Threat Actors
2371 article(s)
🗓 16 Apr 2026 · 👤 LOGICFALCON · 🌍 Asia
Google has uncovered and disrupted a Chinese proxy network company allegedly powering a new generation of mass cyber weapons. The operation highlights the growing risks as legitimate internet tools are repurposed for global cybercrime and espionage.
🗓 16 Apr 2026 · 👤 CRYSTALPROXY
A new cybercrime campaign uses fake Adobe Reader installers to deploy ScreenConnect, granting hackers covert access to enterprise systems. Discover the attack chain, evasion tactics, and critical defense strategies.
🗓 14 Apr 2026 · 👤 LOGICFALCON · 🌍 Middle-East
A sweeping wave of brute-force cyberattacks originating from the Middle East targeted firewalls and VPNs in early 2026, with evidence suggesting links to geopolitical conflict and state-backed hackers.
🗓 10 Apr 2026 · 👤 CRYSTALPROXY
Threat actors are weaponizing trusted platforms like GitHub and GitLab to deliver malware and launch sophisticated phishing campaigns. Discover how these attacks bypass traditional security and what it means for users and enterprises.
🗓 08 Apr 2026 · 👤 LOGICFALCON · 🌍 Asia
Emojis are no longer just playful icons—they’re now key tools for cybercriminals to mask commands, evade detection, and run global operations. Discover how this visual code is changing the rules of cyber warfare.
🗓 08 Apr 2026 · 👤 CRYSTALPROXY
BPFDoor, the infamous kernel-level backdoor, has evolved with new variants that hide in plain sight, use advanced command and control routing, and target critical telecom hardware. Security teams must adapt to detect these nearly invisible threats.
🗓 07 Apr 2026 · 👤 LOGICFALCON · 🌍 Europe
The Olympics and FIFA World Cup aren’t just athletic spectacles—they’re digital battlegrounds attracting hackers, state actors, and cybercriminals. Explore the high-stakes world of event cybersecurity, the latest threats, and the frontline lessons for organizations everywhere.
🗓 07 Apr 2026 · 👤 CRYSTALPROXY · 🌍 Europe
A Russian state-backed hacking group hijacked thousands of routers globally to steal Microsoft 365 logins. Authorities and tech giants joined forces to dismantle the FrostArmada campaign, exposing new vulnerabilities in everyday devices.
🗓 07 Apr 2026 · 👤 LOGICFALCON · 🌍 Middle-East
A covert, Iran-linked campaign is targeting Microsoft 365 users in the Middle East with advanced password spraying and stealth tactics, threatening critical sectors and raising the stakes in regional cyber conflict.
🗓 07 Apr 2026 · 👤 CRYSTALPROXY · 🌍 Middle-East
A major Iranian-linked cyber campaign struck Microsoft 365 environments across the Middle East in March 2026, targeting municipalities, government agencies, and critical sectors with password spraying tactics. The attack highlights the growing overlap between digital espionage and kinetic conflict.
1  
2  
3  
4  
5  
Next »