Regsvr32 is a tool tracked across 5 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed November 26, 2025; most recent activity July 1, 2026.
The North Korean hacking group Kimsuky is utilizing generative AI to create malware aimed at South Korean government systems, as reported by Kaspersky on May 14, 2026. The malware, named HelloDoor, is a Rust-based…
A significant cybersecurity campaign has emerged, exploiting the legitimate remote access tool ScreenConnect to deploy AsyncRAT malware. Attackers utilized spoofed websites and typosquatted domains, masquerading as…
The Astaroth banking trojan has resurfaced, now spreading through WhatsApp in Brazil under the name 'Boto-Cor-de-Rosa' or 'Pink Dolphin.' This campaign utilizes worm-like tactics to target users and steal financial…
The pkr_mtsi malware loader has been upgraded to incorporate advanced stealth techniques, including hashed API resolution and improved obfuscation. Initially observed in April 2025, it is utilized for deploying various…
Cybercriminals are exploiting the popularity of Battlefield 6 by distributing malware through pirated game versions and fake cheat programs. Bitdefender has warned gamers to avoid these downloads, which are prevalent on…