malware 27
- Adversarial Oracles: LLM-Guided EDR Signature Reduction
- Visual Studio Extensions Revisited
- Module Stomping PIC
- Intelligence Insights: May 2026
- RemotePE: The Lazarus RAT that lives in memory
- Shai-Hulud Is Back, and This Time It Ate the Whole Ecosystem
- Tracking TamperedChef Clusters via Certificate and Code Reuse
- From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat
- SHub Reaper | macOS Stealer Spoofs Apple, Google, and Microsoft in a Single Attack Chain
- Gremlin Stealer's Evolved Tactics: Hiding in Plain Sight With Resource Files
- Backdoored node-ipc npm releases steal developer credentials through DNS queries
- Backdoored Cemu release linked to TanStack and Mistral supply chain campaign
- Flash Alert: EtherRat and TukTuk C2 End in The Gentleman Ransomware
- UAT-8302 and its box full of malware
- CloudZ RAT potentially steals OTP messages using Pheno plugin
- The Good, the Bad and the Ugly in Cybersecurity – Week 18
- Fracturing Software Security With Frontier AI Models
- The Good, the Bad and the Ugly in Cybersecurity – Week 16
- PowMix botnet targets Czech workforce
- The n8n n8mare: How threat actors are misusing AI workflow automation
- Securing the Software Supply Chain: How SentinelOne’s AI EDR Autonomously Blocked the CPU-Z Watering Hole Cyber Attack
- JitterDropper
- Crystal Mask
- New Lua-based malware “LucidRook” observed in targeted attacks against Taiwanese organizations
- Using KServe to deploy malicious models
- Model Confusion - Weaponizing ML models for red teams and bounty hunters
- Adversaries sometimes compute gradients. Other times, they rob you.