Related Threat Clusters
-
Urgent CISA Directive: Patch Critical Ivanti EPMM Vulnerability CVE-2026-1340 by April 11
The Cybersecurity and Infrastructure Security Agency (CISA) has mandated that U.S. federal agencies patch a critical vulnerability in Ivanti Endpoint Manager Mobile (EPMM), tracked as CVE-2026-1340, by April 11, 2026.…
23 articles · Updated April 8, 2026 -
DragonBreath APT Launches RoningLoader Malware Campaign Targeting Chinese Users
The DragonBreath group, also known as APT-Q-27, has initiated a new campaign utilizing RoningLoader malware, which employs advanced techniques such as DLL side-loading and code injection to evade security measures. This…
2 articles · Updated April 9, 2026 -
Emerging Malware Threats Exploiting New Delivery Methods
Recent malware campaigns have been identified utilizing innovative techniques for delivery and execution. Notable threats include the use of JSON storage services for malware delivery and the resurgence of Gootloader,…
5 articles · Updated November 23, 2025 -
Malware Threats Emerge: Gootloader and New Backdoors Targeting Defense Sector
Recent malware developments include the resurgence of Gootloader, which has been linked to various cyberattacks. Notably, a novel backdoor named SesameOp utilizes OpenAI Assistants API for command and control, while…
2 articles · Updated November 16, 2025
Recent Intelligence Reports
- CISA Issues Warning on Critical Ivanti EPMM Flaw Exploited in Ongoing Attacks — Gbhackers · April 9, 2026
- New RoningLoader Campaign Uses DLL Side — Cybersecuritynews · April 9, 2026
- RoningLoader Campaign Uses DLL Side-Loading, Code Injection to Slip Past Defenses — Gbhackers · April 9, 2026
- SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 72 — Securityaffairs.Co · November 23, 2025