacks on government targets in Southeast AsiaVirusSecurityaffairs

24.2.20

Maldoc: Excel 4 Macros in OOXML Format

Virus

SANS

23.2.20

Over 20,000 WordPress Sites Run Trojanized Premium ThemesVirus

Bleepingcomputer

23.2.20

Simple but Efficient VBScript Obfuscation

Virus

SANS
22.2.20AZORult Malware Infects Victims via Fake ProtonVPN InstallerVirus

Bleepingcomputer

22.2.20Hacker Group Catfishes Israeli Soldiers Into Installing Mobile RATBigBrothers  Virus

Bleepingcomputer

22.2.20

ISS World Hit with Malware Attack that Shuts Down Global Computer Network

Virus

Threatpost

22.2.20Malware Attack Takes ISS World's Systems OfflineVirusSecurityweek
21.2.20FireEye Spotted Over 500 New Malware Families in 2019VirusSecurityweek
21.2.2020,000 WordPress Websites Infected via Trojanized ThemesVirusSecurityweek

20.2.20

SMS Attack Spreads Emotet, Steals Bank Credentials

Mobil  Virus

Threatpost

19.2.20Rise in Malware Using Encryption Shows Importance of Network Traffic InspectionVirusSecurityweek
19.2.20

Researchers observed a 125% increase in malware targeting Windows 7

Analysis  Virus

Net-security
18.2.20AZORult spreads as a fake ProtonVPN installerVirusSecurelist
16.2.20Tech Conferences in Asia On Hold Due To Coronavirus OutbreakVirus

Bleepingcomputer

16.2.20U.S. Store Chain Rutter’s Hit by Credit Card Stealing MalwareVirus

Bleepingcomputer

16.2.20Parallax RAT: Common Malware Payload After Hacker Forums PromotionVirus

Bleepingcomputer

16.2.20Sextortion Emails Sent by Emotet Earn 10 Times More Than NecursVirus

Bleepingcomputer

16.2.20Microsoft Urges Exchange Admins to Disable SMBv1 to Block MalwareSafety  Virus

Bleepingcomputer

16.2.20Office 365 Users Get Automated Protection From Malicious DocsVirus

Bleepingcomputer

15.2.20

500 Malicious Chrome Extensions Impact Millions of Users

Virus

Threatpost

14.2.20PoS malware infected systems at 71 locations operated by US store chain Rutter’sVirusSecurityaffairs
14.2.20New Backdoor Attacks Leverage Political Turmoil in Middle EastVirusSecurityweek

13.2.20

Emotet Malware Now Hacks Nearby Wi-Fi Networks to Infect New VictimsVirusThehackernews

12.2.20

KBOT Malware Shows Viruses Are Not ExtinctVirusSecurityweek

12.2.20

Emotet Malware Now Hacks Nearby Wi-Fi Networks to Infect New VictimsVirusSecurityweek

12.2.20

Coronavirus-Themed Emails Deliver Malware, Phishing, ScamsPhishing  Spam  VirusSecurityweek

12.2.20

Emotet: Crimeware you need to be aware of

Virus

Net-security
11.2.20Echobot Malware Drives Significant Increase in OT AttacksVirusSecurityweek
11.2.20Emotet Now Hacks Nearby Wi-Fi Networks to Spread Like a WormVirus

Threatpost

11.2.20Docker Registries Expose Hundreds of Orgs to Malware, Data TheftIncindent  Virus

Threatpost

10.2.20KBOT: sometimes they come backVirusSecurelist
9.2.20Emotet Hacks Nearby Wi-Fi Networks to Spread to New VictimsVirus

Bleepingcomputer

9.2.20Oscar Nominated Movies Featured in Phishing, Malware AttacksPhishing  Virus

Bleepingcomputer

9.2.20Bitbucket Abused to Infect 500,000+ Hosts with Malware CocktailVirus

Bleepingcomputer

9.2.20Emotet Gets Ready for Tax Season With Malicious W-9 FormsVirus

Bleepingcomputer

8.2.20New EmoCheck Tool Checks if You're Infected With EmotetVirus

Bleepingcomputer

8.2.20IoT Devices at Major Manufacturers Infected With Malware via Supply Chain AttackAttack  IoT  VirusSecurityweek
7.2.20

Sandbox Detection Tricks & Nice Obfuscation in a Single VBScript

Virus

SANS

7.2.20Metamorfo Returns with Keylogger Trick to Target Financial FirmsVirus

Threatpost

6.2.20

New Campaign Leverages BitBucket to Deliver Arsenal of MalwareVirusSecurityweek

6.2.20

Emotet can spread to poorly secured Wi-Fi networks and computers on them

Virus

Net-security

6.2.20

CamuBot Banking Trojan Returns In Targeted Attacks

Attack  Virus

Threatpost

6.2.20

New Lemon Duck Malware Campaign Targets IoT, Large Manufacturers

IoT  Virus

Threatpost

6.2.20

WhatsApp Bug Allows Malicious Code-Injection, One-Click RCE

Social  Virus

Threatpost
5.2.20Hackers abuse BitBucket to infect 500K+ hosts with arsenal of malwareVirusSecurityaffairs
5.2.20

Malware and ransomware attack volume down due to more targeted attacks

Ransomware  Virus

Net-security

4.2.20

AZORult Campaign Adopts Novel Triple-Encryption Technique

Virus

Threatpost

3.2.20Microsoft warns TA505 changed tactic in an ongoing malware campaignVirusSecurityaffairs
3.2.20Chinese Hackers Target Hong Kong Universities With New Backdoor VariantBigBrothers  VirusSecurityweek
3.2.20

