DLL Sideloading is a mitre_attack tracked across 6 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed December 4, 2025; most recent activity February 2, 2026.
Notepad++ has been hijacked by state-sponsored hackers, specifically a likely Chinese threat actor. The attackers compromised the software's update mechanism between June and December 2025, allowing them to redirect…
The Silver Fox APT group has launched a campaign targeting users in China by distributing malware through fake installers of popular applications, including Microsoft Teams. The malware, known as ValleyRAT, employs…
The Evasive Panda APT group has conducted targeted campaigns from November 2022 to November 2024, employing adversary-in-the-middle (AitM) attacks. Their tactics included poisoning DNS requests to deliver the MgBot…
A Vietnamese threat actor is utilizing AI to create code for a phishing campaign that delivers PureRAT malware and other malicious payloads. The campaign targets individuals with job-themed emails, luring them to open…
Attackers are utilizing professional-looking animations to deceive users into downloading malware. The HP Threat Research report details how these campaigns leverage purchasable malware tools and techniques to evade…
A Chinese-linked cyberespionage group, known as 'Mustang Panda', targeted US government and policy officials using Venezuela-themed phishing emails. This campaign occurred shortly after the US operation to topple former…