Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Malware

20 articles

The Hacker News Malware May 5

DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware

A newly identified supply chain attack targeting DAEMON Tools software has compromised its installers to serve a malicious payload, according to findings fro...

T1195

The Hacker News →

HackRead Malware Google Apple May 5

FEMITBOT Network Abuses Telegram Mini Apps for Crypto Scams and Android Malware

A massive fraud network called FEMITBOT uses Telegram Mini Apps and fake brand names like Apple, Disney, and…

HackRead →

The Hacker News Malware Microsoft Google May 5

ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows

The North Korea-aligned state-sponsored hacking group known as ScarCruft has compromised a video game platform in a supply chain espionage attack, trojanizin...

T1195

The Hacker News →

Unit 42 Malware May 2

The npm Threat Landscape: Attack Surface and Mitigations (Updated May 1)

Unit 42 analyzes npm supply chain evolution post-Shai Hulud. Discover wormable malware, CI/CD persistence, multi-stage attacks and more.

Unit 42 →

Infosecurity Magazine Malware Apr 30

Three Arrested for Hacking Over 610,000 Roblox Accounts

Suspects accused of distributing malware and selling access to stolen Roblox accounts on Russian marketplaces

Infosecurity Magazine →

Infosecurity Magazine Malware Microsoft Apr 30

Deep#Door Python Backdoor Evades Detection On Windows

Deep#Door Python RAT uses tunneling and obfuscation to evade detection and steal credentials

T1027

Infosecurity Magazine →

The Hacker News Malware Microsoft Apr 30

New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud Credentials

Cybersecurity researchers have disclosed details of a stealthy Python-based backdoor framework called DEEP#DOOR that comes with capabilities to establish per...

The Hacker News →

Kaspersky Securelist Malware Apr 30

Silver Fox uses the new ABCDoor backdoor to target organizations in Russia and India

The Silver Fox group is targeting companies in Russia and India by impersonating tax authorities to distribute ValleyRAT and the new ABCDoor backdoor.

Kaspersky Securelist →

The Hacker News Malware Apr 29

New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATs

Cybersecurity researchers have discovered malicious code in an npm package after a malicious package as a dependency to the project by Anthropic's Claude Opu...

The Hacker News →

Infosecurity Magazine Malware Apr 27

Researchers Identify Fast16 Sabotage Malware That Pre-Dates Stuxnet

The “fast16” malware may have been used to target Iran’s nuclear program prior to Stuxnet

Infosecurity Magazine →

Infosecurity Magazine Malware Apr 24

Npm Supply Chain Malware Attack Targets Developers With Worm-Like Propagation

Malicious npm packages spread via worm-like propagation and steal developer credentials

Infosecurity Magazine →

Infosecurity Magazine Malware Google Apr 21

Trojanized Android App Fuels New Wave of NFC Fraud

NGate malware abuses HandyPay app to steal NFC card data and PINs in Brazil

Infosecurity Magazine →

ESET Research Malware Apr 21

New NGate variant hides in a trojanized NFC payment app

ESET researchers discover another iteration of NGate malware, this time possibly developed with the assistance of AI

ESET Research →

Infosecurity Magazine Malware Google Apr 16

APK Malformation Found in Thousands of Android Malware Samples

APK malformation tactic now appears in over 3000 Android malware samples evading static analysis

Infosecurity Magazine →

Kaspersky Securelist Malware Apr 15

Threat landscape for industrial automation systems in Q4 2025

The report contains industrial threat statistics for Q4 2025. It covers various infection vectors and malware types, as well as regional statistics and stati...

Kaspersky Securelist →

SentinelOne Blog Malware SentinelOne Apr 14

Securing the Software Supply Chain: How SentinelOne’s AI EDR Autonomously Blocked the CPU-Z Watering Hole Cyber Attack

On April 9, 2026, cpuid.com was actively serving malware through its own official download button.

T1203 T1195 1 IOC

SentinelOne Blog →

Infosecurity Magazine Malware Google Apr 13

Mirax Android Trojan Turns Devices Into Residential Proxy Nodes

Security researchers warn of Mirax, an emerging Android banking trojan using MaaS, remote access and residential proxies to target European users

Infosecurity Magazine →

Kaspersky Securelist Malware Apr 9

The long road to your crypto: ClipBanker and its marathon infection chain

Threat actors are distributing a Trojan disguised as Proxifier software; through a multi-stage infection chain, it delivers ClipBanker – malware that replace...

Kaspersky Securelist →

Trail of Bits Malware Apr 3

Simplifying MBA obfuscation with CoBRA

Mixed Boolean-Arithmetic (MBA) obfuscation disguises simple operations like x + y behind tangles of arithmetic and bitwise operators. Malware authors and sof...

T1027 T1598

Trail of Bits →

Infosecurity Magazine Malware Apr 2

New 'Storm' Infostealer Remotely Decrypts Stolen Credentials

This modern infostealer adopted server-side decryption of stolen credentials to bypass security controls

T1078

Infosecurity Magazine →

«Previous page 1 ... 4 5 6 7 8 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA