⤷ Title: Hidden in the Cloud: Harvester’s New Linux Malware Abuses Microsoft Graph API for Invisible Espionage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 15:11:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Cyber Threats #APT group #Cyber Espionage #GoGra #Harvester #Linux Backdoor #malware analysis #Microsoft Graph API #Microsoft Outlook C2 #Social Engineering #South Asia Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 15:11:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Cyber Threats #APT group #Cyber Espionage #GoGra #Harvester #Linux Backdoor #malware analysis #Microsoft Graph API #Microsoft Outlook C2 #Social Engineering #South Asia Security
Penetration Testing Tools
Hidden in the Cloud: Harvester’s New Linux Malware Abuses Microsoft Graph API for Invisible Espionage
The Harvester threat collective has re-emerged, wielding a sophisticated instrument designed to elude conventional defensive parameters. Security researchers
⤷ Title: Cisco Talos Unmasks UAT-8302’s Global Government Espionage Network
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 06 May 2026 07:01:36 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #China_nexus #Cisco Talos #CloudSorcerer #Cyberespionage #Earth Estries #Microsoft Graph API #NetDraft #Nosy Door #Threat Intel #UAT_8302 #VShell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 06 May 2026 07:01:36 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #China_nexus #Cisco Talos #CloudSorcerer #Cyberespionage #Earth Estries #Microsoft Graph API #NetDraft #Nosy Door #Threat Intel #UAT_8302 #VShell
Daily CyberSecurity
Cisco Talos Unmasks UAT-8302’s Global Government Espionage Network
Cisco Talos exposes UAT-8302, a China-linked APT group infiltrating governments via NetDraft and CloudSorcerer. Learn how they share tools with notorious APTs.
⤷ Title: OceanLotus Hijacks PyPI to Deploy “ZiChatBot” via Enterprise Chat APIs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 09:00:27 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #cybersecurity #infosec #kaspersky #malware #OceanLotus #PyPI #Python Security #Shared Libraries #supply chain attack #ZiChatBot #Zulip API
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 09:00:27 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #cybersecurity #infosec #kaspersky #malware #OceanLotus #PyPI #Python Security #Shared Libraries #supply chain attack #ZiChatBot #Zulip API
Daily CyberSecurity
OceanLotus Hijacks PyPI to Deploy "ZiChatBot" via Enterprise Chat APIs
OceanLotus targets Python developers worldwide via PyPI supply chain attacks. New ZiChatBot malware hijacks Zulip APIs for invisible C2 traffic. Patch now!
⤷ Title: Dragon Breath’s Leaked Driver Shatters Windows Security and Neutralizes EDRs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 09:13:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT_Q_27 #APT31 #BYOVD #CrowdStrike #Cyber Espionage #Dragon Breath #dragoncore_k.sys #EDR Bypass #Kernel Driver #Malware 2026 #Microsoft Defender #SentinelOne #Zhengzhou 403
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 09:13:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT_Q_27 #APT31 #BYOVD #CrowdStrike #Cyber Espionage #Dragon Breath #dragoncore_k.sys #EDR Bypass #Kernel Driver #Malware 2026 #Microsoft Defender #SentinelOne #Zhengzhou 403
Penetration Testing Tools
Dragon Breath’s Leaked Driver Shatters Windows Security and Neutralizes EDRs
The Chinese cyber-espionage collective Dragon Breath, also recognized by the designation APT-Q-27, has purportedly acquired a formidable new
⤷ Title: Hunting Advanced Persistent Threats (APT): 13 Years Inside the World of Elite Cyber Adversaries
════════════════════════
𐀪 Author: Vahid Ali CyberSecurity
════════════════════════
ⴵ Time: Fri, 08 May 2026 05:37:56 GMT
════════════════════════
⌗ Tags: #cyber_threat_intelligence #ethical_hacking #apt #threat_hunting #cybersecurity
════════════════════════
𐀪 Author: Vahid Ali CyberSecurity
════════════════════════
ⴵ Time: Fri, 08 May 2026 05:37:56 GMT
════════════════════════
⌗ Tags: #cyber_threat_intelligence #ethical_hacking #apt #threat_hunting #cybersecurity
Medium
Hunting Advanced Persistent Threats (APT): 13 Years Inside the World of Elite Cyber Adversaries
By Vahid Ali — Cybersecurity Professional & Threat Hunter
⤷ Title: 【威脅情資】UAC-0184 攻擊鏈分析
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Tue, 26 May 2026 02:01:03 GMT
════════════════════════
⌗ Tags: #infosec #uac_0184 #apt #blue_team #cybersecurity
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Tue, 26 May 2026 02:01:03 GMT
════════════════════════
⌗ Tags: #infosec #uac_0184 #apt #blue_team #cybersecurity
Medium
【威脅情資】UAC-0184 攻擊鏈分析
本文並非完整還原原始 UAC-0184 樣本,而是根據公開情資整理其攻擊鏈,並透過 Lab 環境模擬其中幾個關鍵可觀察行為
⤷ Title: New Screening Serpens Cyberattacks Target Global Technology Professionals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 12:54:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AppDomain Manager Hijacking #APT group #cyber_espionage #Malware Variants #Screening Serpens #threat intelligence #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 12:54:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AppDomain Manager Hijacking #APT group #cyber_espionage #Malware Variants #Screening Serpens #threat intelligence #Unit 42
Daily CyberSecurity
New Screening Serpens Cyberattacks Target Global Technology Professionals
Learn about the latest Screening Serpens cyberattacks exposed by Unit 42. Discover their new RAT variants and advanced defensive evasion tactics.
⤷ Title: Breach Files #003: SolarWinds 2020
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:24:23 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #mitre_attack #infosec #cybersecurity
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:24:23 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #mitre_attack #infosec #cybersecurity
Medium
Breach Files #003: SolarWinds 2020
The Attackers Who Were Inside for 14 Months — And Nobody Noticed
⤷ Title: Khmer Shadow Espionage Campaign Targets Cambodian Government
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 07:30:12 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #APT #Cambodia #DLL Sideloading #Espionage #Havoc Demon #Khmer Shadow #NIGHTFORGE
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 07:30:12 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #APT #Cambodia #DLL Sideloading #Espionage #Havoc Demon #Khmer Shadow #NIGHTFORGE
Daily CyberSecurity
Khmer Shadow Espionage Campaign Targets Cambodian Government
Acronis reveals Khmer Shadow, a new espionage campaign using NIGHTFORGE loader and DLL sideloading to target Cambodian government entities with Havoc Demon.
⤷ Title: Australian Infrastructure Cyberattack: ASIO Warning
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 04:28:14 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT groups #ASIO #Australian Infrastructure Cyberattack #Critical Infrastructure #cyber sabotage
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 04:28:14 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT groups #ASIO #Australian Infrastructure Cyberattack #Critical Infrastructure #cyber sabotage
Information Security News
Australian Infrastructure Cyberattack: ASIO Warning
Cyberattacks against critical infrastructure increasingly resemble strategic positioning rather than isolated breaches. Consequently, threat actors prepare for future disruptions. The Australian S…