Analysis of a triple-encrypted AZORult downloader

Virus

SANS

2.2.20Winnti Group Infected Hong Kong Universities With MalwareVirus

Bleepingcomputer

2.2.20Microsoft Detects New TA505 Malware Attacks After Short BreakVirus

Bleepingcomputer

2.2.20The Adware Families That Changed the Antivirus IndustryVirus

Bleepingcomputer

2.2.20Malware Tries to Trump Security Software With POTUS ImpeachmentBigBrothers  Virus

Bleepingcomputer

2.2.20Emotet Uses Coronavirus Scare to Infect Japanese TargetsVirus

Bleepingcomputer

2.2.20Crooks start exploiting Coronavirus as bait to spread malwareVirusSecurityaffairs
1.2.20First MageCart Hackers Caught, Infected Hundreds of Web StoresCyberCrime  Virus

Bleepingcomputer

1.2.20

Evil Corp Returns With New Malware Infection Tactic

Virus

Threatpost

1.2.20

Iranian Hackers Target U.S. Gov. Vendor With Malware

BigBrothers  Virus

Threatpost

31.1.20

Coronavirus Campaigns Spread Emotet, Malware

Spam  Virus

Threatpost

31.1.20

Report: Threat of Emotet and RyukRansomware  Virus

Securityaffairs

28.1.20

Emotet epoch 1 infection with Trickbot gtag mor84

BotNet  Virus

SANS

27.1.20

Mozilla banned hundreds of malicious Firefox add-ons over the last weeks

Virus

Securityaffairs

25.1.20Emotet Malware Dabbles in Extortion With New Spam TemplateSpam  Virus

Bleepingcomputer

25.1.20NK CARROTBALL dropper used in attacks on U.S. Govn AgencyBigBrothers  VirusSecurityaffairs
24.1.20Iran-Linked PupyRAT backdoor used in recent attacks on European energy sectorVirusSecurityaffairs
23.1.20Iran-Linked RAT Used in Recent Attacks on European Energy SectorBigBrothers  VirusSecurityweek
23.1.20

sLoad Malware Revamped as Powerful ‘StarsLord’ Loader

Virus

Threatpost

23.1.20

Complex Obfuscation VS Simple Trick

Virus

SANS

22.1.20

Malware attack took down 600 computers at Volusia County Public Library

Virus

Securityaffairs
20.1.20JhoneRAT uses Google Drive, Twitter, ImgBB, and Google Forms to target countries in Middle EastVirusSecurityaffairs
20.1.20Hackers patch Citrix servers to deploy their own backdoorVirusSecurityaffairs
19.1.20How Malware Gains Trust by Abusing the Windows CryptoAPI FlawVulnerebility  Virus

Bleepingcomputer

19.1.20United Nations Targeted With Emotet Malware Phishing AttackPhishing  Virus

Bleepingcomputer

19.1.20Emotet Malware Restarts Spam Attacks After Holiday BreakSpam  Virus

Bleepingcomputer

18.1.20

New JhoneRAT Malware Targets Middle EastVirus

Threatpost

16.1.20U.N. Weathers Storm of Emotet-TrickBot MalwareBigBrothers  BotNet  Virus

Threatpost

16.1.20

Oski Data-Stealing Malware Emerges to Target North America, ChinaVirusThreatpost

16.1.20

Picks of 2019 malware - the large, the small and the one full of null bytes

Virus

SANS

16.1.20

Emotet remains the dark market leader for delivery-as-a-service

CyberCrime  Virus

Net-security
12.1.20Card-Stealing Scripts Infect Perricone's European Skin Care SitesCyberCrime  Virus

Bleepingcomputer

12.1.20Google Removed Over 1.7K Joker Malware Infected Apps from Play StoreAndroid  Virus

Bleepingcomputer

11.1.20

Lifeline Assistance Phone Users Targeted with ‘Uninstallable’ Adware

Mobil  Virus

Threatpost

10.1.20

TrickBot Adds Custom, Stealthy Backdoor to its Arsenal

Virus

Threatpost

10.1.20TrickBot gangs developed the PowerTrick backdoor for high-value targetsVirusSecurityaffairs

9.1.20

TrickBot Operators Create New Backdoor for Important TargetsVirusSecurityweek
9.1.20

Quick Analyzis of a(nother) Maldoc

Virus

SANS

9.1.20

Liverpool Voyeur Used IM-RAT to Video Women at Home

Virus

Threatpost

9.1.20

Drake Lyrics Used as Calling Card in Malware Attack

Virus

Threatpost

7.1.20

DeathRansom Campaign Linked to Malware Cornucopia

Ransomware  Virus

Threatpost
6.1.20Popular U.S. Restaurant Owner Hit by Credit Card Stealing MalwareVirus

Bleepingcomputer

4.1.20Travelex currency exchange suspends services after malware attackVirusSecurityaffairs
4.1.20

Travelex Knocked Offline by System-Wide Malware Attack

Virus

Threatpost

3.1.20

Crooks use Star Wars saga as bait in Phishing and malware attacksPhishing  VirusSecurityaffairs
3.1.20Landry's Restaurant Chain Suffers Payment Card Theft Via PoS MalwareVirusThehackernews

2.1.20

Three GozNym Malware Operators SentencedVirusSecurityweek