T1566 - Spearphishing Attachment is a mitre_attack tracked across 37 threat clusters and 47 intelligence report mentions on ThreatCluster. First observed October 30, 2025; most recent activity February 4, 2026.
The Mustang Panda group has intensified its cyber-espionage efforts by deploying a new variant of the CoolClient backdoor, which includes advanced infostealer capabilities. This updated malware targets government and…
The Iranian threat group known as Prince of Persia has re-emerged with three new malware strains targeting critical infrastructure globally. A December 2025 report from SafeBreach revealed that the group, which had been…
APT36, also known as Transparent Tribe, conducted a spear-phishing campaign targeting Indian government, strategic, and academic organizations. The campaign involved delivering malicious LNK files disguised as PDFs,…
APT36, also known as Transparent Tribe, has initiated a malware campaign targeting Indian government entities by exploiting Windows LNK shortcut files. The campaign begins with spear-phishing emails containing a ZIP…
A China-linked hacking group, UNC6384, has exploited a Windows zero-day vulnerability to conduct cyber espionage against European diplomats in Hungary, Belgium, and other nations. The attacks, which occurred in…
CERT-UA has reported a new wave of cyberattacks targeting Ukrainian government agencies and EU organizations, exploiting the Microsoft Office vulnerability CVE-2026-21509. Attackers are using malicious emails disguised…
A North Korea-linked hacking group has executed a new cyberattack capable of remotely controlling Android smartphones and PCs, leading to data deletion and malware distribution. The attack, attributed to groups Kimsuky…
A multi-stage phishing campaign is targeting Russian organizations with Amnesia RAT and Hakuna Matata ransomware. The attackers use social engineering tactics to deliver malicious files disguised as business documents,…
Chinese state-affiliated hackers, identified as UNC6384, have exploited a Windows zero-day vulnerability (CVE-2025-9491) to conduct cyber espionage against European diplomats in countries such as Belgium and Hungary.…
The Health Service Executive (HSE) is providing €750 in compensation to victims of a cyberattack that occurred on May 14, 2021, which compromised the data of thousands of patients and staff. Approximately 620…